UbuntuUpdates.org

Package "optipng"

Name: optipng

Description:

advanced PNG (Portable Network Graphics) optimizer

Latest version: 0.6.4-1ubuntu0.12.04.1
Release: precise (12.04)
Level: updates
Repository: main
Homepage: http://optipng.sourceforge.net/

Links


Download "optipng"


Other versions of "optipng" in Precise

Repository Area Version
base main 0.6.4-1
security main 0.6.4-1ubuntu0.12.04.1

Changelog

Version: 0.6.4-1ubuntu0.12.04.1 2016-04-18 15:06:55 UTC

  optipng (0.6.4-1ubuntu0.12.04.1) precise-security; urgency=medium

  * SECURITY UPDATE: out of bounds read/writes via malformed image
    - debian/patches/CVE-2016-2191.patch: properly check bounds in
      src/pngxtern/pngxrbmp.c.
    - CVE-2016-2191
  * SECURITY UPDATE: denial of service via use-after-free
    - debian/patches/CVE-2015-7801.patch: fix free in src/opngoptim.c.
    - CVE-2015-7801
  * SECURITY UPDATE: harmless out-of-bounds read
    - debian/patches/CVE-2015-7802.patch: properly set last_byte in
      src/gifread/gifread.c.
    - CVE-2015-7802

 -- Marc Deslauriers <email address hidden> Wed, 13 Apr 2016 14:01:53 -0400

CVE-2016-2191 Invalid write while processing delta escapes without any boundary checking
CVE-2015-7801 Use after free
CVE-2015-7802 Global buffer under-read



About   -   Send Feedback to @ubuntu_updates