#VU63940 Out-of-bounds write in HDF5 - CVE-2018-17436
Published: June 2, 2022 / Updated: March 9, 2023
HDF5
HDF Group
Description
The vulnerability allows a remote attacker to perform a denial of service attack.
The vulnerability exists due to a boundary error in the ReadCode() function in decompress.c in the HDF HDF5. A remote attacker can trick the victim into opening specially crafted HDF file, trigger out-of-bounds write, and perform a denial of service attack.