First published: Tue Aug 22 2023(Updated: )
Buffer Overflow vulnerability in function H5S_close in H5S.c in HDF5 1.10.4 allows remote attackers to run arbitrary code via creation of crafted file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HDF5 | =1.10.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-18232 is considered critical due to its potential to allow remote code execution.
To resolve CVE-2020-18232, upgrade HDF5 to a version later than 1.10.4 that addresses the buffer overflow vulnerability.
CVE-2020-18232 specifically affects HDF5 version 1.10.4.
CVE-2020-18232 is a buffer overflow vulnerability found in the H5S_close function.
Attackers can exploit CVE-2020-18232 to execute arbitrary code by creating a specially crafted HDF5 file.