Remote Code Execution Vulnerability in NSF Unidata NetCDF-C
CVE-2025-14933
7.8HIGH
What is CVE-2025-14933?
A vulnerability exists in NSF Unidata NetCDF-C due to inadequate validation of user-supplied data when parsing NC variable integers. This flaw may be exploited by an attacker to induce an integer overflow, allowing the execution of arbitrary code in the context of the current user. Successful exploitation typically requires user interaction, such as visiting a malicious webpage or opening a compromised file, putting users at significant risk.
Affected Version(s)
NetCDF-C dbe0cbb9ff3f706009cf4ee011adf3e58d8a81c1
