CVE-2019-9151: High severity hdf5 vulnerability
Published Feb 25, 2019
·Updated
An issue was discovered in the HDF HDF5 1.10.4 library. There is an out of bounds read in the function H5VMmemcpyvv in H5VM.c when called from H5Dcompactreadvv in H5Dcompact.c.
Affected Software
1 affected component
HDFGroup hdf5=1.10.4
Event History
Feb 25, 2019
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Data Sourced
via NVD·07:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2019-9151?
CVE-2019-9151 has a severity rating of medium due to the potential for out of bounds read exploitation.
2
How do I fix CVE-2019-9151?
To address CVE-2019-9151, upgrade HDF5 to a version later than 1.10.4 that contains the relevant security patches.
3
What software is affected by CVE-2019-9151?
CVE-2019-9151 specifically affects the HDF5 library version 1.10.4.
4
What type of vulnerability is CVE-2019-9151?
CVE-2019-9151 is classified as an out of bounds read vulnerability.
5
Which function is responsible for the vulnerability in CVE-2019-9151?
The vulnerability in CVE-2019-9151 originates from the H5VM_memcpyvv function in H5VM.c.