CVE-2024-32608

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Oct 9, 2024
Updated: Oct 17, 2024
CWE ID 787

Summary

CVE-2024-32608 is a newly disclosed vulnerability affecting the HDF5 library up to version 1.14.3. this issue involves a memory corruption flaw in the H5A__close function, which can lead to the corruption of the instruction pointer. As a result, an attacker may cause a denial of service or potentially execute malicious code. This vulnerability could be exploited through specially crafted HDF5 files, posing a significant risk to systems that make use of this library. Organizations are advised to update their HDF5 installations as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share