libpng15-1.5.30-14.el9_7.1
エラータID: AXSA:2026-224:01
リリース日:
2026/02/27 Friday - 13:39
題名:
libpng15-1.5.30-14.el9_7.1
影響のあるチャネル:
MIRACLE LINUX 9 for x86_64
Severity:
High
Description:
以下項目について対処しました。
[Security Fix]
- libpng には、メモリ領域の範囲外読み取りの問題があるため、
リモートの攻撃者により、情報の漏洩、データ破壊、およびサービス
拒否攻撃を可能とする脆弱性が存在します。(CVE-2026-25646)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2026-25646
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API function. When the function is called with no histogram and the number of colors in the palette is more than twice the maximum supported by the user's display, certain palettes will cause the function to enter into an infinite loop that reads past the end of an internal heap-allocated buffer. The images that trigger this vulnerability are valid per the PNG specification. This vulnerability is fixed in 1.6.55.
追加情報:
N/A
ダウンロード:
SRPMS
- libpng15-1.5.30-14.el9_7.1.src.rpm
MD5: f02a54a6b42568e5ecf282a21ffa5963
SHA-256: 4d971a7fe78b7773891a420237bb03ec0915b3c3de944337e8514126ef37cc46
Size: 754.15 kB
Asianux Server 9 for x86_64
- libpng15-1.5.30-14.el9_7.1.i686.rpm
MD5: 8be81c464ed27157269d2d4bcd461d1c
SHA-256: 77e369378ca504e0acaabe0a8faddf1358a116789f0da5e4b601cc46645f0f6c
Size: 97.96 kB - libpng15-1.5.30-14.el9_7.1.x86_64.rpm
MD5: 1524bc973161b06e7973b7e7b2dd273f
SHA-256: 6fb6b313f6e64dce89e3887202ae84c8a81aa45df337e8f6b7e858b3901563c4
Size: 90.50 kB