Red Hat 9037 Published by

A new update is available for Red Hat Enterprise Linux. Here the announcement:



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ---------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Moderate: libpng security update
Advisory ID: RHSA-2007:0356-01
Advisory URL: https://rhn.redhat.com/errata/RHSA-2007-0356.html
Issue date: 2007-05-17
Updated on: 2007-05-17
Product: Red Hat Enterprise Linux
CVE Names: CVE-2006-5793 CVE-2007-2445
- ---------------------------------------------------------------------

1. Summary:

Updated libpng packages that fix security issues are now available for Red
Hat Enterprise Linux.

This update has been rated as having moderate security impact by the Red
Hat Security Response Team.

2. Relevant releases/architectures:

Red Hat Enterprise Linux AS (Advanced Server) version 2.1 - i386, ia64
Red Hat Linux Advanced Workstation 2.1 - ia64
Red Hat Enterprise Linux ES version 2.1 - i386
Red Hat Enterprise Linux WS version 2.1 - i386
Red Hat Enterprise Linux AS version 3 - i386, ia64, ppc, s390, s390x, x86_64
Red Hat Desktop version 3 - i386, x86_64
Red Hat Enterprise Linux ES version 3 - i386, ia64, x86_64
Red Hat Enterprise Linux WS version 3 - i386, ia64, x86_64
Red Hat Enterprise Linux AS version 4 - i386, ia64, ppc, s390, s390x, x86_64
Red Hat Enterprise Linux Desktop version 4 - i386, x86_64
Red Hat Enterprise Linux ES version 4 - i386, ia64, x86_64
Red Hat Enterprise Linux WS version 4 - i386, ia64, x86_64
Red Hat Enterprise Linux Desktop (v. 5 client) - i386, x86_64
RHEL Desktop Workstation (v. 5 client) - i386, x86_64
Red Hat Enterprise Linux (v. 5 server) - i386, ia64, ppc, s390x, x86_64

3. Problem description:

The libpng package contains a library of functions for creating and
manipulating PNG (Portable Network Graphics) image format files.

A flaw was found in the handling of malformed images in libpng. An attacker
could create a carefully crafted PNG image file in such a way that it could
cause an application linked with libpng to crash when the file was
manipulated. (CVE-2007-2445)

A flaw was found in the sPLT chunk handling code in libpng. An attacker
could create a carefully crafted PNG image file in such a way that it could
cause an application linked with libpng to crash when the file was opened.
(CVE-2006-5793)

Users of libpng should update to these updated packages which contain
backported patches to correct these issues.

Red Hat would like to thank Glenn Randers-Pehrson, Mats Palmgren, and Tavis
Ormandy for supplying details and patches for these issues.

4. Solution:

Before applying this update, make sure that all previously-released
errata relevant to your system have been applied.

This update is available via Red Hat Network. Details on how to use
the Red Hat Network to apply this update are available at
http://kbase.redhat.com/faq/FAQ_58_10188

5. Bug IDs fixed (http://bugzilla.redhat.com/):

215405 - CVE-2006-5793 libpng DoS
239425 - CVE-2007-2445 libpng png_handle_tRNS flaw

6. RPMs required:

Red Hat Enterprise Linux AS (Advanced Server) version 2.1:

SRPMS:
ftp://updates.redhat.com/enterprise/2.1AS/en/os/SRPMS/libpng-1.0.14-10.src.rpm
8f37bb1836ce21e2f622d48e913a8757 libpng-1.0.14-10.src.rpm

i386:
03fa135e7a95d58705f47bebb16d7c4b libpng-1.0.14-10.i386.rpm
4cd0bcae95cb1af8573bb84ce6e824e5 libpng-devel-1.0.14-10.i386.rpm

ia64:
1efe6683e43c5fc31431c86d1ca084ed libpng-1.0.14-10.ia64.rpm
d2da87760c8f52b285fd13d55ac00768 libpng-devel-1.0.14-10.ia64.rpm

Red Hat Linux Advanced Workstation 2.1:

SRPMS:
ftp://updates.redhat.com/enterprise/2.1AW/en/os/SRPMS/libpng-1.0.14-10.src.rpm
8f37bb1836ce21e2f622d48e913a8757 libpng-1.0.14-10.src.rpm

ia64:
1efe6683e43c5fc31431c86d1ca084ed libpng-1.0.14-10.ia64.rpm
d2da87760c8f52b285fd13d55ac00768 libpng-devel-1.0.14-10.ia64.rpm

Red Hat Enterprise Linux ES version 2.1:

SRPMS:
ftp://updates.redhat.com/enterprise/2.1ES/en/os/SRPMS/libpng-1.0.14-10.src.rpm
8f37bb1836ce21e2f622d48e913a8757 libpng-1.0.14-10.src.rpm

i386:
03fa135e7a95d58705f47bebb16d7c4b libpng-1.0.14-10.i386.rpm
4cd0bcae95cb1af8573bb84ce6e824e5 libpng-devel-1.0.14-10.i386.rpm

Red Hat Enterprise Linux WS version 2.1:

SRPMS:
ftp://updates.redhat.com/enterprise/2.1WS/en/os/SRPMS/libpng-1.0.14-10.src.rpm
8f37bb1836ce21e2f622d48e913a8757 libpng-1.0.14-10.src.rpm

i386:
03fa135e7a95d58705f47bebb16d7c4b libpng-1.0.14-10.i386.rpm
4cd0bcae95cb1af8573bb84ce6e824e5 libpng-devel-1.0.14-10.i386.rpm

