CVE-2026-19024
8.2
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H
Summary
NULL pointer dereference in H5Pget_fill_value in HDF5 before 2.1.1 allows attackers to cause a denial of service via a dataset whose version 1 or 2 fill value message has the "defined" flag set together with a negative size field, which is not normalized to the library's "undefined" sentinel and reaches H5T_path_find with a NULL datatype.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| The HDF Group | HDF5 | <= 2.1.1 | affected |
Weaknesses
- CWE-476: CWE-476 NULL pointer dereference
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.