CVE-2019-9152: Hdfgroup HDF5
High severity, CVSS 8.8. EPSS: 1.5% chance of exploitation in the next 30 days.
An issue was discovered in the HDF HDF5 1.10.4 library. There is an out of bounds read in the function H5MM_xstrdup in H5MM.c when called from H5O_dtype_decode_helper in H5Odtype.c.
Affected products
- Hdfgroup HDF5: version 1.10.4 only
Published 2019-02-25. Last modified 2026-06-17.