The following vulnerability was published for hdf5.
CVE-2025-7069[0]:
| A vulnerability, which was classified as problematic, was found in
| HDF5 1.14.6. Affected is the function H5FS__sect_link_size of the
| file src/H5FSsection.c. The manipulation leads to heap-based buffer
| overflow. It is possible to launch the attack on the local host. The
| exploit has been disclosed to the public and may be used.
If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.