diff options
author | Glenn Randers-Pehrson <glennrp at users.sourceforge.net> | 2015-11-26 00:03:06 -0600 |
---|---|---|
committer | Glenn Randers-Pehrson <glennrp at users.sourceforge.net> | 2015-11-26 07:04:07 -0600 |
commit | 7fe34165202ae2ed07cba3ad0e779af84756ab42 (patch) | |
tree | ceb76af637da994f716f2c67c22c5a50dcce9cb9 /ANNOUNCE | |
parent | 62b6843b46b32740be09aaccb824efbd0dfb43f0 (diff) | |
download | libpng-7fe34165202ae2ed07cba3ad0e779af84756ab42.tar.gz |
[libpng14] Imported from libpng-1.4.18rc01.tarv1.4.18rc01
Diffstat (limited to 'ANNOUNCE')
-rw-r--r-- | ANNOUNCE | 28 |
1 files changed, 16 insertions, 12 deletions
@@ -1,5 +1,5 @@ -Libpng 1.4.18beta02 - November 23, 2015 +Libpng 1.4.18rc01 - November 26, 2015 This is not intended to be a public release. It will be replaced within a few weeks by a public version or by another test version. @@ -9,21 +9,21 @@ Files available for download: Source files with LF line endings (for Unix/Linux) and with a "configure" script - 1.4.18beta02.tar.xz (LZMA-compressed, recommended) - 1.4.18beta02.tar.gz - 1.4.18beta02.tar.bz2 + 1.4.18rc01.tar.xz (LZMA-compressed, recommended) + 1.4.18rc01.tar.gz + 1.4.18rc01.tar.bz2 Source files with CRLF line endings (for Windows), without the "configure" script - lp1418b02.7z (LZMA-compressed, recommended) - lp1418b02.zip + lp1418r01.7z (LZMA-compressed, recommended) + lp1418r01.zip Other information: - 1.4.18beta02-README.txt - 1.4.18beta02-LICENSE.txt - libpng-1.4.18beta02-*.asc (armored detached GPG signatures) + 1.4.18rc01-README.txt + 1.4.18rc01-LICENSE.txt + libpng-1.4.18rc01-*.asc (armored detached GPG signatures) Changes since the last public release (1.4.17): @@ -31,9 +31,13 @@ version 1.4.18beta01 [November 20, 2015] Avoid potential pointer overflow in png_handle_iTXt(), png_handle_zTXt(), png_handle_sPLT(), and png_handle_pCAL() (Bug report by John Regehr). -version 1.4.18beta02 [%RDATE%] - Fixed bug recently introduced in png_set_PLTE() that uses png_ptr - not info_ptr. +version 1.4.18beta02 [November 23, 2015] + Fixed incorrect implementation of png_set_PLTE() that uses png_ptr + not info_ptr, that left png_set_PLTE() open to the CVE-2015-8126 + vulnerability. + +version 1.4.18rc01 [November 26, 2015] + Discontinued distributing tar.bz2 archives. Send comments/corrections/commendations to glennrp at users.sourceforge.net or to png-mng-implement at lists.sf.net (subscription required; visit |