← Back

CVE-2016-4330

nvd nist
Published: Nov 18, 2016Modified: May 6, 2026

JSON object

Loading...
8.6
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 6.0
Source: NVD

Description

In the HDF5 1.8.16 library's failure to check if the number of dimensions for an array read from the file is within the bounds of the space allocated for it, a heap-based buffer overflow will occur, potentially leading to arbitrary code execution.

Affected (1)

Products: Hdfgroup: Hdf5
1 product
Hdf5
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.8.16

References (8)

Source: cret@cert.org
ExploitTechnical DescriptionThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitTechnical DescriptionThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.