Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-26199

Опубликовано: 20 июл. 2026
Источник: debian
EPSS Низкий

Описание

HDF5 is a high-performance library and a file format specification that implements the HDF5 data model. If `H5Iget_name` is invoked on a group id with `0` for the size parameter, it will underflow when trying to place a null terminator in the buffer. This can occur if `H5Iget_name` is invoked in a way where `size` can be forced to zero, and there is important data before the `name` buffer.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
hdf5unfixedpackage

Примечания

  • https://github.com/HDFGroup/hdf5/security/advisories/GHSA-5c6x-jmgf-f5vc

  • HDF not covered by security support, see https://bugs.debian.org/1117722

EPSS

Процентиль: 17%
0.00256
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
19 дней назад

HDF5 is a high-performance library and a file format specification that implements the HDF5 data model. If `H5Iget_name` is invoked on a group id with `0` for the size parameter, it will underflow when trying to place a null terminator in the buffer. This can occur if `H5Iget_name` is invoked in a way where `size` can be forced to zero, and there is important data before the `name` buffer.

CVSS3: 5.3
redhat
19 дней назад

HDF5 is a high-performance library and a file format specification that implements the HDF5 data model. If `H5Iget_name` is invoked on a group id with `0` for the size parameter, it will underflow when trying to place a null terminator in the buffer. This can occur if `H5Iget_name` is invoked in a way where `size` can be forced to zero, and there is important data before the `name` buffer.

CVSS3: 6.5
nvd
19 дней назад

HDF5 is a high-performance library and a file format specification that implements the HDF5 data model. If `H5Iget_name` is invoked on a group id with `0` for the size parameter, it will underflow when trying to place a null terminator in the buffer. This can occur if `H5Iget_name` is invoked in a way where `size` can be forced to zero, and there is important data before the `name` buffer.

msrc
18 дней назад

Buffer underflow in `H5Iget_name `/`H5G_get_name` if size is zero

EPSS

Процентиль: 17%
0.00256
Низкий