Описание
Security update for hdf5
This update for hdf5 fixes the following issues:
- CVE-2021-37501: Fixed overflow in calculation of data buffer due to bogus input file (bsc#1207973).
Список пакетов
SUSE Linux Enterprise Module for HPC 12
hdf5-gnu-hpc-devel-1.10.8-3.18.1
hdf5-gnu-mvapich2-hpc-devel-1.10.8-3.18.1
hdf5-gnu-openmpi1-hpc-devel-1.10.8-3.18.1
hdf5_1_10_8-gnu-hpc-1.10.8-3.18.1
hdf5_1_10_8-gnu-hpc-devel-1.10.8-3.18.1
hdf5_1_10_8-gnu-hpc-devel-static-1.10.8-3.18.1
hdf5_1_10_8-gnu-hpc-module-1.10.8-3.18.1
hdf5_1_10_8-gnu-mvapich2-hpc-1.10.8-3.18.1
hdf5_1_10_8-gnu-mvapich2-hpc-devel-1.10.8-3.18.1
hdf5_1_10_8-gnu-mvapich2-hpc-devel-static-1.10.8-3.18.1
hdf5_1_10_8-gnu-mvapich2-hpc-module-1.10.8-3.18.1
hdf5_1_10_8-gnu-openmpi1-hpc-1.10.8-3.18.1
hdf5_1_10_8-gnu-openmpi1-hpc-devel-1.10.8-3.18.1
hdf5_1_10_8-gnu-openmpi1-hpc-devel-static-1.10.8-3.18.1
hdf5_1_10_8-gnu-openmpi1-hpc-module-1.10.8-3.18.1
libhdf5-gnu-hpc-1.10.8-3.18.1
libhdf5-gnu-mvapich2-hpc-1.10.8-3.18.1
libhdf5-gnu-openmpi1-hpc-1.10.8-3.18.1
libhdf5_1_10_8-gnu-hpc-1.10.8-3.18.1
libhdf5_1_10_8-gnu-mvapich2-hpc-1.10.8-3.18.1
libhdf5_1_10_8-gnu-openmpi1-hpc-1.10.8-3.18.1
libhdf5_cpp-gnu-hpc-1.10.8-3.18.1
libhdf5_cpp_1_10_8-gnu-hpc-1.10.8-3.18.1
libhdf5_fortran-gnu-hpc-1.10.8-3.18.1
libhdf5_fortran-gnu-mvapich2-hpc-1.10.8-3.18.1
libhdf5_fortran-gnu-openmpi1-hpc-1.10.8-3.18.1
libhdf5_fortran_1_10_8-gnu-hpc-1.10.8-3.18.1
libhdf5_fortran_1_10_8-gnu-mvapich2-hpc-1.10.8-3.18.1
libhdf5_fortran_1_10_8-gnu-openmpi1-hpc-1.10.8-3.18.1
libhdf5_hl-gnu-hpc-1.10.8-3.18.1
libhdf5_hl-gnu-mvapich2-hpc-1.10.8-3.18.1
libhdf5_hl-gnu-openmpi1-hpc-1.10.8-3.18.1
libhdf5_hl_1_10_8-gnu-hpc-1.10.8-3.18.1
libhdf5_hl_1_10_8-gnu-mvapich2-hpc-1.10.8-3.18.1
libhdf5_hl_1_10_8-gnu-openmpi1-hpc-1.10.8-3.18.1
libhdf5_hl_cpp-gnu-hpc-1.10.8-3.18.1
libhdf5_hl_cpp_1_10_8-gnu-hpc-1.10.8-3.18.1
libhdf5_hl_fortran-gnu-hpc-1.10.8-3.18.1
libhdf5_hl_fortran-gnu-mvapich2-hpc-1.10.8-3.18.1
libhdf5_hl_fortran-gnu-openmpi1-hpc-1.10.8-3.18.1
libhdf5hl_fortran_1_10_8-gnu-hpc-1.10.8-3.18.1
libhdf5hl_fortran_1_10_8-gnu-mvapich2-hpc-1.10.8-3.18.1
libhdf5hl_fortran_1_10_8-gnu-openmpi1-hpc-1.10.8-3.18.1
Ссылки
- Link for SUSE-SU-2023:0691-1
- E-Mail link for SUSE-SU-2023:0691-1
- SUSE Security Ratings
- SUSE Bug 1207973
- SUSE CVE CVE-2021-37501 page
Описание
Buffer Overflow vulnerability in HDFGroup hdf5-h5dump 1.12.0 through 1.13.0 allows attackers to cause a denial of service via h5tools_str_sprint in /hdf5/tools/lib/h5tools_str.c.
Затронутые продукты
SUSE Linux Enterprise Module for HPC 12:hdf5-gnu-hpc-devel-1.10.8-3.18.1
SUSE Linux Enterprise Module for HPC 12:hdf5-gnu-mvapich2-hpc-devel-1.10.8-3.18.1
SUSE Linux Enterprise Module for HPC 12:hdf5-gnu-openmpi1-hpc-devel-1.10.8-3.18.1
SUSE Linux Enterprise Module for HPC 12:hdf5_1_10_8-gnu-hpc-1.10.8-3.18.1
Ссылки
- CVE-2021-37501
- SUSE Bug 1207973