Red Hat Enterprise Linux AS version 3:

SRPMS:
ftp://updates.redhat.com/enterprise/3AS/en/os/SRPMS/libpng-1.2.2-27.src.rpm
cc5f647187175be6fab898800f64d891 libpng-1.2.2-27.src.rpm
ftp://updates.redhat.com/enterprise/3AS/en/os/SRPMS/libpng10-1.0.13-17.src.rpm
72d453e42aafdf7042370e476ae89a66 libpng10-1.0.13-17.src.rpm

i386:
4ed9a2c6b5f09e11aa4d36f12704fc09 libpng-1.2.2-27.i386.rpm
ffd7c318094543ced991c780f70ca66f libpng-debuginfo-1.2.2-27.i386.rpm
311f6265a6d4b44a35a5c9220718d211 libpng-devel-1.2.2-27.i386.rpm
7a8c105ffd0149410ed817a63b66771d libpng10-1.0.13-17.i386.rpm
fc38af2a76f0dd5cb98097a3abe338b6 libpng10-debuginfo-1.0.13-17.i386.rpm
15dbc12ea625c53c6af98d0f121f5ebe libpng10-devel-1.0.13-17.i386.rpm

ia64:
4ed9a2c6b5f09e11aa4d36f12704fc09 libpng-1.2.2-27.i386.rpm
69f61705e012d2b48870502b0d7cadaf libpng-1.2.2-27.ia64.rpm
ffd7c318094543ced991c780f70ca66f libpng-debuginfo-1.2.2-27.i386.rpm
98fddf0d13e1add75094795a6a035918 libpng-debuginfo-1.2.2-27.ia64.rpm
aac473950f6156879ea2f3a4a65ed442 libpng-devel-1.2.2-27.ia64.rpm
7a8c105ffd0149410ed817a63b66771d libpng10-1.0.13-17.i386.rpm
06ca30a321bea7147a3eea189a738671 libpng10-1.0.13-17.ia64.rpm
fc38af2a76f0dd5cb98097a3abe338b6 libpng10-debuginfo-1.0.13-17.i386.rpm
ee2288628372d5a4c3818c4cae9d31c4 libpng10-debuginfo-1.0.13-17.ia64.rpm
84d8b739dadb1c6910cc655108e47d05 libpng10-devel-1.0.13-17.ia64.rpm

ppc:
4d19507fb3a98e9b4011131a8daad512 libpng-1.2.2-27.ppc.rpm
ed37487758ffa50b76d3293e90b751d9 libpng-1.2.2-27.ppc64.rpm
46649afcd292e3474e431b8b0c68e938 libpng-debuginfo-1.2.2-27.ppc.rpm
19c85738a9c4a171d911857056c019ae libpng-debuginfo-1.2.2-27.ppc64.rpm
9f4058d2ec0eb06bbe19cd7e2d4cc787 libpng-devel-1.2.2-27.ppc.rpm
f07383b79095833521a092d866a58433 libpng10-1.0.13-17.ppc.rpm
6cc437306485e060f0e2f50c039ac23d libpng10-1.0.13-17.ppc64.rpm
07d8467d581e3ad0cea1d2b4f272fa86 libpng10-debuginfo-1.0.13-17.ppc.rpm
a46766c68859d947bc837848c5bc1182 libpng10-debuginfo-1.0.13-17.ppc64.rpm
048fecebde598609adfd09bebafce5ad libpng10-devel-1.0.13-17.ppc.rpm

s390:
07f76cdd991c89be61bce5f09ca6e41c libpng-1.2.2-27.s390.rpm
96cd0746ab869cb3ec4de16148eb7668 libpng-debuginfo-1.2.2-27.s390.rpm
e92277fee6063908e166bdf8f35cb6e5 libpng-devel-1.2.2-27.s390.rpm
47098bf97e6c5fd06be6f614595e1efb libpng10-1.0.13-17.s390.rpm
c67b28a0e9fba0340dc54a86a9143626 libpng10-debuginfo-1.0.13-17.s390.rpm
63fdfd782a0d0878ff88bb32314cc9c2 libpng10-devel-1.0.13-17.s390.rpm

s390x:
07f76cdd991c89be61bce5f09ca6e41c libpng-1.2.2-27.s390.rpm
185dcae13db232006ee9ef4b71705c8b libpng-1.2.2-27.s390x.rpm
96cd0746ab869cb3ec4de16148eb7668 libpng-debuginfo-1.2.2-27.s390.rpm
c2385580fb00fa27640482b1df4976fc libpng-debuginfo-1.2.2-27.s390x.rpm
619c6798b573b6c841e827091be7885a libpng-devel-1.2.2-27.s390x.rpm
47098bf97e6c5fd06be6f614595e1efb libpng10-1.0.13-17.s390.rpm
78c1e22dafbd333518032f423d0edbd4 libpng10-1.0.13-17.s390x.rpm
c67b28a0e9fba0340dc54a86a9143626 libpng10-debuginfo-1.0.13-17.s390.rpm
74498b6a289d5f98fecef578fc9eb95e libpng10-debuginfo-1.0.13-17.s390x.rpm
c0bed5a493d373ee9494973cdb604a32 libpng10-devel-1.0.13-17.s390x.rpm

