Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-17573

Опубликовано: 27 июл. 2026
Источник: debian
EPSS Низкий

Описание

A double free vulnerability was discovered in the HDF5 library. Processing a crafted HDF5 file containing an oversized chunk size field via h5repack may cause the application to abort due to a double free.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
hdf5fixed2.1.0+repack-1package
hdf5postponedbookwormpackage
hdf5postponedbullseyepackage

Примечания

  • https://github.com/HDFGroup/hdf5/issues/6124

  • https://github.com/HDFGroup/hdf5/pull/6160

  • Fixed by: https://github.com/HDFGroup/hdf5/commit/dd3080a58cc6bb86f3b34284399915da9e513262 (2.1.0)

  • HDF not covered by security support, see https://bugs.debian.org/1117722

EPSS

Процентиль: 2%
0.00117
Низкий

Связанные уязвимости

ubuntu
21 день назад

A double free vulnerability was discovered in the HDF5 library. Processing a crafted HDF5 file containing an oversized chunk size field via h5repack may cause the application to abort due to a double free.

CVSS3: 5
redhat
21 день назад

A double free vulnerability was discovered in the HDF5 library. Processing a crafted HDF5 file containing an oversized chunk size field via h5repack may cause the application to abort due to a double free.

nvd
21 день назад

A double free vulnerability was discovered in the HDF5 library. Processing a crafted HDF5 file containing an oversized chunk size field via h5repack may cause the application to abort due to a double free.

github
21 день назад

A double free vulnerability was discovered in the HDF5 library. Processing a crafted HDF5 file containing an oversized chunk size field via h5repack may cause the application to abort due to a double free.

EPSS

Процентиль: 2%
0.00117
Низкий