Logo
vulnerabilityCVE-2018-17435
Name
CVE-2018-17435
Source
NVD ( link)Debian ( link)
Description
A heap-based buffer over-read in H5O_attr_decode() in H5Oattr.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of service via a crafted HDF5 file. This issue was triggered while converting an HDF file to GIF file.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
hdf5
Exploitable

Vulnerability Ratings#


6.5
other
4.3
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
yocto
master
2.0.0
Not Affected
yocto
scarthgap
1.14.4-3
Not Affected