Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-8396

Опубликовано: 27 янв. 2019
Источник: redhat
CVSS3: 5.5

Описание

A buffer overflow in H5O__layout_encode in H5Olayout.c in the HDF HDF5 through 1.10.4 library allows attackers to cause a denial of service via a crafted HDF5 file. This issue was triggered while repacking an HDF5 file, aka "Invalid write of size 2."

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat OpenStack Platform 10 (Newton)hdf5Will not fix
Red Hat OpenStack Platform 13 (Queens)hdf5Will not fix
Red Hat OpenStack Platform 14 (Rocky)hdf5Will not fix
Red Hat OpenStack Platform 15 (Stein)hdf5Will not fix
Red Hat OpenStack Platform 8 (Liberty)hdf5Will not fix
Red Hat OpenStack Platform 9 (Mitaka)hdf5Will not fix

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-120
https://bugzilla.redhat.com/show_bug.cgi?id=1678254hdf5: buffer overflow in function H5O__layout_encode in H5Olayout.c

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 7 лет назад

A buffer overflow in H5O__layout_encode in H5Olayout.c in the HDF HDF5 through 1.10.4 library allows attackers to cause a denial of service via a crafted HDF5 file. This issue was triggered while repacking an HDF5 file, aka "Invalid write of size 2."

CVSS3: 6.5
nvd
почти 7 лет назад

A buffer overflow in H5O__layout_encode in H5Olayout.c in the HDF HDF5 through 1.10.4 library allows attackers to cause a denial of service via a crafted HDF5 file. This issue was triggered while repacking an HDF5 file, aka "Invalid write of size 2."

CVSS3: 6.5
debian
почти 7 лет назад

A buffer overflow in H5O__layout_encode in H5Olayout.c in the HDF HDF5 ...

CVSS3: 6.5
github
больше 3 лет назад

A buffer overflow in H5O__layout_encode in H5Olayout.c in the HDF HDF5 through 1.10.4 library allows attackers to cause a denial of service via a crafted HDF5 file. This issue was triggered while repacking an HDF5 file, aka "Invalid write of size 2."

CVSS3: 6.5
fstec
почти 7 лет назад

Уязвимость функции H5O__layout_encode компонента H5Olayout.c библиотеки обработки HDF файлов HDF5, позволяющая нарушителю вызвать отказ в обслуживании

5.5 Medium

CVSS3