CVE-2018-11205: High severity hdf5 vulnerability
Published May 16, 2018
·Updated
A out of bounds read was discovered in H5VMmemcpyvv in H5VM.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service or information disclosure attack.
Affected Software
1 affected component
HDFGroup hdf5=1.10.2
Event History
May 16, 2018
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-11205?
CVE-2018-11205 is classified as a medium-severity vulnerability due to its potential for denial of service and information disclosure.
2
How do I fix CVE-2018-11205?
The best way to fix CVE-2018-11205 is to upgrade to a version of HDF5 later than 1.10.2 that addresses this vulnerability.
3
What is the impact of CVE-2018-11205?
CVE-2018-11205 could lead to remote denial of service or unauthorized information disclosure.
4
Which versions of HDF5 are affected by CVE-2018-11205?
CVE-2018-11205 affects HDF5 version 1.10.2.
5
Is there a proof of concept for CVE-2018-11205?
Yes, proof of concept code for CVE-2018-11205 can be found in various security research repositories.