Changelog for
libpng-devel-1.2.7-3.i586.rpm :
Fri Dec 3 13:00:00 2004 PLD Team
All persons listed below can be reached at AATTpld.org.pl
$Log: libpng.spec,v $
Revision 1.87 2004/12/03 01:07:20 kloczek
- release 3: rebuild on gcc 3.4.3.
Revision 1.86 2004/09/23 14:42:20 kloczek
- reelase 2: rebuild.
Revision 1.85 2004/09/12 06:12:36 kloczek
- updated to 1.2.7.
Revision 1.84 2004/08/22 09:11:22 kloczek
- updated to 1.2.6.
Revision 1.83 2004/07/14 21:02:45 kloczek
- release 5,
- rebuild on gcc 3.4.1,
- added gcc34 patch based on http://lists.berlios.de/pipermail/clc-devel/2003-October/000124.html,
- SECURITY FIXES:
-- CAN-2004-0421: added oob_error_message patch stolen from FC:
The Portable Network Graphics library (libpng) 1.0.15 and earlier allows
attackers to cause a denial of service (crash) via a malformed PNG image
file that triggers an error that causes an out-of-bounds read when creating
the error message.
-- CAN-2002-1363: added transfix patch stolen from FC:
Portable Network Graphics (PNG) libraries (1) libpng 1.2.1 and earlier,
and (2) libpng3 1.2.5 and earlier, do not correctly calculate offsets,
which allows remote attackers to cause a denial of service (crash) and
possibly execute arbitrary code via a buffer overflow attack on the row
buffers.
Revision 1.82 2004/05/10 12:47:14 kloczek
- switch Source url to http://prdownloads.sf.net/.
Revision 1.81 2004/03/29 04:10:46 kloczek
- cleanups.
Revision 1.80 2004/02/16 03:50:24 kloczek
- s#%{version}#${version}-%{release)# - use more strict Requires rules
between subpackages generated from one source package.
Revision 1.79 2004/01/21 15:18:47 kloczek
- release 4: dasable build static subpackage (added to Obsoletes and added
no_static patch).