Logo
vulnerabilityCVE-2026-17574
Name
CVE-2026-17574
Source
NVD ( link)Debian ( link)
Description
HDF5 contains a NULL pointer dereference vulnerability. Processing a crafted HDF5 file containing an attribute with an invalid variable-length datatype type field may cause the application to crash when the attribute is read.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
hdf5
Exploitable

Vulnerability Ratings#


5.2
CVSSv4
5.5
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
yocto
kirkstone
1.8.21
Exploitable
yocto
master
2.0.0
Exploitable