CVE-2025-7068

LOW

Hdfgroup Hdf5 - Memory Leak

Title source: rule

Description

A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. This issue affects the function H5FL__malloc of the file src/H5FL.c. The manipulation leads to memory leak. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

Scores

CVSS v3 3.3
EPSS 0.0004
EPSS Percentile 10.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

Classification

CWE
CWE-401 CWE-404
Status published

Affected Products (1)

hdfgroup/hdf5

Timeline

Published Jul 04, 2025
Tracked Since Feb 18, 2026