[CLSA-2026:1768911013] libpng: Fix of CVE-2025-64720
Type:
security
Severity:
Important
Release date:
2026-01-20 20:40:36 UTC
Description:
- CVE-2025-64720: fix buffer overflow in png_init_read_transformations function during palette compositing with optimized alpha
Updated packages:
  • libpng-1.5.13-8.el7.tuxcare.els2.i686.rpm
    sha:5c72a9058b0c9dbbb1b92291a99923e96e8acdfafaf23846f16bcc44c76001b1
  • libpng-1.5.13-8.el7.tuxcare.els2.x86_64.rpm
    sha:6d4b24d502cf59f308b2011ddd9aec5da1a2427bba3f8bfb91fb5346c6576fc3
  • libpng-devel-1.5.13-8.el7.tuxcare.els2.i686.rpm
    sha:4ca09a5573998dd46c4d7c23e5306ebdde7e150249e4913ddc53018716660849
  • libpng-devel-1.5.13-8.el7.tuxcare.els2.x86_64.rpm
    sha:7519f436b188d5355fa8762bc5555fe52797cc212c4449ccfdc97b8d95557e28
  • libpng-static-1.5.13-8.el7.tuxcare.els2.i686.rpm
    sha:d6cb6089578dd484b8cfac29dec1f4dce0ede2e863996b695311ef1ecb17c864
  • libpng-static-1.5.13-8.el7.tuxcare.els2.x86_64.rpm
    sha:362c5e2c70583738019095e21ac23b3c20f1c9b50c852a38341e36023e57f3c2
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.