From 101773fe9a6de4a3042086ff0c7c448689132dadca97482fa1fa1cd7981652e7 Mon Sep 17 00:00:00 2001 From: Petr Gajdos Date: Mon, 2 Jan 2017 11:10:07 +0000 Subject: [PATCH] - update to 1.6.27: fixes CVE-2016-10087 OBS-URL: https://build.opensuse.org/package/show/graphics/libpng16?expand=0&rev=89 --- libpng-1.6.26.tar.xz | 3 --- libpng-1.6.26.tar.xz.asc | 17 ----------------- libpng-1.6.27.tar.xz | 3 +++ libpng-1.6.27.tar.xz.asc | 17 +++++++++++++++++ libpng16.changes | 5 +++++ libpng16.spec | 6 +++--- 6 files changed, 28 insertions(+), 23 deletions(-) delete mode 100644 libpng-1.6.26.tar.xz delete mode 100644 libpng-1.6.26.tar.xz.asc create mode 100644 libpng-1.6.27.tar.xz create mode 100644 libpng-1.6.27.tar.xz.asc diff --git a/libpng-1.6.26.tar.xz b/libpng-1.6.26.tar.xz deleted file mode 100644 index 025a8c4..0000000 --- a/libpng-1.6.26.tar.xz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:266743a326986c3dbcee9d89b640595f6b16a293fd02b37d8c91348d317b73f9 -size 983576 diff --git a/libpng-1.6.26.tar.xz.asc b/libpng-1.6.26.tar.xz.asc deleted file mode 100644 index 888fcb7..0000000 --- a/libpng-1.6.26.tar.xz.asc +++ /dev/null @@ -1,17 +0,0 @@ ------BEGIN PGP SIGNATURE----- -Version: GnuPG v1 - -iQIcBAABAgAGBQJYCBZzAAoJEPVJhL+hbGQPvpEP/1WksEMqpKn1w18pbYzTEUe0 -+7WaHKj07Z8zOneYRKdEp3xPtEfvJOS3n+Qr6yqaXo9+SewoKCvagT2B6RhEPeBe -lpSofPxz3NRqIrD85DRf+BSAky709qYfCXGlNxWoVGCv9r1vDZTOxiUyz+gZkHot -KuFKNSxTkRGgiFDLl/1ffL1WFv6rEsqQQh5Z54gia8n/z4MAjkxQorwsIVMKPFTw -KJqWgKpccKSFdBunBdOoHuIbAg871rLdA3ZCR4EOdLBEGyp8APp0Vgfftma1exzF -oU6ExlTBceBg8jZFwesQISLZMpClyuZrfrI5FEaADWHSmnv7OqJW8H+HyTxt+JFq -4HCJa0ftLuH6QVmEMnssrq4Ey7Mel6I28nZcUMFyhDdzRJaipwnrfP2zw+X40I+q -NlELebAdrtBjtOQyr1MrRV50Q8oFcK/+TfMtEaosVGxPnMRmhzmKM/golawFEInK -gaAGzSm5kSaxtn7Mis2nLiYqE+dbi5qOIKQIedUfxZ92HaKKjGMiXgvru8WPTxZ6 -QRciRsIdHfwxdblUMzjt8SpT1H2UH4zJr/DcPt2YrJYARi5n830XqvzDfVQO9J5R -Uew/8av0Nch0Oco+OuivAybOJ9b41oOXFyh/iY7ocqqXwQJltskjN1KwdRZeP4Ny -NjmcKKFtWnvf8M8bEZ0R -=Ktgv ------END PGP SIGNATURE----- diff --git a/libpng-1.6.27.tar.xz b/libpng-1.6.27.tar.xz new file mode 100644 index 0000000..0fc811d --- /dev/null +++ b/libpng-1.6.27.tar.xz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:fca2ffd97336356cdab9bfa8936b9d6dfd580a70205e5dfead3ac42cb054b57b +size 984316 diff --git a/libpng-1.6.27.tar.xz.asc b/libpng-1.6.27.tar.xz.asc new file mode 100644 index 0000000..7dbcc3e --- /dev/null +++ b/libpng-1.6.27.tar.xz.asc @@ -0,0 +1,17 @@ +-----BEGIN PGP SIGNATURE----- +Version: GnuPG v1 + +iQIcBAABAgAGBQJYZR8sAAoJEPVJhL+hbGQPE8AP/2R7VpEG0Lh0Foo1ifs1p25m +BKwfDCkX8/fFGAVvd7PdDlVCPBbN2FkK8nzYsYh3AriUS352WzyP6LVR0XOUigPg +u3mG/xyxdPeh7SKNXlpH3OikBq4aNc/8mqwWbbqUD+M2vURzWytrcb+VqnDOhIgf +ll0GSYOXAV3GcrbCrVfx+YBwEt9shGtkNGQqurH0eEqwLXam3MD8Kq5x/gIp9WzT +wdT/2LisPVOHg8EexOsUsWoMxCT3ezQlieYrvdI63N70clulvopKiPFJ1AK+tt4o +tG/2nM6B6PrGm6eFOnfzQH7pi4p4+HAkWxNuxjTcMptR9xCMk74a1MrJiUnAWVE2 +i8+UBWvkwT0Yx5RigJqVqGySRdZEbRPxXkFUBcTnhwgqa4U4c7Bs2ZD+bkbksSd8 +NFzk1apRMU7s2I+cHNhX+jFpe8aQb7A+w/dumE+JJntdUJP+gG6Zt/ocX9rmOEIh +FZpFxplAQdDZA7lU4lkFOo9AHycaTGMZMyE/fkbV8/7THubBbQ/L3wEtKqv7oqrs +IP4cScNrItxeyBCJP3ydUpZuxs/lznC2GHPLbxv8wS2JsEsQOBr7WQgMJv3bPbEG +RArXp0skjjyOyzzBRGcol2nLR6PQOsRFBfwlnww9gx1l3FHV+FfedJtZrjPsFbi1 +Q47OYm0qAKk0gJLfvPl/ +=2M5K +-----END PGP SIGNATURE----- diff --git a/libpng16.changes b/libpng16.changes index 96adc11..5206e11 100644 --- a/libpng16.changes +++ b/libpng16.changes @@ -1,3 +1,8 @@ +------------------------------------------------------------------- +Mon Jan 2 11:09:08 UTC 2017 - pgajdos@suse.com + +- update to 1.6.27: fixes CVE-2016-10087 + ------------------------------------------------------------------- Thu Oct 20 06:12:20 UTC 2016 - pgajdos@suse.com diff --git a/libpng16.spec b/libpng16.spec index b869122..cd31a0b 100644 --- a/libpng16.spec +++ b/libpng16.spec @@ -1,7 +1,7 @@ # # spec file for package libpng16 # -# Copyright (c) 2016 SUSE LINUX GmbH, Nuernberg, Germany. +# Copyright (c) 2017 SUSE LINUX GmbH, Nuernberg, Germany. # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -19,7 +19,7 @@ # %define major 1 %define minor 6 -%define micro 26 +%define micro 27 %define branch %{major}%{minor} %define libname libpng%{branch}-%{branch} @@ -44,8 +44,8 @@ BuildRoot: %{_tmppath}/%{name}-%{version}-build %package -n %{libname} Summary: Library for the Portable Network Graphics Format (PNG) -Group: System/Libraries # bug437293 +Group: System/Libraries %ifarch ppc64 Obsoletes: libpng-64bit %endif