An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer over-read in the function H5O_sdspace_decode in H5Osdspace.c. References: https://github.com/TeamSeri0us/pocs/blob/master/hdf5/README3.md
Created hdf5 tracking bugs for this issue: Affects: epel-all [bug 1607610] Affects: fedora-all [bug 1607609]