Oval Definition:oval:com.redhat.rhsa:def:20070992
Revision Date:2007-10-23Version:636
Title:RHSA-2007:0992: libpng security update (Moderate)
Description:The libpng package contains a library of functions for creating and manipulating PNG (Portable Network Graphics) image format files.

  • Several flaws were discovered in the way libpng handled various PNG image chunks. An attacker could create a carefully crafted PNG image file in such a way that it could cause an application linked with libpng to crash when the file was manipulated. (CVE-2007-5269)

    Users should update to these updated packages which contain a backported patch to correct these issues.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2007-5269
    RHSA-2007:0992
    RHSA-2007:0992-02
    RHSA-2007:0992-02
    Platform(s):Red Hat Enterprise Linux 3
    Red Hat Enterprise Linux 4
    Red Hat Enterprise Linux 5
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 3 is installed
  • AND
  • libpng-devel is earlier than 2:1.2.2-28
  • AND libpng-devel is signed with Red Hat master key
  • libpng is earlier than 2:1.2.2-28
  • AND libpng is signed with Red Hat master key
  • libpng10-devel is earlier than 0:1.0.13-18
  • AND libpng10-devel is signed with Red Hat master key
  • libpng10 is earlier than 0:1.0.13-18
  • AND libpng10 is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • libpng-devel is earlier than 2:1.2.7-3.el4_5.1
  • AND libpng-devel is signed with Red Hat master key
  • libpng is earlier than 2:1.2.7-3.el4_5.1
  • AND libpng is signed with Red Hat master key
  • libpng10 is earlier than 0:1.0.16-3.el4_5.1
  • AND libpng10 is signed with Red Hat master key
  • libpng10-devel is earlier than 0:1.0.16-3.el4_5.1
  • AND libpng10-devel is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND
  • libpng is earlier than 2:1.2.10-7.1.el5_0.1
  • AND libpng is signed with Red Hat redhatrelease key
  • libpng-devel is earlier than 2:1.2.10-7.1.el5_0.1
  • AND libpng-devel is signed with Red Hat redhatrelease key
  • Definition Synopsis
  • Release Information
  • Red Hat Enterprise Linux 3 is installed
  • AND
  • libpng is earlier than 2:1.2.2-28
  • AND libpng is signed with Red Hat master key
  • libpng-devel is earlier than 2:1.2.2-28
  • AND libpng-devel is signed with Red Hat master key
  • libpng10 is earlier than 0:1.0.13-18
  • AND libpng10 is signed with Red Hat master key
  • libpng10-devel is earlier than 0:1.0.13-18
  • AND libpng10-devel is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • libpng is earlier than 2:1.2.7-3.el4_5.1
  • AND libpng is signed with Red Hat master key
  • libpng-devel is earlier than 2:1.2.7-3.el4_5.1
  • AND libpng-devel is signed with Red Hat master key
  • libpng10 is earlier than 0:1.0.16-3.el4_5.1
  • AND libpng10 is signed with Red Hat master key
  • libpng10-devel is earlier than 0:1.0.16-3.el4_5.1
  • AND libpng10-devel is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND
  • libpng is earlier than 2:1.2.10-7.1.el5_0.1
  • AND libpng is signed with Red Hat redhatrelease key
  • libpng-devel is earlier than 2:1.2.10-7.1.el5_0.1
  • AND libpng-devel is signed with Red Hat redhatrelease key
  • Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • libpng is earlier than 2:1.2.7-3.el4_5.1
  • AND libpng is signed with Red Hat redhatrelease2 key
  • libpng-devel is earlier than 2:1.2.7-3.el4_5.1
  • AND libpng-devel is signed with Red Hat redhatrelease2 key
  • libpng10 is earlier than 0:1.0.16-3.el4_5.1
  • AND libpng10 is signed with Red Hat redhatrelease2 key
  • libpng10-devel is earlier than 0:1.0.16-3.el4_5.1
  • AND libpng10-devel is signed with Red Hat redhatrelease2 key
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND
  • libpng is earlier than 2:1.2.10-7.1.el5_0.1
  • AND libpng is signed with Red Hat redhatrelease2 key
  • libpng-devel is earlier than 2:1.2.10-7.1.el5_0.1
  • AND libpng-devel is signed with Red Hat redhatrelease2 key
  • BACK