First published: Tue Jul 10 2018(Updated: )
An issue was discovered in the HDF HDF5 1.8.20 library. There is a buffer over-read in H5O_chunk_deserialize in H5Ocache.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HDF5 | =1.8.20 | |
HDF5 | >=1.8.0<=1.8.20 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-13873 has a severity rating that can impact the confidentiality and integrity of information due to the buffer over-read vulnerability.
To fix CVE-2018-13873, you should upgrade to a patched version of the HDF5 library that addresses this vulnerability.
CVE-2018-13873 can be exploited to read beyond allocated buffer boundaries, potentially leaking sensitive information.
CVE-2018-13873 specifically affects HDF5 version 1.8.20.
Yes, CVE-2018-13873 presents a serious risk as it involves a buffer over-read that could expose sensitive data.