Logo
vulnerabilityCVE-2026-26199
Name
CVE-2026-26199
Source
NVD ( link)Debian ( link)
Description
HDF5 is a high-performance library and a file format specification that implements the HDF5 data model. If `H5Iget_name` is invoked on a group id with `0` for the size parameter, it will underflow when trying to place a null terminator in the buffer. This can occur if `H5Iget_name` is invoked in a way where `size` can be forced to zero, and there is important data before the `name` buffer.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
hdf5
Exploitable

Vulnerability Ratings#


5.9
CVSSv4
6.5
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
yocto
kirkstone
1.8.21
Exploitable
yocto
master
2.0.0
Exploitable