Alerts This Week
Warning Icon 1 815
Alerts This Week
Warning Icon 1 815

Slackware 15.0: libpng Critical Buffer Overread Fix SSA:2026-014-01

slackware
Calendar Grey January 14, 2026
Dist Slackware Esm H88
New libpng packages for Slackware 15.0 address critical security issues related to buffer over-read and integer truncation.
New libpng packages are available for Slackware 15.0 and -current to fix security issues.

Summary

Here are the details from the Slackware 15.0 ChangeLog: patches/packages/libpng-1.6.54-i586-1_slack15.0.txz: Upgraded. This update fixes security issues: Heap buffer over-read in the libpng simplified API function png_image_finish_read() when processing interlaced 16-bit PNGs with 8-bit output format and non-minimal row stride. Integer truncation in the libpng simplified write API functions png_write_image_16bit() and png_write_image_8bit() causes heap buffer over-read when the caller provides a negative row stride (for bottom-up image layouts) or a stride exceeding 65535 bytes. For more information, see: https://www.cve.org/CVERecord?id=CVE-2026-22695 https://www.cve.org/CVERecord?id=CVE-2026-22801 (* Security fix *)

Where Find New Packages

Thanks to the friendly folks at the OSU Open Source Lab (http://osuosl.org) for donating FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated package for Slackware 15.0: ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/libpng-1.6.54-i586-1_slack15.0.txz
Updated package for Slackware x86_64 15.0: ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/libpng-1.6.54-x86_64-1_slack15.0.txz
Updated package for Slackware -current: ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/l/libpng-1.6.54-i686-1.txz
Updated package for Slackware x86_64 -current: ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/l/libpng-1.6.54-x86_64-1.txz

MD5 Signatures

Slackware 15.0 package: 19a8814a62c441d9fca8f8fe740de783 libpng-1.6.54-i586-1_slack15.0.txz
Slackware x86_64 15.0 package: 0edc1119768449104dab38a6044bd777 libpng-1.6.54-x86_64-1_slack15.0.txz
Slackware -current package: 0b6f7b32f0c861a45d5adfaad5b14899 l/libpng-1.6.54-i686-1.txz
Slackware x86_64 -current package: e8ffbb237f4e419652de899d0d43803c l/libpng-1.6.54-x86_64-1.txz

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the package as root: # upgradepkg libpng-1.6.54-i586-1_slack15.0.txz

Your message here