Synopsis: Moderate: libpng security update
Issue date: 2007-10-23
CVE Names: CVE-2007-5269
Several flaws were discovered in the way libpng handled various PNG image
chunks. An attacker could create a carefully crafted PNG image file in
such a way that it could cause an application linked with libpng to crash
when the file was manipulated. (CVE-2007-5269)
SL 4.x
SRPMS:
libpng10-1.0.16-3.1.src.rpm
i386:
libpng10-1.0.16-3.1.i386.rpm
libpng10-devel-1.0.16-3.1.i386.rpm
libpng-1.2.7-3.1.i386.rpm
libpng-devel-1.2.7-3.1.i386.rpm
x86_64:
libpng10-1.0.16-3.1.i386.rpm
libpng10-1.0.16-3.1.x86_64.rpm
libpng10-devel-1.0.16-3.1.x86_64.rpm
libpng-1.2.7-3.1.i386.rpm
libpng-1.2.7-3.1.x86_64.rpm
libpng-devel-1.2.7-3.1.x86_64.rpm
SL 5.x
SRPMS:
libpng-1.2.10-7.1.el5.1.src.rpm
i386:
libpng-1.2.10-7.1.el5.1.i386.rpm
libpng-devel-1.2.10-7.1.el5.1.i386.rpm
x86_64:
libpng-1.2.10-7.1.el5.1.i386.rpm
libpng-1.2.10-7.1.el5.1.x86_64.rpm
libpng-devel-1.2.10-7.1.el5.1.i386.rpm
libpng-devel-1.2.10-7.1.el5.1.x86_64.rpm
-Connie Sieh
-Troy Dawson