AZL-106676

See a problem?
Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-106676.json
JSON Data
https://api.osv.dev/v1/vulns/AZL-106676
Upstream
Published
2026-10-06T21:17:20Z
Modified
2026-10-08T05:35:32Z
Summary
CVE-2026-19029 affecting package hdf5 1.14.6-4
Details

A heap-based buffer over-read in H5Z__filter_scaleoffset() in src/H5Zscaleoffset.c in HDF5 through 2.2.0 lets an attacker cause a denial of service (application crash) with a crafted HDF5 file. When the stored minimum bits equal the full precision of the datatype, the decoder copies d_nelmts * size bytes from the compressed chunk without checking that the chunk holds that many bytes. Both values come from attacker-controlled scale-offset filter parameters in the dataset's filter pipeline message.

References

Affected packages

Azure Linux:3 / hdf5

Package

Name
hdf5
Purl
pkg:rpm/azure-linux/hdf5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Last Affected
1.14.6-4

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-106676.json"