x86_64:
4ed9a2c6b5f09e11aa4d36f12704fc09 libpng-1.2.2-27.i386.rpm
b072d86d2f42aacb7e5680510a63872d libpng-1.2.2-27.x86_64.rpm
ffd7c318094543ced991c780f70ca66f libpng-debuginfo-1.2.2-27.i386.rpm
b7390c52396d77561ca357efe11fb9c4 libpng-debuginfo-1.2.2-27.x86_64.rpm
20714b4a7abd99cc1b538d88f2d7a9dc libpng-devel-1.2.2-27.x86_64.rpm
7a8c105ffd0149410ed817a63b66771d libpng10-1.0.13-17.i386.rpm
1ecdbe6144cc83053471fe822270d027 libpng10-1.0.13-17.x86_64.rpm
fc38af2a76f0dd5cb98097a3abe338b6 libpng10-debuginfo-1.0.13-17.i386.rpm
e395b4a0b8204fc87dd67c2ad31be759 libpng10-debuginfo-1.0.13-17.x86_64.rpm
a92c14579420936b43b3990d3cb1f42e libpng10-devel-1.0.13-17.x86_64.rpm

Red Hat Desktop version 3:

SRPMS:
ftp://updates.redhat.com/enterprise/3desktop/en/os/SRPMS/libpng-1.2.2-27.src.rpm
cc5f647187175be6fab898800f64d891 libpng-1.2.2-27.src.rpm
ftp://updates.redhat.com/enterprise/3desktop/en/os/SRPMS/libpng10-1.0.13-17.src.rpm
72d453e42aafdf7042370e476ae89a66 libpng10-1.0.13-17.src.rpm

i386:
4ed9a2c6b5f09e11aa4d36f12704fc09 libpng-1.2.2-27.i386.rpm
ffd7c318094543ced991c780f70ca66f libpng-debuginfo-1.2.2-27.i386.rpm
311f6265a6d4b44a35a5c9220718d211 libpng-devel-1.2.2-27.i386.rpm
7a8c105ffd0149410ed817a63b66771d libpng10-1.0.13-17.i386.rpm
fc38af2a76f0dd5cb98097a3abe338b6 libpng10-debuginfo-1.0.13-17.i386.rpm
15dbc12ea625c53c6af98d0f121f5ebe libpng10-devel-1.0.13-17.i386.rpm

x86_64:
4ed9a2c6b5f09e11aa4d36f12704fc09 libpng-1.2.2-27.i386.rpm
b072d86d2f42aacb7e5680510a63872d libpng-1.2.2-27.x86_64.rpm
ffd7c318094543ced991c780f70ca66f libpng-debuginfo-1.2.2-27.i386.rpm
b7390c52396d77561ca357efe11fb9c4 libpng-debuginfo-1.2.2-27.x86_64.rpm
20714b4a7abd99cc1b538d88f2d7a9dc libpng-devel-1.2.2-27.x86_64.rpm
7a8c105ffd0149410ed817a63b66771d libpng10-1.0.13-17.i386.rpm
1ecdbe6144cc83053471fe822270d027 libpng10-1.0.13-17.x86_64.rpm
fc38af2a76f0dd5cb98097a3abe338b6 libpng10-debuginfo-1.0.13-17.i386.rpm
e395b4a0b8204fc87dd67c2ad31be759 libpng10-debuginfo-1.0.13-17.x86_64.rpm
a92c14579420936b43b3990d3cb1f42e libpng10-devel-1.0.13-17.x86_64.rpm

Red Hat Enterprise Linux ES version 3:

SRPMS:
ftp://updates.redhat.com/enterprise/3ES/en/os/SRPMS/libpng-1.2.2-27.src.rpm
cc5f647187175be6fab898800f64d891 libpng-1.2.2-27.src.rpm
ftp://updates.redhat.com/enterprise/3ES/en/os/SRPMS/libpng10-1.0.13-17.src.rpm
72d453e42aafdf7042370e476ae89a66 libpng10-1.0.13-17.src.rpm

i386:
4ed9a2c6b5f09e11aa4d36f12704fc09 libpng-1.2.2-27.i386.rpm
ffd7c318094543ced991c780f70ca66f libpng-debuginfo-1.2.2-27.i386.rpm
311f6265a6d4b44a35a5c9220718d211 libpng-devel-1.2.2-27.i386.rpm
7a8c105ffd0149410ed817a63b66771d libpng10-1.0.13-17.i386.rpm
fc38af2a76f0dd5cb98097a3abe338b6 libpng10-debuginfo-1.0.13-17.i386.rpm
15dbc12ea625c53c6af98d0f121f5ebe libpng10-devel-1.0.13-17.i386.rpm

ia64:
4ed9a2c6b5f09e11aa4d36f12704fc09 libpng-1.2.2-27.i386.rpm
69f61705e012d2b48870502b0d7cadaf libpng-1.2.2-27.ia64.rpm
ffd7c318094543ced991c780f70ca66f libpng-debuginfo-1.2.2-27.i386.rpm
98fddf0d13e1add75094795a6a035918 libpng-debuginfo-1.2.2-27.ia64.rpm
aac473950f6156879ea2f3a4a65ed442 libpng-devel-1.2.2-27.ia64.rpm
7a8c105ffd0149410ed817a63b66771d libpng10-1.0.13-17.i386.rpm
06ca30a321bea7147a3eea189a738671 libpng10-1.0.13-17.ia64.rpm
fc38af2a76f0dd5cb98097a3abe338b6 libpng10-debuginfo-1.0.13-17.i386.rpm
ee2288628372d5a4c3818c4cae9d31c4 libpng10-debuginfo-1.0.13-17.ia64.rpm
84d8b739dadb1c6910cc655108e47d05 libpng10-devel-1.0.13-17.ia64.rpm

