In HDF5 1.10.1, there is an out of bounds read vulnerability in the function H5Tconvstruct_opt in H5Tconv.c in libhdf5.a. For example, h5dump would crash when someone opens a crafted hdf5 file.
{ "cpe": "cpe:2.3:a:hdfgroup:hdf5:1.10.1:*:*:*:*:*:*:*", "extracted_events": [ { "introduced": "1.10.1" }, { "last_affected": "1.10.1" } ], "source": "CPE_STRING" }
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-17507.json"