libpng15-1.5.30-14.el9_7.1
エラータID: AXSA:2026-224:01
The libpng15 package provides libpng 1.5, an older version of the libpng. library for manipulating PNG (Portable Network Graphics) image format files. This version should be used only if you are unable to use the current version of libpng.
Security Fix(es):
* libpng: LIBPNG has a heap buffer overflow in png_set_quantize (CVE-2026-25646)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2026-25646
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.
Update packages.
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.
N/A
SRPMS
- libpng15-1.5.30-14.el9_7.1.src.rpm
MD5: f02a54a6b42568e5ecf282a21ffa5963
SHA-256: 4d971a7fe78b7773891a420237bb03ec0915b3c3de944337e8514126ef37cc46
Size: 754.15 kB
Asianux Server 9 for x86_64
- libpng15-1.5.30-14.el9_7.1.i686.rpm
MD5: 8be81c464ed27157269d2d4bcd461d1c
SHA-256: 77e369378ca504e0acaabe0a8faddf1358a116789f0da5e4b601cc46645f0f6c
Size: 97.96 kB - libpng15-1.5.30-14.el9_7.1.x86_64.rpm
MD5: 1524bc973161b06e7973b7e7b2dd273f
SHA-256: 6fb6b313f6e64dce89e3887202ae84c8a81aa45df337e8f6b7e858b3901563c4
Size: 90.50 kB