Patch-ID# 114818-06 Keywords: security gnome libpng graphics tetex Synopsis: GNOME 2.0.0: libpng Patch Date: Aug/30/2004 Install Requirements: None Solaris Release: 9 SunOS Release: 5.9 Unbundled Product: GNOME Unbundled Release: 2.0.0 Xref: This patch available for x86 as 114819 Topic: Relevant Architectures: sparc BugId's fixed with this patch: 4809087 4901822 4979460 5019699 5075227 Changes incorporated in this version: 5075227 Patches accumulated and obsoleted by this patch: Patches which conflict with this patch: Patches required with this patch: Obsoleted by: Files included with this patch: /usr/lib/pkgconfig/libpng12.pc /usr/sfw/bin/libpng-config /usr/sfw/bin/libpng12-config /usr/sfw/include/libpng /usr/sfw/include/libpng12/png.h /usr/sfw/include/libpng12/pngconf.h /usr/sfw/include/png.h /usr/sfw/include/pngconf.h /usr/sfw/lib/libpng.so /usr/sfw/lib/libpng.so.2 /usr/sfw/lib/libpng.so.2.1.0.15 /usr/sfw/lib/libpng.so.3 /usr/sfw/lib/libpng.so.3.1.2.5 /usr/sfw/lib/libpng10.so /usr/sfw/lib/libpng10.so.0 /usr/sfw/lib/libpng10.so.0.1.0.15 /usr/sfw/lib/libpng12.so /usr/sfw/lib/libpng12.so.0 /usr/sfw/lib/libpng12.so.0.1.2.5 /usr/sfw/share/man/man3/libpng.3 /usr/sfw/share/man/man3/libpngpf.3 /usr/sfw/share/man/man5/png.5 /usr/lib/pkgconfig/libpng.pc Problem Description: 5075227 multiple vulnerabilities in the libpng [ CAN-2004-0597 ] (from 114818-05) 5019699 libpng12.pc has invalid prefix value which causes build failure when used (from 114818-04) 4979460 Patches 114818-03 & 114819-03 causing S9U6 nightly build failures (from 114818-03) 4901822 tetex 2.0.2 needs libpng 1.2.5 version for correct rendering of png images within tex documents. (from 114818-02) Remove 64bit binaries (from 114818-01) 4809087 libpng buffer overflow Patch Installation Instructions: -------------------------------- Refer to the man pages for instructions on using 'patchadd' and 'patchrm' scripts provided with Solaris. Any other special or non-generic installation instructions should be described below as special instructions. The following example installs a patch to a standalone machine: example# patchadd /var/spool/patch/104945-02 The following example removes a patch from a standalone system: example# patchrm 104945-02 For additional examples please see the appropriate man pages. Special Install Instructions: ----------------------------- NOTE: In order to get the 64bit support for tetex (bug 4901822), install one of the following patches in addition to this patch: For S9 thru S9U3: 114820-02 (or newer): GNOME 2.0.0: 64bit libpng Patch For S9U4 or later: 114822-01 (or newer): GNOME 2.0.2: 64bit libpng Patch README -- Last modified date: Monday, August 30, 2004