A flaw was found in HDF HDF5 through 1.10.3 library. The function ReadCode() in decompress.c allows attackers to cause a denial of service (invalid write access) via a crafted HDF5 file. This issue was triggered while converting a GIF file to an HDF file.
Created hdf5 tracking bugs for this issue:
Affects: epel-all [bug 1634135]
Affects: fedora-all [bug 1634133]