Mat_VarReadNextInfo4 in mat4.c in MATIO 1.5.17 omits a certain '\0' character, leading to a heap-based buffer over-read in strdup_vprintf when uninitialized memory is accessed. References: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=16856 https://github.com/tbeu/matio/commit/651a8e28099edb5fbb9e4e1d4d3238848f446c9a
Created matio tracking bugs for this issue: Affects: epel-6 [bug 1769547] Affects: epel-7 [bug 1769548]
Created matio tracking bugs for this issue: Affects: fedora-all [bug 1769550]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.