A NULL pointer dereference was discovered in H5S_hyper_make_spans in H5Shyper.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service attack.
The product dereferences a pointer that it expects to be valid but is NULL.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Hdf5 | Hdfgroup | 1.10.2 (including) | 1.10.2 (including) |
| Hdf5 | Ubuntu | bionic | * |
| Hdf5 | Ubuntu | trusty | * |
| Hdf5 | Ubuntu | trusty/esm | * |
| Hdf5 | Ubuntu | upstream | * |
| Hdf5 | Ubuntu | xenial | * |