From ed3c2b0529d87eb138210a4c907ade7ee3efeba7 Mon Sep 17 00:00:00 2001 From: Paul Menzel Date: Tue, 9 Jul 2019 17:56:33 +0200 Subject: [PATCH] libpng16: Update version from 1.6.34 to 1.6.37 From the [Web site][1]: > libpng versions 1.6.36 and earlier have a use-after-free bug in the > simplified libpng API png_image_free(). It has been assigned ID > CVE-2019-7317. The vulnerability is fixed in version 1.6.37, released > on 15 April 2019. [1]: http://www.libpng.org/pub/png/libpng.html --- libpng16.be0 | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/libpng16.be0 b/libpng16.be0 index 2eb3f433f..5b7dd0b90 100755 --- a/libpng16.be0 +++ b/libpng16.be0 @@ -1,6 +1,6 @@ #!/usr/bin/env beesh -# BEE_VERSION libpng16-1.6.34-0 +# BEE_VERSION libpng16-1.6.37-0 SRCURL[0]="https://downloads.sourceforge.net/libpng/libpng-${PKGVERSION}.tar.xz"