CVE-2016-4330: Hdfgroup HDF5
High severity, CVSS 8.6. EPSS: 0.8% chance of exploitation in the next 30 days.
In the HDF5 1.8.16 library's failure to check if the number of dimensions for an array read from the file is within the bounds of the space allocated for it, a heap-based buffer overflow will occur, potentially leading to arbitrary code execution.
Affected products
- Hdfgroup HDF5: version 1.8.16 only
Published 2016-11-18. Last modified 2026-06-17.