When decoding data out of a dataset encoded with the H5Z_NBIT decoding, the HDF5 1.8.16 library will fail to ensure that the precision is within the bounds of the size leading to arbitrary code execution.
Advisories
Source ID Title
Debian DLA Debian DLA DLA-771-1 hdf5 security update
Debian DSA Debian DSA DSA-3727-1 hdf5 security update
EUVD EUVD EUVD-2016-5331 When decoding data out of a dataset encoded with the H5Z_NBIT decoding, the HDF5 1.8.16 library will fail to ensure that the precision is within the bounds of the size leading to arbitrary code execution.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: certcc

Published:

Updated: 2024-08-06T00:25:14.505Z

Reserved: 2016-04-27T00:00:00

Link: CVE-2016-4331

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2016-11-18T20:59:02.240

Modified: 2025-04-12T10:46:40.837

Link: CVE-2016-4331

cve-icon Redhat

Severity : Important

Publid Date: 2016-11-15T00:00:00Z

Links: CVE-2016-4331 - Bugzilla

cve-icon OpenCVE Enrichment

No data.