CVE-2018-13867: Critical severity hdf5 vulnerability
Published Jul 10, 2018
·Updated
An issue was discovered in the HDF HDF5 1.8.20 library. There is an out of bounds read in the function H5Faccumread in H5Faccum.c.
Affected Software
1 affected component
HDFGroup hdf5=1.8.20
Event History
Jul 10, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-13867?
CVE-2018-13867 is classified as a moderate severity vulnerability due to the potential for out of bounds read issues.
2
How do I fix CVE-2018-13867?
To fix CVE-2018-13867, upgrade the HDF5 library to version 1.8.21 or later.
3
What type of vulnerability is CVE-2018-13867?
CVE-2018-13867 is an out of bounds read vulnerability in the HDF5 library.
4
Which software versions are affected by CVE-2018-13867?
CVE-2018-13867 specifically affects HDF5 version 1.8.20.
5
What components are involved in CVE-2018-13867?
CVE-2018-13867 involves the H5F__accum_read function found in the H5Faccum.c file.