[Bug 216263] CVE-2006-5793: libpng10 < 1.0.21 DoS vulnerability

bugzilla at redhat.com bugzilla at redhat.com
Sun Nov 19 14:04:56 UTC 2006


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.

Summary: CVE-2006-5793: libpng10 < 1.0.21 DoS vulnerability


https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=216263


paul at city-fan.org changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
             Status|NEW                         |ASSIGNED




------- Additional Comments From paul at city-fan.org  2006-11-19 09:04 EST -------
I have 1.0.21 packages prepared, but can't import and build yet due to the cvs
outage. If anyone would like a preview, I have packages here:

http://www.city-fan.org/~paul/extras/libpng10/

(no ppc packages as I don't have a ppc builder)

Note that libpng10 is a Core package for all releases prior to FC6 (and
presumably RHEL too) so separate bugs will need raising for those releases.

http://www.fedoraproject.org/wiki/Extras/Schedule/SecurityAnnoucements has
disappeared from the wiki, so is there a document somewhere stating how to
prepare and send out a securiry announcement?

-- 
Configure bugmail: https://bugzilla.redhat.com/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.




More information about the Fedora-security-list mailing list