Bug 2511844 (CVE-2026-19023) - CVE-2026-19023 HDF5: HDF5 h5dump tool: Denial of Service via untrusted pointer dereference in variable-length string dataset processing.
Summary: CVE-2026-19023 HDF5: HDF5 h5dump tool: Denial of Service via untrusted pointe...
Keywords:
Status: NEW
Alias: CVE-2026-19023
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2524936 2524937
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-08-05 22:41 UTC by OSIDB Bzimport
Modified: 2026-08-27 11:40 UTC (History)
1 user (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-08-05 22:41:13 UTC
Untrusted pointer dereference in the render_bin_output function in the h5dump tool in HDF5 before 2.1.1 allows attackers to cause a denial of service via a variable-length string dataset with more than one element dumped in binary mode, which corrupts the per-element stride calculation and causes subsequent elements to be read from a misaligned offset and dereferenced as a pointer.


Note You need to log in before you can comment on or make changes to this bug.