-------------------------------------------------------------------------------- Fedora EPEL Update Notification FEDORA-EPEL-2012-0536 2012-02-19 18:16:12 --------------------------------------------------------------------------------
Name : libpng10 Product : Fedora EPEL 6 Version : 1.0.57 Release : 1.el6 URL : http://www.libpng.org/pub/png/libpng.html Summary : Old version of libpng, needed to run old binaries Description : The libpng10 package contains an old version of libpng, a library of functions for creating and manipulating PNG (Portable Network Graphics) image format files. This package is needed if you want to run binaries that were linked dynamically with libpng 1.0.x. -------------------------------------------------------------------------------- Update Information: This update addresses an integer overflow in the libpng10 PNG library, which could lead to the execution of arbitrary code if a malformed image is processed. -------------------------------------------------------------------------------- References: [ 1 ] Bug #790737 - CVE-2011-3026 libpng: Heap-buffer-overflow in png_decompress_chunk (MFSA 2012-11) https://bugzilla.redhat.com/show_bug.cgi?id=790737 -------------------------------------------------------------------------------- This update can be installed with the "yum" update programs. Use su -c 'yum update libpng10' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora EPEL GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ epel-package-announce mailing list epel-package-announce@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/epel-package-announce