CVE-2025-6270: HDF5 H5FSsection.c H5FS__sect_find_node heap-based overflow
A vulnerability, which was classified as critical, has been found in HDF5 up to 1.14.6. Affected by this issue is the function H5FSsectfindnode of the file H5FSsection.c. The manipulation leads to heap-based buffer overflow. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6270?
CVE-2025-6270 is classified as a critical vulnerability due to the potential for heap-based buffer overflow.
Which software versions are affected by CVE-2025-6270?
CVE-2025-6270 affects HDF5 versions up to and including 1.14.6.
How do I fix CVE-2025-6270?
To fix CVE-2025-6270, update HDF5 to the latest version which contains the necessary patches.
What kind of attack can be launched using CVE-2025-6270?
CVE-2025-6270 allows attackers to execute a heap-based buffer overflow attack on the local host.
Which function is vulnerable in CVE-2025-6270?
The vulnerability in CVE-2025-6270 is found in the function H5FS__sect_find_node within the file H5FSsection.c.