[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [PATCH 0/1] libpng security update (CVE-2015-8126)
From: |
Ludovic Courtès |
Subject: |
Re: [PATCH 0/1] libpng security update (CVE-2015-8126) |
Date: |
Mon, 16 Nov 2015 09:56:21 +0100 |
User-agent: |
Gnus/5.13 (Gnus v5.13) Emacs/24.5 (gnu/linux) |
Leo Famulari <address@hidden> skribis:
> These buffer overflows in libpng were announced today:
> https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-8126
>
> This patch updates libpng to 1.5.24, which is claimed to be free of the bugs.
In commit 1b076e6 on ‘master’, I made 1.5.24 a replacement for the
current libpng (info "(guix) Security Updates"), and in ‘tk-update’, I
upgraded libpng for good; we’ll starting building that branch hopefully
very soon.
Thanks for the heads-up!
Ludo’.