--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2016-3477b592e3
2016-12-27 15:10:28.239498
--------------------------------------------------------------------------------

Name        : hdf5
Product     : Fedora 25
Version     : 1.8.17
Release     : 2.fc25
URL         : https://www.hdfgroup.org/solutions/hdf5/
Summary     : A general purpose library and file format for storing scientific data
Description :
HDF5 is a general purpose library and file format for storing scientific data.
HDF5 can store two primary objects: datasets and groups. A dataset is
essentially a multidimensional array of data elements, and a group is a
structure for organizing objects in an HDF5 file. Using these two basic
objects, one can create and store almost any kind of scientific data
structure, such as images, arrays of vectors, and structured and unstructured
grids. You can also mix and match them in HDF5 files according to your needs.

--------------------------------------------------------------------------------
Update Information:

Security fix for CVE-2016-4330, CVE-2016-4331, CVE-2016-4332, CVE-2016-4333
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1397708 - CVE-2016-4333 hdf5: H5T_COMPOUND heap buffer overflow
        https://bugzilla.redhat.com/show_bug.cgi?id=1397708
  [ 2 ] Bug #1397707 - CVE-2016-4332 hdf5: Shareable message type out-of-bounds write
        https://bugzilla.redhat.com/show_bug.cgi?id=1397707
  [ 3 ] Bug #1397704 - CVE-2016-4331 hdf5: H5Z_NBIT heap buffer overflow
        https://bugzilla.redhat.com/show_bug.cgi?id=1397704
  [ 4 ] Bug #1397701 - CVE-2016-4330 hdf5: H5T_ARRAY heap buffer overflow
        https://bugzilla.redhat.com/show_bug.cgi?id=1397701
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade hdf5' at the command line.
For more information, refer to the dnf documentation available at
https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/security/
--------------------------------------------------------------------------------
_______________________________________________
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora 25: hdf5 Security Update

December 27, 2016
Security fix for CVE-2016-4330, CVE-2016-4331, CVE-2016-4332, CVE-2016-4333

Summary

HDF5 is a general purpose library and file format for storing scientific data.

HDF5 can store two primary objects: datasets and groups. A dataset is

essentially a multidimensional array of data elements, and a group is a

structure for organizing objects in an HDF5 file. Using these two basic

objects, one can create and store almost any kind of scientific data

structure, such as images, arrays of vectors, and structured and unstructured

grids. You can also mix and match them in HDF5 files according to your needs.

Update Information:

Security fix for CVE-2016-4330, CVE-2016-4331, CVE-2016-4332, CVE-2016-4333

Change Log

References

[ 1 ] Bug #1397708 - CVE-2016-4333 hdf5: H5T_COMPOUND heap buffer overflow https://bugzilla.redhat.com/show_bug.cgi?id=1397708 [ 2 ] Bug #1397707 - CVE-2016-4332 hdf5: Shareable message type out-of-bounds write https://bugzilla.redhat.com/show_bug.cgi?id=1397707 [ 3 ] Bug #1397704 - CVE-2016-4331 hdf5: H5Z_NBIT heap buffer overflow https://bugzilla.redhat.com/show_bug.cgi?id=1397704 [ 4 ] Bug #1397701 - CVE-2016-4330 hdf5: H5T_ARRAY heap buffer overflow https://bugzilla.redhat.com/show_bug.cgi?id=1397701

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade hdf5' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
Name : hdf5
Product : Fedora 25
Version : 1.8.17
Release : 2.fc25
URL : https://www.hdfgroup.org/solutions/hdf5/
Summary : A general purpose library and file format for storing scientific data

Related News