Security Advisory

CVE-2025-2924

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-03-28 19:31:04
Last updated 2025-07-24 09:43:35
Assigner VulDB
CVSS score 4.8
State PUBLISHED

Description

A vulnerability, which was classified as problematic, was found in HDF5 up to 1.14.6. This affects the function H5HL__fl_deserialize of the file src/H5HLcache.c. The manipulation of the argument free_block leads to heap-based buffer overflow. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used.