HDF5 contains a NULL pointer dereference vulnerability. Processing a crafted HDF5 file containing an attribute with an invalid variable-length datatype type field may cause the application to crash when the attribute is read.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 27 Jul 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HDF5 contains a NULL pointer dereference vulnerability. Processing a crafted HDF5 file containing an attribute with an invalid variable-length datatype type field may cause the application to crash when the attribute is read. | |
| Title | NULL Pointer Dereference in HDF5 via Invalid Variable-Length Datatype Type Tag | |
| Weaknesses | CWE-476 CWE-617 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: HDFG
Published:
Updated: 2026-07-27T15:12:18.767Z
Reserved: 2026-07-27T15:07:06.932Z
Link: CVE-2026-17574
No data.
No data.
No data.
OpenCVE Enrichment
No data.