Red Hat Bugzilla – Bug 1579960
CVE-2018-11206 hdf5: out of bounds read in H5O_fill_new_decode and H5O_fill_old_decode in H5Ofill.c
Last modified: 2018-09-23 22:55:40 EDT
A flaw was found in the HDF HDF5 1.10.2 library. An out of bounds read was discovered in H5O_fill_new_decode and H5O_fill_old_decode in H5Ofill.c. It could allow a remote denial of service or information disclosure attack. References: https://github.com/Twi1ight/fuzzing-pocs/tree/master/hdf5
Created hdf5 tracking bugs for this issue: Affects: epel-all [bug 1579947] Affects: fedora-all [bug 1579949]
Created attachment 1439603 [details] a plausible fix