CVE-2025-2912

A vulnerability was found in HDF5 up to 1.14.6. It has been declared as problematic. Affected by this vulnerability is the function H5O_msg_flush of the file src/H5Omessage.c. The manipulation of the argument oh leads to heap-based buffer overflow. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.
Configurations

No configuration.

History

28 Mar 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-28 16:15

Updated : 2025-03-28 18:11


NVD link : CVE-2025-2912

Mitre link : CVE-2025-2912

CVE.ORG link : CVE-2025-2912


JSON object : View

Products Affected

No product.

CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-122

Heap-based Buffer Overflow