CVE-2018-11202: Null Pointer Dereference
Published May 16, 2018
·Updated
A NULL pointer dereference was discovered in H5Shypermakespans in H5Shyper.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service attack.
Affected Software
1 affected component
HDFGroup hdf5=1.10.2
Event History
May 16, 2018
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-11202?
The severity of CVE-2018-11202 is considered to be high due to its potential to cause remote denial of service.
2
How do I fix CVE-2018-11202?
To fix CVE-2018-11202, upgrade to a version of the HDF5 library beyond 1.10.2 that addresses this vulnerability.
3
What is the impact of CVE-2018-11202 on systems using HDF5 1.10.2?
CVE-2018-11202 can lead to a denial of service attack, causing affected systems to crash or become unresponsive.
4
Is CVE-2018-11202 exploitable locally?
CVE-2018-11202 primarily allows for remote exploitation, meaning attackers typically do not need local access to exploit the vulnerability.
5
What software versions are affected by CVE-2018-11202?
CVE-2018-11202 affects HDF5 library version 1.10.2 and earlier versions.