What is CVE-2026-17573?
CVE-2026-17573 is a double free vulnerability in the HDF5 library. Processing a specially crafted HDF5 file with an oversized chunk size field via the h5repack utility may cause the application to abort. Updating to the latest version of the library is recommended to mitigate this vulnerability.
Azərbaycanca: CVE-2026-17573 HDF5 kitabxanasında tapılmış "double free" zəifliyidir. Xüsusi hazırlanmış, böyüdülmüş "chunk size" sahəsi olan HDF5 faylının "h5repack" aləti ilə emalı zamanı tətbiq dayana bilər. Bu zəiflikdən qorunmaq üçün HDF5-i ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-416
FAQ2
Which library is affected by the CVE-2026-17573 vulnerability?
The CVE-2026-17573 vulnerability was found in the HDF5 library.
What is the recommended mitigation for the CVE-2026-17573 vulnerability in the HDF5 library?
Updating to the latest version of the HDF5 library is recommended to mitigate this vulnerability.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.