CVE-2025-6817

LOW

HDF5 1.14.6 - DoS

Title source: llm
STIX 2.1

Description

A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. This issue affects the function H5C__load_entry of the file /src/H5Centry.c. The manipulation leads to resource consumption. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.

Scores

CVSS v3 3.3
EPSS 0.0014
EPSS Percentile 34.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-400 CWE-404
Status published
Products (1)
hdfgroup/hdf5 1.14.6
Published Jun 28, 2025
Tracked Since Feb 18, 2026