CVE-2018-11206: High severity HDFGroup hdf5 vulnerability
Published May 16, 2018
·Updated
An out of bounds read was discovered in H5Ofillnewdecode and H5Ofillolddecode in H5Ofill.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service or information disclosure attack.
Affected Software
1 affected component
HDFGroup hdf5=1.10.2
Event History
May 16, 2018
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-11206?
CVE-2018-11206 has a severity rating that can lead to remote denial of service or information disclosure.
2
How do I fix CVE-2018-11206?
To fix CVE-2018-11206, update the HDF5 library to version 1.10.3 or later.
3
What systems are affected by CVE-2018-11206?
CVE-2018-11206 specifically affects the HDF5 library version 1.10.2.
4
What type of vulnerability is CVE-2018-11206?
CVE-2018-11206 is classified as an out of bounds read vulnerability.
5
Can CVE-2018-11206 be exploited remotely?
Yes, CVE-2018-11206 can potentially be exploited remotely, leading to denial of service or information disclosure.