SciLinux: CVE-2007-5269 libpng SL3,x i386/x86_64
Summary
Date: Fri, 26 Oct 2007 16:33:38 -0500Reply-To: Troy DawsonSender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for libpng on SL3,x i386/x86_64Comments: To: scientific-linux-errata@fnal.govSynopsis: Moderate: libpng security updateIssue date: 2007-10-23CVE Names: CVE-2007-5269Several flaws were discovered in the way libpng handled various PNG imagechunks. An attacker could create a carefully crafted PNG image file insuch a way that it could cause an application linked with libpng to crashwhen the file was manipulated. (CVE-2007-5269)SL 3.0.x SRPMS:libpng10-1.0.13-18.src.rpm i386:libpng10-1.0.13-18.i386.rpmlibpng10-devel-1.0.13-18.i386.rpmlibpng-1.2.2-28.i386.rpmlibpng-devel-1.2.2-28.i386.rpm x86_64:libpng10-1.0.13-18.i386.rpmlibpng10-1.0.13-18.x86_64.rpmlibpng10-devel-1.0.13-18.x86_64.rpmlibpng-1.2.2-28.i386.rpmlibpng-1.2.2-28.x86_64.rpmlibpng-devel-1.2.2-28.x86_64.rpm-Connie Sieh-Troy Dawson