First published: Wed May 16 2018(Updated: )
A out of bounds read was discovered in H5VM_memcpyvv in H5VM.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service or information disclosure attack.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HDF5 | =1.10.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-11205 is classified as a medium-severity vulnerability due to its potential for denial of service and information disclosure.
The best way to fix CVE-2018-11205 is to upgrade to a version of HDF5 later than 1.10.2 that addresses this vulnerability.
CVE-2018-11205 could lead to remote denial of service or unauthorized information disclosure.
CVE-2018-11205 affects HDF5 version 1.10.2.
Yes, proof of concept code for CVE-2018-11205 can be found in various security research repositories.