x86_64:
4ed9a2c6b5f09e11aa4d36f12704fc09 libpng-1.2.2-27.i386.rpm
b072d86d2f42aacb7e5680510a63872d libpng-1.2.2-27.x86_64.rpm
ffd7c318094543ced991c780f70ca66f libpng-debuginfo-1.2.2-27.i386.rpm
b7390c52396d77561ca357efe11fb9c4 libpng-debuginfo-1.2.2-27.x86_64.rpm
20714b4a7abd99cc1b538d88f2d7a9dc libpng-devel-1.2.2-27.x86_64.rpm
7a8c105ffd0149410ed817a63b66771d libpng10-1.0.13-17.i386.rpm
1ecdbe6144cc83053471fe822270d027 libpng10-1.0.13-17.x86_64.rpm
fc38af2a76f0dd5cb98097a3abe338b6 libpng10-debuginfo-1.0.13-17.i386.rpm
e395b4a0b8204fc87dd67c2ad31be759 libpng10-debuginfo-1.0.13-17.x86_64.rpm
a92c14579420936b43b3990d3cb1f42e libpng10-devel-1.0.13-17.x86_64.rpm

Red Hat Enterprise Linux WS version 3:

SRPMS:
ftp://updates.redhat.com/enterprise/3WS/en/os/SRPMS/libpng-1.2.2-27.src.rpm
cc5f647187175be6fab898800f64d891 libpng-1.2.2-27.src.rpm
ftp://updates.redhat.com/enterprise/3WS/en/os/SRPMS/libpng10-1.0.13-17.src.rpm
72d453e42aafdf7042370e476ae89a66 libpng10-1.0.13-17.src.rpm

i386:
4ed9a2c6b5f09e11aa4d36f12704fc09 libpng-1.2.2-27.i386.rpm
ffd7c318094543ced991c780f70ca66f libpng-debuginfo-1.2.2-27.i386.rpm
311f6265a6d4b44a35a5c9220718d211 libpng-devel-1.2.2-27.i386.rpm
7a8c105ffd0149410ed817a63b66771d libpng10-1.0.13-17.i386.rpm
fc38af2a76f0dd5cb98097a3abe338b6 libpng10-debuginfo-1.0.13-17.i386.rpm
15dbc12ea625c53c6af98d0f121f5ebe libpng10-devel-1.0.13-17.i386.rpm

ia64:
4ed9a2c6b5f09e11aa4d36f12704fc09 libpng-1.2.2-27.i386.rpm
69f61705e012d2b48870502b0d7cadaf libpng-1.2.2-27.ia64.rpm
ffd7c318094543ced991c780f70ca66f libpng-debuginfo-1.2.2-27.i386.rpm
98fddf0d13e1add75094795a6a035918 libpng-debuginfo-1.2.2-27.ia64.rpm
aac473950f6156879ea2f3a4a65ed442 libpng-devel-1.2.2-27.ia64.rpm
7a8c105ffd0149410ed817a63b66771d libpng10-1.0.13-17.i386.rpm
06ca30a321bea7147a3eea189a738671 libpng10-1.0.13-17.ia64.rpm
fc38af2a76f0dd5cb98097a3abe338b6 libpng10-debuginfo-1.0.13-17.i386.rpm
ee2288628372d5a4c3818c4cae9d31c4 libpng10-debuginfo-1.0.13-17.ia64.rpm
84d8b739dadb1c6910cc655108e47d05 libpng10-devel-1.0.13-17.ia64.rpm

x86_64:
4ed9a2c6b5f09e11aa4d36f12704fc09 libpng-1.2.2-27.i386.rpm
b072d86d2f42aacb7e5680510a63872d libpng-1.2.2-27.x86_64.rpm
ffd7c318094543ced991c780f70ca66f libpng-debuginfo-1.2.2-27.i386.rpm
b7390c52396d77561ca357efe11fb9c4 libpng-debuginfo-1.2.2-27.x86_64.rpm
20714b4a7abd99cc1b538d88f2d7a9dc libpng-devel-1.2.2-27.x86_64.rpm
7a8c105ffd0149410ed817a63b66771d libpng10-1.0.13-17.i386.rpm
1ecdbe6144cc83053471fe822270d027 libpng10-1.0.13-17.x86_64.rpm
fc38af2a76f0dd5cb98097a3abe338b6 libpng10-debuginfo-1.0.13-17.i386.rpm
e395b4a0b8204fc87dd67c2ad31be759 libpng10-debuginfo-1.0.13-17.x86_64.rpm
a92c14579420936b43b3990d3cb1f42e libpng10-devel-1.0.13-17.x86_64.rpm

Red Hat Enterprise Linux AS version 4:

