CVE-2025-2924 | HDF5 up to 1.14.6 src/H5HLcache.c H5HL__fl_deserialize free_block heap-based overflow (Issue 5382)
A vulnerability, which was classified as problematic, was found in HDF5 up to 1.14.6. This affects the function H5HL__fl_deserialize of the file src/H5HLcache.c. The manipulation of the argument free_block leads to heap-based buffer overflow.
This vulnerability is uniquely identified as CVE-2025-2924. It is possible to launch the attack on the local host. Furthermore, there is an exploit available.