ZeroHour

CVE-2016-4330

PoC
CVSS 3.0
8.6 high
EPSS
<1%p54
Published
()
Modified
Description

In the HDF5 1.8.16 library's failure to check if the number of dimensions for an array read from the file is within the bounds of the space allocated for it, a heap-based buffer overflow will occur, potentially leading to arbitrary code execution.

Vendors
hdfgroup
Products
hdf5
Weakness
CWE-119
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

In the news