SRPMS:
ftp://updates.redhat.com/enterprise/4AS/en/os/SRPMS/libpng-1.2.7-3.el4.src.rpm
8ef67fad14ca5c1f9dce4449b1e191d3 libpng-1.2.7-3.el4.src.rpm
ftp://updates.redhat.com/enterprise/4AS/en/os/SRPMS/libpng10-1.0.16-3.src.rpm
f16552850fb887ee8a1a9e3a332d3c63 libpng10-1.0.16-3.src.rpm

i386:
2091755092c118169b1c73477f7aca98 libpng-1.2.7-3.el4.i386.rpm
8f04ec6b9b5409a952a92ef581be7599 libpng-debuginfo-1.2.7-3.el4.i386.rpm
4a4945468b83135d1e5652b70a838304 libpng-devel-1.2.7-3.el4.i386.rpm
c5fe38e12bb83cf3e2a6b14d21933f94 libpng10-1.0.16-3.i386.rpm
65aa2f4a9af05a9d77fa62010b59eb3b libpng10-debuginfo-1.0.16-3.i386.rpm
2115b79e6f2f01fb21ff2dc856374c1a libpng10-devel-1.0.16-3.i386.rpm

ia64:
2091755092c118169b1c73477f7aca98 libpng-1.2.7-3.el4.i386.rpm
2051c01b83415587fc810994420f0227 libpng-1.2.7-3.el4.ia64.rpm
8f04ec6b9b5409a952a92ef581be7599 libpng-debuginfo-1.2.7-3.el4.i386.rpm
589e35af9ee426167d4659cc3e752d65 libpng-debuginfo-1.2.7-3.el4.ia64.rpm
5bbffd4ca84004e74398f8894c588c81 libpng-devel-1.2.7-3.el4.ia64.rpm
c5fe38e12bb83cf3e2a6b14d21933f94 libpng10-1.0.16-3.i386.rpm
c652c1ce02a6a9146be030d915f824c2 libpng10-1.0.16-3.ia64.rpm
65aa2f4a9af05a9d77fa62010b59eb3b libpng10-debuginfo-1.0.16-3.i386.rpm
99564ffbb83059b484e127e1db4fe78c libpng10-debuginfo-1.0.16-3.ia64.rpm
698127bee4d93807fbe1791276b08a14 libpng10-devel-1.0.16-3.ia64.rpm

ppc:
ec2dfb54524b6b5a7b752d3b04b7b663 libpng-1.2.7-3.el4.ppc.rpm
93c75f39472e84aed6a032856ebe5a7d libpng-1.2.7-3.el4.ppc64.rpm
5cf0744feb8984d67667f2235916c89b libpng-debuginfo-1.2.7-3.el4.ppc.rpm
0506ff25e3587ad68ad117c3cec84eaa libpng-debuginfo-1.2.7-3.el4.ppc64.rpm
946aa208ed75b6b90e3a0b30c1f6b31a libpng-devel-1.2.7-3.el4.ppc.rpm
e70a8b8b57df5f7cace6b16e06e53e34 libpng10-1.0.16-3.ppc.rpm
368634778cb2ae8e02aa15ee786080d2 libpng10-1.0.16-3.ppc64.rpm
bb5c86da53b6f3d82143562998c78aee libpng10-debuginfo-1.0.16-3.ppc.rpm
807cb07fe430ca34cc09236597009aa3 libpng10-debuginfo-1.0.16-3.ppc64.rpm
2f83cd833a90818b45cb5c8a1265a549 libpng10-devel-1.0.16-3.ppc.rpm

s390:
c26d0d2623dc83d613d0d3da958dc6c0 libpng-1.2.7-3.el4.s390.rpm
426f1ff75ad79d5e2cbf10fa3cd4d477 libpng-debuginfo-1.2.7-3.el4.s390.rpm
5dec5a031938d2cb0c37c9a5fa703930 libpng-devel-1.2.7-3.el4.s390.rpm
12648b96eafa496717bdf47a24d755a5 libpng10-1.0.16-3.s390.rpm
fdd0c0308a22185c52408fa0afca2cee libpng10-debuginfo-1.0.16-3.s390.rpm
d160c62f800f36d80a2b4bea1f8ee4c1 libpng10-devel-1.0.16-3.s390.rpm

s390x:
c26d0d2623dc83d613d0d3da958dc6c0 libpng-1.2.7-3.el4.s390.rpm
f26f1358e2acf40f8c7cfc504861f527 libpng-1.2.7-3.el4.s390x.rpm
426f1ff75ad79d5e2cbf10fa3cd4d477 libpng-debuginfo-1.2.7-3.el4.s390.rpm
00ab694fdd449e2ef01a4d0f1f3bc4a3 libpng-debuginfo-1.2.7-3.el4.s390x.rpm
e74c222d0f8008caf5a7f9e8a29a81b8 libpng-devel-1.2.7-3.el4.s390x.rpm
12648b96eafa496717bdf47a24d755a5 libpng10-1.0.16-3.s390.rpm
cd50743d02a2cdc62e8e3de1e4fe9df4 libpng10-1.0.16-3.s390x.rpm
fdd0c0308a22185c52408fa0afca2cee libpng10-debuginfo-1.0.16-3.s390.rpm
f0044d23559d5cb442375398e97ccfa1 libpng10-debuginfo-1.0.16-3.s390x.rpm
764f6bc245fef91dd16c3aaef2fd9f95 libpng10-devel-1.0.16-3.s390x.rpm

x86_64:
2091755092c118169b1c73477f7aca98 libpng-1.2.7-3.el4.i386.rpm
64795eb8ff4d7fe52f1c0a0d286c4b32 libpng-1.2.7-3.el4.x86_64.rpm
8f04ec6b9b5409a952a92ef581be7599 libpng-debuginfo-1.2.7-3.el4.i386.rpm
542d4a533fdae7b032b350abd566ab57 libpng-debuginfo-1.2.7-3.el4.x86_64.rpm
1046764762d2e06d727c8a45a375ad86 libpng-devel-1.2.7-3.el4.x86_64.rpm
c5fe38e12bb83cf3e2a6b14d21933f94 libpng10-1.0.16-3.i386.rpm
47f6bf747e4bffed5cc59102ad179f2e libpng10-1.0.16-3.x86_64.rpm
65aa2f4a9af05a9d77fa62010b59eb3b libpng10-debuginfo-1.0.16-3.i386.rpm
0b229bd11e089a33010fc45231f92ccc libpng10-debuginfo-1.0.16-3.x86_64.rpm
79f777f2e31a98a4806788698db38443 libpng10-devel-1.0.16-3.x86_64.rpm

