[ALSA-2026:14790] Moderate: libpng security update
Type:
security
Severity:
moderate
Release date:
2026-05-13
Description:
The libpng packages contain a library of functions for creating and manipulating Portable Network Graphics (PNG) image format files. Security Fix(es): * libpng: libpng: Information disclosure and denial of service via out-of-bounds read/write in Neon palette expansion (CVE-2026-33636) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 libpng-1.6.40-8.el10_1.3.aarch64.rpm 6fd71e844fff3c26b7b88459788f3078ecbdb5e5246cbc287b00d1c93af259b0
aarch64 libpng-devel-1.6.40-8.el10_1.3.aarch64.rpm f20a8f5802c7aebdb1aabfec9e37e2ce3494f34f05d000902f227e7434e0de75
ppc64le libpng-1.6.40-8.el10_1.3.ppc64le.rpm 737b3d6791195eac4fb85e008c993c7e12e0941e4919a60685858b277cbd59a8
ppc64le libpng-devel-1.6.40-8.el10_1.3.ppc64le.rpm 983f8695e95934cd87204b0da93dd3ec6c0ca9df01eaa50c9d3ee490f57bef41
s390x libpng-devel-1.6.40-8.el10_1.3.s390x.rpm 0af81db73a099499fa3d6b04be071ac02a00d06528af94af6eca80a7012f64ce
s390x libpng-1.6.40-8.el10_1.3.s390x.rpm d90f291b74f119be0e6c25c852c752f2d33656ccff6c9b275a0481f4a1cc192f
x86_64 libpng-1.6.40-8.el10_1.3.x86_64.rpm 50e01307f2dc0bd1961b162420aef84538a817359cc2ba17b60b52af2a56c1b3
x86_64 libpng-devel-1.6.40-8.el10_1.3.x86_64.rpm d4d6971a8eaa7e20feaea8917cc6a861261cc6dfb0ed303b5f4262ef0531d3d7
x86_64_v2 libpng-1.6.40-8.el10_1.3.x86_64_v2.rpm 7f56ae905b73a658c93001de867b4f60684637b8c92cf4ed6bea3c81d21f91ec
x86_64_v2 libpng-devel-1.6.40-8.el10_1.3.x86_64_v2.rpm c35397615c51105979c51b8402348c1cd48da5171e9ca5cd53c46ef561fcc918
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.