Format: 1.8 Date: Mon, 05 Jul 2010 11:44:13 -0400 Source: libpng Binary: libpng12-0 libpng12-dev libpng3 libpng12-0-udeb Architecture: lpia Version: 1.2.37-1ubuntu0.2 Distribution: karmic Urgency: low Maintainer: Ubuntu/lpia Build Daemon Changed-By: Marc Deslauriers Description: libpng12-0 - PNG library - runtime libpng12-0-udeb - PNG library - minimal runtime library (udeb) libpng12-dev - PNG library - development libpng3 - PNG library - runtime Changes: libpng (1.2.37-1ubuntu0.2) karmic-security; urgency=low . * SECURITY UPDATE: arbitrary code execution from additional data row via malformed PNG image - debian/patches/03-CVE-2010-1205.patch: check for unexpected data after the last row in pngpread.c. - CVE-2010-1205 * SECURITY UPDATE: denial of service via memory leak from malformed sCAL chunks - debian/patches/04-CVE-2010-2249.patch: properly free memory in pngrutil.c. - CVE-2010-2249 Checksums-Sha1: 873f35297f2d6e0b65e5195f97fc2a39fb6bae8d 172296 libpng12-0_1.2.37-1ubuntu0.2_lpia.deb 5a328722b410b4749028e303701c2b166c2176c0 257350 libpng12-dev_1.2.37-1ubuntu0.2_lpia.deb 2a8b06500140641f686a5b0cf78c1600f7b4d6bd 71066 libpng12-0-udeb_1.2.37-1ubuntu0.2_lpia.udeb Checksums-Sha256: 4b94bc2f30c7c3928becce944f5695a063c5fc0a4c5aaefec27a4736708b19eb 172296 libpng12-0_1.2.37-1ubuntu0.2_lpia.deb 3d7e1af5fe2629edece085b5137c1a1ce912322e564d68a30740a6f44f1d53bc 257350 libpng12-dev_1.2.37-1ubuntu0.2_lpia.deb 3fc29eb8ac6ef2362d5d9f81238c68b0c14eb90bded83b1089d8594bf14bb612 71066 libpng12-0-udeb_1.2.37-1ubuntu0.2_lpia.udeb Files: 730fd7a16f9496e37ffee99ea68d15a6 172296 libs optional libpng12-0_1.2.37-1ubuntu0.2_lpia.deb fff93fe6a558aef20e20b8b8f15227e7 257350 libdevel optional libpng12-dev_1.2.37-1ubuntu0.2_lpia.deb 0495b247d489438259937bee1f17761f 71066 debian-installer extra libpng12-0-udeb_1.2.37-1ubuntu0.2_lpia.udeb Original-Maintainer: Anibal Monsalve Salazar Package-Type: udeb