Red Hat Enterprise Linux Desktop version 4:

SRPMS:
ftp://updates.redhat.com/enterprise/4Desktop/en/os/SRPMS/libpng-1.2.7-3.el4.src.rpm
8ef67fad14ca5c1f9dce4449b1e191d3 libpng-1.2.7-3.el4.src.rpm
ftp://updates.redhat.com/enterprise/4Desktop/en/os/SRPMS/libpng10-1.0.16-3.src.rpm
f16552850fb887ee8a1a9e3a332d3c63 libpng10-1.0.16-3.src.rpm

i386:
2091755092c118169b1c73477f7aca98 libpng-1.2.7-3.el4.i386.rpm
8f04ec6b9b5409a952a92ef581be7599 libpng-debuginfo-1.2.7-3.el4.i386.rpm
4a4945468b83135d1e5652b70a838304 libpng-devel-1.2.7-3.el4.i386.rpm
c5fe38e12bb83cf3e2a6b14d21933f94 libpng10-1.0.16-3.i386.rpm
65aa2f4a9af05a9d77fa62010b59eb3b libpng10-debuginfo-1.0.16-3.i386.rpm
2115b79e6f2f01fb21ff2dc856374c1a libpng10-devel-1.0.16-3.i386.rpm

x86_64:
2091755092c118169b1c73477f7aca98 libpng-1.2.7-3.el4.i386.rpm
64795eb8ff4d7fe52f1c0a0d286c4b32 libpng-1.2.7-3.el4.x86_64.rpm
8f04ec6b9b5409a952a92ef581be7599 libpng-debuginfo-1.2.7-3.el4.i386.rpm
542d4a533fdae7b032b350abd566ab57 libpng-debuginfo-1.2.7-3.el4.x86_64.rpm
1046764762d2e06d727c8a45a375ad86 libpng-devel-1.2.7-3.el4.x86_64.rpm
c5fe38e12bb83cf3e2a6b14d21933f94 libpng10-1.0.16-3.i386.rpm
47f6bf747e4bffed5cc59102ad179f2e libpng10-1.0.16-3.x86_64.rpm
65aa2f4a9af05a9d77fa62010b59eb3b libpng10-debuginfo-1.0.16-3.i386.rpm
0b229bd11e089a33010fc45231f92ccc libpng10-debuginfo-1.0.16-3.x86_64.rpm
79f777f2e31a98a4806788698db38443 libpng10-devel-1.0.16-3.x86_64.rpm

Red Hat Enterprise Linux ES version 4:

SRPMS:
ftp://updates.redhat.com/enterprise/4ES/en/os/SRPMS/libpng-1.2.7-3.el4.src.rpm
8ef67fad14ca5c1f9dce4449b1e191d3 libpng-1.2.7-3.el4.src.rpm
ftp://updates.redhat.com/enterprise/4ES/en/os/SRPMS/libpng10-1.0.16-3.src.rpm
f16552850fb887ee8a1a9e3a332d3c63 libpng10-1.0.16-3.src.rpm

i386:
2091755092c118169b1c73477f7aca98 libpng-1.2.7-3.el4.i386.rpm
8f04ec6b9b5409a952a92ef581be7599 libpng-debuginfo-1.2.7-3.el4.i386.rpm
4a4945468b83135d1e5652b70a838304 libpng-devel-1.2.7-3.el4.i386.rpm
c5fe38e12bb83cf3e2a6b14d21933f94 libpng10-1.0.16-3.i386.rpm
65aa2f4a9af05a9d77fa62010b59eb3b libpng10-debuginfo-1.0.16-3.i386.rpm
2115b79e6f2f01fb21ff2dc856374c1a libpng10-devel-1.0.16-3.i386.rpm

ia64:
2091755092c118169b1c73477f7aca98 libpng-1.2.7-3.el4.i386.rpm
2051c01b83415587fc810994420f0227 libpng-1.2.7-3.el4.ia64.rpm
8f04ec6b9b5409a952a92ef581be7599 libpng-debuginfo-1.2.7-3.el4.i386.rpm
589e35af9ee426167d4659cc3e752d65 libpng-debuginfo-1.2.7-3.el4.ia64.rpm
5bbffd4ca84004e74398f8894c588c81 libpng-devel-1.2.7-3.el4.ia64.rpm
c5fe38e12bb83cf3e2a6b14d21933f94 libpng10-1.0.16-3.i386.rpm
c652c1ce02a6a9146be030d915f824c2 libpng10-1.0.16-3.ia64.rpm
65aa2f4a9af05a9d77fa62010b59eb3b libpng10-debuginfo-1.0.16-3.i386.rpm
99564ffbb83059b484e127e1db4fe78c libpng10-debuginfo-1.0.16-3.ia64.rpm
698127bee4d93807fbe1791276b08a14 libpng10-devel-1.0.16-3.ia64.rpm

