Updated matio packages fix security vulnerability
Publication date: 13 Dec 2022Modification date: 13 Dec 2022
Type: security
Affected Mageia releases : 8
CVE: CVE-2020-36428 , CVE-2021-36977
Description
matio (aka MAT File I/O Library) 1.5.18 through 1.5.21 has a heap-based buffer overflow in ReadInt32DataDouble (called from ReadInt32Data and Mat_VarRead4). (CVE-2020-36428) matio (aka MAT File I/O Library) 1.5.20 and 1.5.21 has a heap-based buffer overflow in H5MM_memcpy (called from H5MM_malloc and H5C_load_entry), related to use of HDF5 1.12.0. (CVE-2021-36977)
References
SRPMS
8/core
- matio-1.5.23-1.mga8