Description

HDF5 Library through 1.14.3 contains a heap-based buffer over-read caused by the unsafe use of strdup in H5MM_xstrdup in H5MM.c (called from H5G__ent_to_link in H5Glink.c).

INFO

Published Date :

2024-05-09T16:43:49.875Z

Last Modified :

2025-02-13T15:52:25.069Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2024-32617 vulnerability.

Vendors Products
Hdfgroup
  • Hdf5
Redhat
  • Enterprise Linux Ai
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-32617.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact