In HDF5 1.10.1, there is an out of bounds read vulnerability in the function H5Oplineplinedecode in H5Opline.c in libhdf5.a. For example, h5dump would crash when someone opens a crafted hdf5 file.
{ "cpe": "cpe:2.3:a:hdfgroup:hdf5:*:*:*:*:*:*:*:*", "extracted_events": [ { "introduced": "1.8.0" }, { "last_affected": "1.10.1" } ], "source": "CPE_FIELD" }
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-17506.json"