CVE-2025-44905: Buffer Overflow
Published May 30, 2025
·Updated
hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5Zfilterscaleoffset function.
Affected Software
7 affected componentsFixes available
HDF Group HDF5
HDFGroup hdf5=1.14.6
Microsoft cbl2 hdf5 1.14.4-1
Microsoft azl3 hdf5 1.14.4.3-1
Microsoft cbl2 hdf5 1.14.4-1
Microsoft cbl2 hdf5 1.14.6-1
Microsoft azl3 hdf5 1.14.6-1
Event History
May 30, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Sep 4, 2025
Data Sourced
via Microsoft·04:59 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·11:59 AM
SeverityAffected Software
Updated
via Microsoft·11:59 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2025-44905?
CVE-2025-44905 is classified as a critical vulnerability due to the risk of a heap buffer overflow.
2
How do I fix CVE-2025-44905?
To fix CVE-2025-44905, upgrade to the latest version of HDF5 that addresses this vulnerability.
3
What are the potential impacts of CVE-2025-44905?
The potential impacts of CVE-2025-44905 include denial of service and the possibility of remote code execution.
4
Which software versions are affected by CVE-2025-44905?
CVE-2025-44905 affects HDF5 version 1.14.6 specifically.
5
Where can I find more technical details about CVE-2025-44905?
Technical details about CVE-2025-44905 can typically be found in the official CVE database or security advisories related to HDF5.