[ubuntu/natty-security] libpng 1.2.44-1ubuntu3.4 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Thu Apr 5 18:03:36 UTC 2012
libpng (1.2.44-1ubuntu3.4) natty-security; urgency=low
* SECURITY UPDATE: denial of service and possible code execution via
memory corruption issue.
- debian/patches/CVE-2011-3048.patch: correctly restore to previous
condition in pngset.c.
- CVE-2011-3048
Date: Thu, 05 Apr 2012 08:40:00 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/natty/+source/libpng/1.2.44-1ubuntu3.4
-------------- next part --------------
Format: 1.8
Date: Thu, 05 Apr 2012 08:40:00 -0400
Source: libpng
Binary: libpng12-0 libpng12-dev libpng3 libpng12-0-udeb
Architecture: source
Version: 1.2.44-1ubuntu3.4
Distribution: natty-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
libpng12-0 - PNG library - runtime
libpng12-0-udeb - PNG library - minimal runtime library (udeb)
libpng12-dev - PNG library - development
libpng3 - PNG library - runtime
Changes:
libpng (1.2.44-1ubuntu3.4) natty-security; urgency=low
.
* SECURITY UPDATE: denial of service and possible code execution via
memory corruption issue.
- debian/patches/CVE-2011-3048.patch: correctly restore to previous
condition in pngset.c.
- CVE-2011-3048
Checksums-Sha1:
e025848a85113dd59a9b5101c625881906f63356 1950 libpng_1.2.44-1ubuntu3.4.dsc
3cfe1bbfcfd492ca9f6c86913d8b833b25a5c87a 18219 libpng_1.2.44-1ubuntu3.4.debian.tar.bz2
Checksums-Sha256:
edc12643294cddbd7fb23159988b30a082d8dd6c6c0eae58c1bd650acf1b66f3 1950 libpng_1.2.44-1ubuntu3.4.dsc
1ebadc5914750e7283cd2c951261b16e23a813bfe92135e8295766ab04a973a1 18219 libpng_1.2.44-1ubuntu3.4.debian.tar.bz2
Files:
641e2fa5779becd008aa0187ecbb9592 1950 libs optional libpng_1.2.44-1ubuntu3.4.dsc
1dec566c3314de1aa031dcb4ed207853 18219 libs optional libpng_1.2.44-1ubuntu3.4.debian.tar.bz2
Original-Maintainer: Anibal Monsalve Salazar <anibal at debian.org>
More information about the Natty-changes
mailing list