Known Vulnerabilities for Hdf5 by HDFGroup

Listed below are 10 of the newest known vulnerabilities associated with "Hdf5" by "HDFGroup".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-34734 json HDF5 is software for managing data. In 1.14.1-2 and earlier, a heap-use-after-free was found in the h5dump helper utility. An... Not Provided 2026-04-09 2026-07-15
CVE-2026-29043 json Not Provided 2026-04-10 2026-04-16
CVE-2026-26200 json HDF5 is software for managing data. Prior to version 1.14.4-2, an attacker who can control an `h5` file parsed by HDF5 can tr... Not Provided 2026-02-19 2026-07-15
CVE-2026-26199 json HDF5 is a high-performance library and a file format specification that implements the HDF5 data model. If `H5Iget_name` is i... Not Provided 2026-07-20 2026-07-20
CVE-2026-26197 json HDF5 is a high-performance library and a file format specification that implements the HDF5 data model. If a file is corrupte... Not Provided 2026-07-20 2026-07-20
CVE-2026-19028 json H5Z__filter_fletcher32 in H5Zfletcher32.c in HDF5 through 2.3.0 computes the data length to checksum by subtracting the 4-byt... Not Provided 2026-08-06 2026-08-06
CVE-2026-19027 json The H5Z__nbit_decompress_one_byte, H5Z__nbit_decompress_one_nooptype, and H5Z__nbit_decompress_one_atomic functions in H5Znbi... Not Provided 2026-08-06 2026-08-06
CVE-2026-19026 json H5Z__filter_nbit in H5Znbit.c in HDF5 through 2.3.0 dereferences cd_values[0] through cd_values[4] without validating that cd... Not Provided 2026-08-05 2026-08-06
CVE-2026-19025 json H5O__layout_decode in H5Olayout.c in HDF5 through 2.3.0 does not validate that a chunked dataset's stored chunk-layout dimens... Not Provided 2026-08-05 2026-08-06
CVE-2026-19024 json NULL pointer dereference in H5Pget_fill_value in HDF5 before 2.3.0 allows attackers to cause a denial of service via a datase... Not Provided 2026-08-05 2026-08-06

Known Affected Configurations (CPE V2.3)

Type Vendor Product Version Update Edition Language
ApplicationHdfgroupHdf51.8.9
ApplicationHdfgroupHdf51.8.8
ApplicationHdfgroupHdf51.8.7
ApplicationHdfgroupHdf51.8.6
ApplicationHdfgroupHdf51.8.5
ApplicationHdfgroupHdf51.8.4
ApplicationHdfgroupHdf51.8.3
ApplicationHdfgroupHdf51.8.20
ApplicationHdfgroupHdf51.8.2
ApplicationHdfgroupHdf51.8.19
ApplicationHdfgroupHdf51.8.18
ApplicationHdfgroupHdf51.8.17
ApplicationHdfgroupHdf51.8.16
ApplicationHdfgroupHdf51.8.15
ApplicationHdfgroupHdf51.8.14
ApplicationHdfgroupHdf51.8.13
ApplicationHdfgroupHdf51.8.12
ApplicationHdfgroupHdf51.8.11
ApplicationHdfgroupHdf51.8.10
ApplicationHdfgroupHdf51.8.1

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report