« List of all CVEs

CVE-2016-4330

Published: 11/18/2016 Last updated: 8/6/2024 Reserved: 4/27/2016

In the HDF5 1.8.16 library's failure to check if the number of dimensions for an array read from the file is within the bounds of the space allocated for it, a heap-based buffer overflow will occur, potentially leading to arbitrary code execution.

CNA assigner: certcc (37e5125f-f79b-445b-8fad-9564f167944b) Requested by: n/a

Opam packages affected (1)

hdf5

Products affected (1)

Product Vendor Version
n/a n/a 17.6.3

References (8)