๐Ÿ” CVE Alert

CVE-2026-19029

UNKNOWN 0.0

HDF5 scale-offset filter heap buffer over-read via crafted chunk

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

A heap-based buffer over-read in H5Z__filter_scaleoffset() in src/H5Zscaleoffset.c in HDF5 through 2.2.0 lets a remote attacker cause a denial of service (application crash) with a crafted HDF5 file. When the stored minimum bits equal the full precision of the datatype, the decoder copies d_nelmts * size bytes from the compressed chunk without checking that the chunk is that large. Both values come from attacker-controlled scale-offset filter parameters in the dataset's filter pipeline message.

CWE CWE-125
Vendor the hdf group
Product hdf5
Published Oct 6, 2026
Stay Ahead of the Next One

Get instant alerts for the hdf group hdf5

Be the first to know when new unknown vulnerabilities affecting the hdf group hdf5 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

The HDF Group / HDF5
< 2.2.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/HDFGroup/hdf5/pull/6718

Credits

๐Ÿ” mtholmquist