CVE-2025-6816: HDF5 H5Ofsinfo.c H5O__fsinfo_encode heap-based overflow
A vulnerability classified as problematic was found in HDF5 1.14.6. This vulnerability affects the function H5Ofsinfoencode of the file /src/H5Ofsinfo.c. The manipulation leads to heap-based buffer overflow. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used.
Other sources
HDF5 H5Ofsinfo.c H5Ofsinfoencode heap-based overflow
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6816?
CVE-2025-6816 is classified as a problematic vulnerability due to its potential for causing a heap-based buffer overflow.
How can I fix CVE-2025-6816?
To fix CVE-2025-6816, update HDF5 to the latest available version that addresses this vulnerability.
Which versions of HDF5 are affected by CVE-2025-6816?
CVE-2025-6816 affects HDF5 version 1.14.6.
What type of attack can exploit CVE-2025-6816?
CVE-2025-6816 can be exploited through a local heap-based buffer overflow attack.
Who is the vendor of the affected software for CVE-2025-6816?
The vendor of the affected software is The HDF Group.