[ubuntu/intrepid-security] libpng, libpng (delayed) 1.2.27-1ubuntu0.2 (Accepted)

Ubuntu Installer archive at ubuntu.com
Tue Mar 16 17:05:58 GMT 2010


libpng (1.2.27-1ubuntu0.2) intrepid-security; urgency=low

  * SECURITY UPDATE: denial of service via decompression bomb (LP: #533140)
    - debian/patches/03-CVE-2010-0205.patch: use new two-pass decompression
      method in pngrutil.c.
    - CVE-2010-0205
  * SECURITY UPDATE: information disclosure via 1-bit interlaced images
    - debian/patches/04-CVE-2009-2042.patch: initialize memory in
      pngrutil.c.
    - CVE-2009-2042

Date: Mon, 15 Mar 2010 11:04:48 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/intrepid/+source/libpng/1.2.27-1ubuntu0.2
-------------- next part --------------
Format: 1.8
Date: Mon, 15 Mar 2010 11:04:48 -0400
Source: libpng
Binary: libpng12-0 libpng12-dev libpng3 libpng12-0-udeb
Architecture: source
Version: 1.2.27-1ubuntu0.2
Distribution: intrepid-security
Urgency: low
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 libpng12-0 - PNG library - runtime
 libpng12-0-udeb - PNG library - minimal runtime library (udeb)
 libpng12-dev - PNG library - development
 libpng3    - PNG library - runtime
Launchpad-Bugs-Fixed: 533140
Changes: 
 libpng (1.2.27-1ubuntu0.2) intrepid-security; urgency=low
 .
   * SECURITY UPDATE: denial of service via decompression bomb (LP: #533140)
     - debian/patches/03-CVE-2010-0205.patch: use new two-pass decompression
       method in pngrutil.c.
     - CVE-2010-0205
   * SECURITY UPDATE: information disclosure via 1-bit interlaced images
     - debian/patches/04-CVE-2009-2042.patch: initialize memory in
       pngrutil.c.
     - CVE-2009-2042
Checksums-Sha1: 
 d54a87544e5a435a1444519c1d2d08a17ff05708 1293 libpng_1.2.27-1ubuntu0.2.dsc
 f7646373da7a402a70dc8529a8566224ea32caaa 19116 libpng_1.2.27-1ubuntu0.2.diff.gz
Checksums-Sha256: 
 f2f02fd43e7f7762a92ce6ac45e338b6f407990aca1124c952cec9bcfca1784a 1293 libpng_1.2.27-1ubuntu0.2.dsc
 3fdf9a9a134535fd2b696dd1de61aa7044ebb3dd577c9bc3879743aef9872c61 19116 libpng_1.2.27-1ubuntu0.2.diff.gz
Files: 
 bd0ff3a04141fae88c8136f6f9ee63d4 1293 libs optional libpng_1.2.27-1ubuntu0.2.dsc
 22de419d4a9203e183ccc14813b0d5e2 19116 libs optional libpng_1.2.27-1ubuntu0.2.diff.gz
Original-Maintainer: Anibal Monsalve Salazar <anibal at debian.org>


More information about the Intrepid-changes mailing list