x86_64:
2091755092c118169b1c73477f7aca98 libpng-1.2.7-3.el4.i386.rpm
64795eb8ff4d7fe52f1c0a0d286c4b32 libpng-1.2.7-3.el4.x86_64.rpm
8f04ec6b9b5409a952a92ef581be7599 libpng-debuginfo-1.2.7-3.el4.i386.rpm
542d4a533fdae7b032b350abd566ab57 libpng-debuginfo-1.2.7-3.el4.x86_64.rpm
1046764762d2e06d727c8a45a375ad86 libpng-devel-1.2.7-3.el4.x86_64.rpm
c5fe38e12bb83cf3e2a6b14d21933f94 libpng10-1.0.16-3.i386.rpm
47f6bf747e4bffed5cc59102ad179f2e libpng10-1.0.16-3.x86_64.rpm
65aa2f4a9af05a9d77fa62010b59eb3b libpng10-debuginfo-1.0.16-3.i386.rpm
0b229bd11e089a33010fc45231f92ccc libpng10-debuginfo-1.0.16-3.x86_64.rpm
79f777f2e31a98a4806788698db38443 libpng10-devel-1.0.16-3.x86_64.rpm

Red Hat Enterprise Linux WS version 4:

SRPMS:
ftp://updates.redhat.com/enterprise/4WS/en/os/SRPMS/libpng-1.2.7-3.el4.src.rpm
8ef67fad14ca5c1f9dce4449b1e191d3 libpng-1.2.7-3.el4.src.rpm
ftp://updates.redhat.com/enterprise/4WS/en/os/SRPMS/libpng10-1.0.16-3.src.rpm
f16552850fb887ee8a1a9e3a332d3c63 libpng10-1.0.16-3.src.rpm

i386:
2091755092c118169b1c73477f7aca98 libpng-1.2.7-3.el4.i386.rpm
8f04ec6b9b5409a952a92ef581be7599 libpng-debuginfo-1.2.7-3.el4.i386.rpm
4a4945468b83135d1e5652b70a838304 libpng-devel-1.2.7-3.el4.i386.rpm
c5fe38e12bb83cf3e2a6b14d21933f94 libpng10-1.0.16-3.i386.rpm
65aa2f4a9af05a9d77fa62010b59eb3b libpng10-debuginfo-1.0.16-3.i386.rpm
2115b79e6f2f01fb21ff2dc856374c1a libpng10-devel-1.0.16-3.i386.rpm

ia64:
2091755092c118169b1c73477f7aca98 libpng-1.2.7-3.el4.i386.rpm
2051c01b83415587fc810994420f0227 libpng-1.2.7-3.el4.ia64.rpm
8f04ec6b9b5409a952a92ef581be7599 libpng-debuginfo-1.2.7-3.el4.i386.rpm
589e35af9ee426167d4659cc3e752d65 libpng-debuginfo-1.2.7-3.el4.ia64.rpm
5bbffd4ca84004e74398f8894c588c81 libpng-devel-1.2.7-3.el4.ia64.rpm
c5fe38e12bb83cf3e2a6b14d21933f94 libpng10-1.0.16-3.i386.rpm
c652c1ce02a6a9146be030d915f824c2 libpng10-1.0.16-3.ia64.rpm
65aa2f4a9af05a9d77fa62010b59eb3b libpng10-debuginfo-1.0.16-3.i386.rpm
99564ffbb83059b484e127e1db4fe78c libpng10-debuginfo-1.0.16-3.ia64.rpm
698127bee4d93807fbe1791276b08a14 libpng10-devel-1.0.16-3.ia64.rpm

x86_64:
2091755092c118169b1c73477f7aca98 libpng-1.2.7-3.el4.i386.rpm
64795eb8ff4d7fe52f1c0a0d286c4b32 libpng-1.2.7-3.el4.x86_64.rpm
8f04ec6b9b5409a952a92ef581be7599 libpng-debuginfo-1.2.7-3.el4.i386.rpm
542d4a533fdae7b032b350abd566ab57 libpng-debuginfo-1.2.7-3.el4.x86_64.rpm
1046764762d2e06d727c8a45a375ad86 libpng-devel-1.2.7-3.el4.x86_64.rpm
c5fe38e12bb83cf3e2a6b14d21933f94 libpng10-1.0.16-3.i386.rpm
47f6bf747e4bffed5cc59102ad179f2e libpng10-1.0.16-3.x86_64.rpm
65aa2f4a9af05a9d77fa62010b59eb3b libpng10-debuginfo-1.0.16-3.i386.rpm
0b229bd11e089a33010fc45231f92ccc libpng10-debuginfo-1.0.16-3.x86_64.rpm
79f777f2e31a98a4806788698db38443 libpng10-devel-1.0.16-3.x86_64.rpm

Red Hat Enterprise Linux Desktop (v. 5 client):

SRPMS:
ftp://ftp.redhat.com/pub/redhat/linux/enterprise/5Client/en/os/SRPMS/libpng-1.2.10-7.0.2.src.rpm
6847a840a8b5af3c3be05bd2d7fa794d libpng-1.2.10-7.0.2.src.rpm

i386:
35de4b9feba917c3884ba05fac436e3c libpng-1.2.10-7.0.2.i386.rpm
f66d7b267045477a7fd165855f1e247d libpng-debuginfo-1.2.10-7.0.2.i386.rpm

x86_64:
35de4b9feba917c3884ba05fac436e3c libpng-1.2.10-7.0.2.i386.rpm
6f9c2dcf576f4244a3f8460b8e687c5b libpng-1.2.10-7.0.2.x86_64.rpm
f66d7b267045477a7fd165855f1e247d libpng-debuginfo-1.2.10-7.0.2.i386.rpm
8e9d7abc64a05f1153c908bdf9a6e631 libpng-debuginfo-1.2.10-7.0.2.x86_64.rpm

