[Bug 297440] [NEW] Please sync optipng 0.6.2.1-1 from Debian unstable

Launchpad Bug Tracker 297440 at bugs.launchpad.net
Thu Apr 2 18:08:07 BST 2009


*** This bug is a security vulnerability ***

You have been subscribed to a public security bug by Daniel Holbach (dholbach):

Binary package hint: optipng

Hi!

I have upload a new version of optipng to Debian unstable, fixing a security vulnerability (Secunia Advisory SA32651).
Changes from 0.6.1-2 (jaunty) are small (see http://lists.debian.org/debian-release/2008/11/msg00413.html).
Note that version 0.6-1 (from intrepid) is also vulnerable.

Thank you!


 optipng  (0.6.2.1-1) unstable; urgency=high

   * New upstream release:
     - Fix an array overflow vulnerability.

 -- Nelson A. de Oliveira <naoliv at debian.org>  Thu, 26 Feb 2009 15:48:25
-0300

optipng (0.6.2-1) experimental; urgency=low

   * New upstream release;
   * Fix broken link /usr/share/doc/optipng/changelog.gz;
   * OptiPNG now produces a less verbose output (Closes: #457772).

 -- Nelson A. de Oliveira <naoliv at debian.org>  Tue, 11 Nov 2008 13:26:52
-0200

** Affects: optipng (Ubuntu)
     Importance: Undecided
         Status: Confirmed

-- 
Please sync optipng 0.6.2.1-1 from Debian unstable
https://bugs.edge.launchpad.net/bugs/297440
You received this bug notification because you are a member of Ubuntu Package Archive Administrators, which is a direct subscriber.



More information about the ubuntu-archive mailing list