Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

Slackware 13.37: SSA:2011-210-01 Critical Libpng Uninitialized Read

slackware
Calendar Grey July 29, 2011
Dist Slackware Esm H88
Updated libpng distributions target security flaws impacting multiple Slackware iterations uniformly.
New libpng packages are available for Slackware 8.1, 9.0, 9.1, 10.0, 10.1, 10.2, 11.0, 12.0, 12.1, 12.2, 13.0, 13.1, 13.37, and -current to fix security issues

Summary

Here are the details from the Slackware 13.37 ChangeLog: patches/packages/libpng-1.4.8-i486-1_slack13.37.txz: Upgraded. Fixed uninitialized memory read in png_format_buffer() (Bug report by Frank Busse, related to CVE-2004-0421). For more information, see: https://www.cve.org/CVERecord?id=CVE-2011-0421 (* Security fix *)

Where Find New Packages

Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated package for Slackware 8.1:
Updated package for Slackware 9.0:
Updated package for Slackware 9.1:
Updated package for Slackware 10.0:
Updated package for Slackware 10.1:
Updated package for Slackware 10.2:
Updated package for Slackware 11.0:
Updated package for Slackware 12.0:
Updated package for Slackware 12.1:
Updated package for Slackware 12.2:
Updated package for Slackware 13.0:
Updated package for Slackware x86_64 13.0:
Updated package for Slackware 13.1:
Updated package for Slackware x86_64 13.1:
Updated package for Slackware 13.37:
Updated package for Slackware x86_64 13.37:
Updated package for Slackware -current:
Updated package for Slackware x86_64 -current:

MD5 Signatures

Slackware 8.1 package: ad0f8dc2b0b9269c342a0d61bd007c5e libpng-1.2.46-i386-1_slack8.1.tgz
Slackware 9.0 package: 365bea389c02fdc3b920b36b1f5f5a4d libpng-1.2.46-i386-1_slack9.0.tgz
Slackware 9.1 package: b96cf4fb882decd82bba233b615df3ba libpng-1.2.46-i486-1_slack9.1.tgz
Slackware 10.0 package: 64b11f971f7379ed0af5dc766daf2dd4 libpng-1.2.46-i486-1_slack10.0.tgz
Slackware 10.1 package: 13927173b5ecc4a33a0290363e4e53cd libpng-1.2.46-i486-1_slack10.1.tgz
Slackware 10.2 package: b32cb1ee9694579a42e47128323b0412 libpng-1.2.46-i486-1_slack10.2.tgz
Slackware 11.0 package: bc0efc812d8b1a52bb5c480a5b2f9200 libpng-1.2.46-i486-1_slack11.0.tgz
Slackware 12.0 package: c4fb87f7ecf7aebcd380765d25d0f751 libpng-1.2.46-i486-1_slack12.0.tgz
Slackware 12.1 package: 8f1d8ec6a325c95725b3740dbd41c311 libpng-1.2.46-i486-1_slack12.1.tgz
Slackware 12.2 package: c846762291145276057dad5c58bb2f89 libpng-1.2.46-i486-1_slack12.2.tgz
Slackware 13.0 package: e0bc86aa7eeed92f8f8734efa0b54483 libpng-1.2.46-i486-1_slack13.0.txz
Slackware x86_64 13.0 package: 3d2a8eb7474420519c947f666635ece8 libpng-1.2.46-x86_64-1_slack13.0.txz
Slackware 13.1 package: 406d411805cf2f99c567c97f53bce69b libpng-1.4.8-i486-1_slack13.1.txz
Slackware x86_64 13.1 package: 972fb84c00c4a0d7ab9134f6e65c657f libpng-1.4.8-x86_64-1_slack13.1.txz
Slackware 13.37 package: a323c2d1ff04054ec8423710200c7682 libpng-1.4.8-i486-1_slack13.37.txz
Slackware x86_64 13.37 package: a56d0776e600625505cc12e6853c50cc libpng-1.4.8-x86_64-1_slack13.37.txz
Slackware -current package: ebf0f61c96738b840afa104e6ed3a71f libpng-1.4.8-i486-1.txz
Slackware x86_64 -current package: c3ea775b59fde83c9e65a1d9648945c9 libpng-1.4.8-x86_64-1.txz

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the packages as root: # upgradepkg libpng-1.4.8-i486-1_slack13.37.txz

Related News

Your message here