RHEL Desktop Workstation (v. 5 client):

SRPMS:
ftp://ftp.redhat.com/pub/redhat/linux/enterprise/5Client/en/os/SRPMS/libpng-1.2.10-7.0.2.src.rpm
6847a840a8b5af3c3be05bd2d7fa794d libpng-1.2.10-7.0.2.src.rpm

i386:
f66d7b267045477a7fd165855f1e247d libpng-debuginfo-1.2.10-7.0.2.i386.rpm
60f7db7d67d26ce36d6c609b8fa8436a libpng-devel-1.2.10-7.0.2.i386.rpm

x86_64:
f66d7b267045477a7fd165855f1e247d libpng-debuginfo-1.2.10-7.0.2.i386.rpm
8e9d7abc64a05f1153c908bdf9a6e631 libpng-debuginfo-1.2.10-7.0.2.x86_64.rpm
60f7db7d67d26ce36d6c609b8fa8436a libpng-devel-1.2.10-7.0.2.i386.rpm
bd96dc32b7b7e9ef516a80ad136483d5 libpng-devel-1.2.10-7.0.2.x86_64.rpm

Red Hat Enterprise Linux (v. 5 server):

SRPMS:
ftp://ftp.redhat.com/pub/redhat/linux/enterprise/5Server/en/os/SRPMS/libpng-1.2.10-7.0.2.src.rpm
6847a840a8b5af3c3be05bd2d7fa794d libpng-1.2.10-7.0.2.src.rpm

i386:
35de4b9feba917c3884ba05fac436e3c libpng-1.2.10-7.0.2.i386.rpm
f66d7b267045477a7fd165855f1e247d libpng-debuginfo-1.2.10-7.0.2.i386.rpm
60f7db7d67d26ce36d6c609b8fa8436a libpng-devel-1.2.10-7.0.2.i386.rpm

ia64:
35de4b9feba917c3884ba05fac436e3c libpng-1.2.10-7.0.2.i386.rpm
8171b221cea21ca901e9c8e694f5dae8 libpng-1.2.10-7.0.2.ia64.rpm
f66d7b267045477a7fd165855f1e247d libpng-debuginfo-1.2.10-7.0.2.i386.rpm
445333327acfa4bee03afcdaeea2658a libpng-debuginfo-1.2.10-7.0.2.ia64.rpm
cea22cdacb80be44f1bfc985b1b9ba7a libpng-devel-1.2.10-7.0.2.ia64.rpm

ppc:
d2146b45ce3434b0af869691514df5e9 libpng-1.2.10-7.0.2.ppc.rpm
8378061d0c82171486795769ecf9f2df libpng-1.2.10-7.0.2.ppc64.rpm
66764b533533267a1cc1d24249f46077 libpng-debuginfo-1.2.10-7.0.2.ppc.rpm
d804aa63983d5afc2d2d360fec73c4e2 libpng-debuginfo-1.2.10-7.0.2.ppc64.rpm
f1be6e8c8ff46c9d7a46b3e0342af679 libpng-devel-1.2.10-7.0.2.ppc.rpm
7c4885b59ce78db55ee21aaa7c91412b libpng-devel-1.2.10-7.0.2.ppc64.rpm

s390x:
acb8893c577fcb4ea3e7a813c4728493 libpng-1.2.10-7.0.2.s390.rpm
ae2a395e9b5c1c1fcd0ee51c6a11cd5c libpng-1.2.10-7.0.2.s390x.rpm
faf0f86f31a5dd2801e407af61bd7fb9 libpng-debuginfo-1.2.10-7.0.2.s390.rpm
9e54a3931966b106acc166fcd1fbd7ff libpng-debuginfo-1.2.10-7.0.2.s390x.rpm
fe2bf8a2c3b7dde353f8c6892afa62ac libpng-devel-1.2.10-7.0.2.s390.rpm
21856a7728dee356068f53b5a032ac5b libpng-devel-1.2.10-7.0.2.s390x.rpm

x86_64:
35de4b9feba917c3884ba05fac436e3c libpng-1.2.10-7.0.2.i386.rpm
6f9c2dcf576f4244a3f8460b8e687c5b libpng-1.2.10-7.0.2.x86_64.rpm
f66d7b267045477a7fd165855f1e247d libpng-debuginfo-1.2.10-7.0.2.i386.rpm
8e9d7abc64a05f1153c908bdf9a6e631 libpng-debuginfo-1.2.10-7.0.2.x86_64.rpm
60f7db7d67d26ce36d6c609b8fa8436a libpng-devel-1.2.10-7.0.2.i386.rpm
bd96dc32b7b7e9ef516a80ad136483d5 libpng-devel-1.2.10-7.0.2.x86_64.rpm

These packages are GPG signed by Red Hat for security. Our key and
details on how to verify the signature are available from
https://www.redhat.com/security/team/key/#package

7. References:

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5793
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2445
http://www.redhat.com/security/updates/classification/#moderate

8. Contact:

The Red Hat security contact is <secalert@redhat.com>. More contact
details at https://www.redhat.com/security/team/contact/

Copyright 2007 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.4 (GNU/Linux)

iD8DBQFGTM06XlSAg2UNWIIRAlV9AJwI/+RE5A++fIed2oiguslnRzoumwCbB5Y3
OOQ2ZjO+31F/Vqu/23QhN1U=
ßKK
-----END PGP SIGNATURE-----