[libpng12] Fixed an out-of-range read in png_check_keyword() (Bug report from

Qixue Xiao).
This commit is contained in:
Glenn Randers-Pehrson
2015-12-09 09:33:54 -06:00
parent 623e09d8c5
commit 520b373ee5
3 changed files with 27 additions and 27 deletions

View File

@@ -2901,14 +2901,18 @@ version 1.2.55beta01 [November 20, 2015]
version 1.2.55beta02 [November 23, 2015]
Fixed incorrect implementation of png_set_PLTE() that uses png_ptr
not info_ptr, that left png_set_PLTE() open to the CVE-2015-8126
vulnerability.
vulnerability. Fixes CVE-2015-8472.
version 1.2.55rc01 [November 26, 2015]
Discontinued distributing tar.bz2 archives.
version 1.2.55 and 1.0.65 [December 3, 2015]
version 1.2.55 and 1.0.65 [December 6, 2015]
Discontinued distributing libpng-oldversion-newversion-diff.txt
version 1.2.56beta01 [December 9, 2015]
Fixed an out-of-range read in png_check_keyword() (Bug report from
Qixue Xiao).
Send comments/corrections/commendations to png-mng-implement at lists.sf.net
(subscription required; visit
https://lists.sourceforge.net/lists/listinfo/png-mng-implement