Alerts This Week
Warning Icon 1 914
Alerts This Week
Warning Icon 1 914

Debian DSA-3727-1 Critical: HDF5 Arbitrary Code Execution Exploit

debian
Calendar Grey November 30, 2016
Debian Logo
Debian Security Announcement DSA-3728-1 addresses vulnerabilities in libxml2, particularly concerning potential remote code execution threats. Update advised!
Cisco Talos discovered that hdf5, a file format and library for storing scientific data, contained several vulnerabilities that could lead to arbitrary code execution when handling...

Summary

For the stable distribution (jessie), these problems have been fixed in
version 1.8.13+docs-15+deb8u1.

For the testing distribution (stretch) and unstable distribution
(sid), these problems have been fixed in version 1.10.0-patch1+docs-1.

We recommend that you upgrade your hdf5 packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: hdf5
CVE ID: CVE-2016-4330 CVE-2016-4331 CVE-2016-4332 CVE-2016-4333

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here