A vulnerability has been found in HDF5 up to 1.14.6 and classified as critical. This vulnerability affects the function
H5F_addr_decode_len
of the file /hdf5/src/H5Fint.c. The manipulation leads to heap-based buffer overflow.
This vulnerability was named CVE-2025-6516. An attack has to be approached locally. Furthermore, there is an exploit available.