HomeDefectsLIN1024-887
Fixed

LIN1024-887 : Security Advisory - hdf5 - CVE-2024-29161

Created: May 12, 2024    Updated: Sep 15, 2024
Resolved Date: Aug 18, 2024
Found In Version: 10.24.33.1
Fix Version: 10.24.33.2
Severity: Standard
Applicable for: Wind River Linux LTS 24
Component/s: Userspace

Description

HDF5 through 1.14.3 contains a heap buffer overflow in H5A__attr_release_table, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.

CREATE(Triage):(User=admin) CVE-2024-29161 (https://nvd.nist.gov/vuln/detail/CVE-2024-29161)

CVEs