[CLSA-2026:1768909961] libpng: Fix of CVE-2025-64720
Type:
security
Severity:
Important
Release date:
2026-01-20 11:52:45 UTC
Description:
- CVE-2025-64720: fix buffer overflow in png_init_read_transformations function during palette compositing with optimized alpha
Updated packages:
  • libpng-1.5.13-8.el7.tuxcare.els2.i686.rpm
    sha:ca5e04b2dc24ca0dd001c19c1468f3f05cb896fc50368ba4118a710baeca9e91
  • libpng-1.5.13-8.el7.tuxcare.els2.x86_64.rpm
    sha:72f1ad6acfed79d4ca659ec40cb0390e49d2bf92d37d200232b30058e670f699
  • libpng-devel-1.5.13-8.el7.tuxcare.els2.i686.rpm
    sha:567bbb3d1772b5085e5f126c41ce81f233b5d771c157c84e51bad4b020ed0a19
  • libpng-devel-1.5.13-8.el7.tuxcare.els2.x86_64.rpm
    sha:c2b36f1313555d0a8f6f72f98cc4b99d168cfab4d1eb5638e3b41ff89215cfb0
  • libpng-static-1.5.13-8.el7.tuxcare.els2.i686.rpm
    sha:ce8c377d807806142f74d98c3c9da14ed3f1b44eaee4b37846d3af12d79cd297
  • libpng-static-1.5.13-8.el7.tuxcare.els2.x86_64.rpm
    sha:f8f836f0fc23bd22047a50e24e5b71ec95cd758c18b947cb53a4194f5ee9a81b
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.