Beveiligingsadvies

CVE-2025-2923

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-03-28 19:00:08
Laatst bijgewerkt 2026-06-23 16:32:10
Toegewezen door VulDB
CVSS-score 4.8
Status PUBLISHED

Beschrijving

A vulnerability, which was classified as problematic, has been found in HDF5 up to 1.14.6. Affected by this issue is the function H5F_addr_encode_len of the file src/H5Fint.c. The manipulation of the argument pp leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.