The following vulnerability was published for hdf5.
CVE-2025-7068[0]:
| A vulnerability, which was classified as problematic, has been found
| in HDF5 1.14.6. This issue affects the function H5FL__malloc of the
| file src/H5FL.c. The manipulation leads to memory leak. Attacking
| locally is a requirement. The exploit has been disclosed to the
| public and may be used.
If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.