[SECURITY] Fedora 23 Update: libpng15-1.5.25-1.fc23

updates at fedoraproject.org updates at fedoraproject.org
Mon Jan 4 18:55:22 UTC 2016


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2015-c80ec85542
2016-01-04 16:02:53.933671
--------------------------------------------------------------------------------

Name        : libpng15
Product     : Fedora 23
Version     : 1.5.25
Release     : 1.fc23
URL         : http://www.libpng.org/pub/png/
Summary     : Old version of libpng, needed to run old binaries
Description :
The libpng15 package provides libpng 1.5, an older version of the libpng.
library for manipulating PNG (Portable Network Graphics) image format files.
This version should be used only if you are unable to use the current
version of libpng.

--------------------------------------------------------------------------------
Update Information:

new upstream release 1.5.25 (#1288265)  ----  Security fix CVE-2015-8126
(#1281756, #1282902)  ----  new upstream release 1.5.24 (#1281632)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1281756 - CVE-2015-8126 CVE-2015-8472 libpng: Buffer overflow vulnerabilities in png_get_PLTE/png_set_PLTE functions
        https://bugzilla.redhat.com/show_bug.cgi?id=1281756
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program. Use
su -c 'yum update libpng15' at the command line.
For more information, refer to "Managing Software with yum",
available at https://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list