Synopsis:    Moderate: libpng security update
Issue date:    2007-10-23
CVE Names:    CVE-2007-5269

Several flaws were discovered in the way libpng handled various PNG image
chunks.  An attacker could create a carefully crafted PNG image file in
such a way that it could cause an application linked with libpng to crash
when the file was manipulated. (CVE-2007-5269)

SL 4.x

   SRPMS:
libpng10-1.0.16-3.1.src.rpm
   i386:
libpng10-1.0.16-3.1.i386.rpm
libpng10-devel-1.0.16-3.1.i386.rpm
libpng-1.2.7-3.1.i386.rpm
libpng-devel-1.2.7-3.1.i386.rpm
   x86_64:
libpng10-1.0.16-3.1.i386.rpm
libpng10-1.0.16-3.1.x86_64.rpm
libpng10-devel-1.0.16-3.1.x86_64.rpm
libpng-1.2.7-3.1.i386.rpm
libpng-1.2.7-3.1.x86_64.rpm
libpng-devel-1.2.7-3.1.x86_64.rpm

SL 5.x

   SRPMS:
libpng-1.2.10-7.1.el5.1.src.rpm
   i386:
libpng-1.2.10-7.1.el5.1.i386.rpm
libpng-devel-1.2.10-7.1.el5.1.i386.rpm
   x86_64:
libpng-1.2.10-7.1.el5.1.i386.rpm
libpng-1.2.10-7.1.el5.1.x86_64.rpm
libpng-devel-1.2.10-7.1.el5.1.i386.rpm
libpng-devel-1.2.10-7.1.el5.1.x86_64.rpm

-Connie Sieh
-Troy Dawson