First published: Tue May 14 2024(Updated: )
HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5D__scatter_mem in H5Dscatgath.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HDF5 | <1.14.4 | |
HDF5 | <=1.14.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-33873 is classified as a critical severity vulnerability due to the potential for exploiting a heap-based buffer overflow.
To fix CVE-2024-33873, upgrade the HDF5 Library to version 1.14.4 or later.
CVE-2024-33873 is caused by a heap-based buffer overflow in the H5D__scatter_mem function of the HDF5 Library.
CVE-2024-33873 affects HDF5 Library versions up to and including 1.14.3.
Exploitation of CVE-2024-33873 can lead to application crashes or arbitrary code execution, compromising system integrity.