First published: Sun Mar 22 2020(Updated: )
An issue was discovered in HDF5 through 1.12.0. A NULL pointer dereference exists in the function H5F_get_nrefs() located in H5Fquery.c. It allows an attacker to cause Denial of Service.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HDF5 | <=1.12.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-10812 has been classified with a severity level that indicates it can lead to Denial of Service.
To fix CVE-2020-10812, upgrade HDF5 to version 1.12.1 or later, where the vulnerability has been addressed.
The NULL pointer dereference vulnerability in CVE-2020-10812 affects the function H5F_get_nrefs() in the HDF5 library.
CVE-2020-10812 affects HDF5 versions up to and including 1.12.0.
There is no specific workaround defined for CVE-2020-10812 besides upgrading to a patched version.