libpng: bump to 1.2.44 [CVE-2010-1205]
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Mon, 5 Jul 2010 13:47:32 +0000 (10:47 -0300)
committerPeter Korsgaard <jacmet@sunsite.dk>
Mon, 12 Jul 2010 10:13:14 +0000 (12:13 +0200)
Closes #2166

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Peter Korsgaard <jacmet@sunsite.dk>
CHANGES
package/libpng/libpng.mk

diff --git a/CHANGES b/CHANGES
index 2c54877067bd981e3270c0fd28c2c178234e36df..ae6bd9a2d40789876ffe7c14388c1a7398154690 100644 (file)
--- a/CHANGES
+++ b/CHANGES
@@ -19,9 +19,9 @@
        dmalloc, dnsmasq, dropbear, e2fsprogs, fbv, file, fontconfig,
        gawk, gstreamer, gzip, intltool, ipsec-tools, iptables,
        libart, libcgi, libfuse, libgpg-error, libidn, liblockfile,
-       links, lmbench, lrzsz, make, module-init-tools, nbd, ncurses,
-       netperf, ntfsprogs, openssl, php, qt, quagga, sqlite, sdl,
-       sdl_mixer, sdl_sound, sdl_ttf, squashfs, tn5250, tremor,
+       libpng, links, lmbench, lrzsz, make, module-init-tools, nbd,
+       ncurses, netperf, ntfsprogs, openssl, php, qt, quagga, sqlite,
+       sdl, sdl_mixer, sdl_sound, sdl_ttf, squashfs, tn5250, tremor,
        usbutils, xkeyboard-config, xserver_xorg-server, xvkbd
 
        Removed packages: modutils, portage, rxvt
@@ -57,6 +57,7 @@
        #2119: Tries to build kernel, although disabled in config
        #2143: buildroot compiler generates segfaulting statically linked exe..
        #2155: Compression lzo don't set for ubifs
+       #2166: [SECURITY] Update libpng to 1.2.44
 
 2010.05, Released May 30th, 2010:
 
index f4588711c0dc218578ce0295b9c9a93eb448882e..a81d9513c5ba7e344d4f7009cc7a2c584c2183ea 100644 (file)
@@ -3,7 +3,7 @@
 # libpng (Portable Network Graphic library)
 #
 #############################################################
-LIBPNG_VERSION:=1.2.43
+LIBPNG_VERSION:=1.2.44
 LIBPNG_SITE = http://$(BR2_SOURCEFORGE_MIRROR).dl.sourceforge.net/sourceforge/libpng
 LIBPNG_SOURCE = libpng-$(LIBPNG_VERSION).tar.bz2
 LIBPNG_LIBTOOL_PATCH = NO