CVE-2016-4330 PUBLISHED

In the HDF5 1.8.16 library's failure to check if the number of dimensions for an array read from the file is within the bounds of the space allocated for it, a heap-based buffer overflow will occur, potentially leading to arbitrary code execution.

EPSS 0.44% · 63.1th percentile

Risk Scores

EPSS Score
0.44%
63.1th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTShdf50, 1.8.11-3ubuntu1, 1.8.11-5ubuntu1
Ubuntu:16.04:LTShdf50, 1.8.15-patch1+docs-4, 1.8.15-patch1+docs-5

Timeline

References

Open in Interactive Console →