A flaw was found in in the HDF HDF5 through 1.10.3 library. A SIGFPE signal is raised in the function H5D__create_chunk_file_map_hyper() of H5Dchunk.c during an attempted parse of a crafted HDF file, because of incorrect protection against division by zero. It could allow a remote denial of service attack. References: https://github.com/SegfaultMasters/covering360/tree/master/HDF5/vuln2#divided-by-zero---h5d__create_chunk_file_map_hyper_div_zero
Created hdf5 tracking bugs for this issue: Affects: epel-all [bug 1633855] Affects: fedora-all [bug 1633854]