ELSA-2026-18028

ELSA-2026-18028 - libpng security update

Type:SECURITY
Impact:MODERATE
Release Date:2026-05-18

Description


[2:1.6.37-12.4]
- fix CVE-2026-33416: use-after-free via pointer aliasing in png_set_tRNS and png_set_PLTE (RHEL-161436)


Related CVEs


CVE-2026-33416

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) libpng-1.6.37-12.el9_7.4.src.rpm5da1be22bed5261d87241fc212da4cca1ddfe5881f5358ac1eb602b240314ff1-ol9_aarch64_appstream
libpng-1.6.37-12.el9_7.4.src.rpm5da1be22bed5261d87241fc212da4cca1ddfe5881f5358ac1eb602b240314ff1-ol9_aarch64_baseos_latest
libpng-1.6.37-12.el9_7.4.src.rpm5da1be22bed5261d87241fc212da4cca1ddfe5881f5358ac1eb602b240314ff1-ol9_aarch64_u7_baseos_patch
libpng-1.6.37-12.el9_7.4.aarch64.rpm93056e3fc01b7ea89c2e8deb0b3ae1d48af448a4507ccc52c6a2bb89bf0a4700-ol9_aarch64_baseos_latest
libpng-1.6.37-12.el9_7.4.aarch64.rpm93056e3fc01b7ea89c2e8deb0b3ae1d48af448a4507ccc52c6a2bb89bf0a4700-ol9_aarch64_u7_baseos_patch
libpng-devel-1.6.37-12.el9_7.4.aarch64.rpm3b1fa18604043265a679c10a2efa866ad5e5b1d37e4e7a858dce1698b66edf90-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) libpng-1.6.37-12.el9_7.4.src.rpm5da1be22bed5261d87241fc212da4cca1ddfe5881f5358ac1eb602b240314ff1-ol9_x86_64_appstream
libpng-1.6.37-12.el9_7.4.src.rpm5da1be22bed5261d87241fc212da4cca1ddfe5881f5358ac1eb602b240314ff1-ol9_x86_64_baseos_latest
libpng-1.6.37-12.el9_7.4.src.rpm5da1be22bed5261d87241fc212da4cca1ddfe5881f5358ac1eb602b240314ff1-ol9_x86_64_u7_baseos_patch
libpng-1.6.37-12.el9_7.4.i686.rpm5b76b7aac47b21133a20152d17d6421a6d07ab48090c4b583eabbae46b9f4af6-ol9_x86_64_baseos_latest
libpng-1.6.37-12.el9_7.4.i686.rpm5b76b7aac47b21133a20152d17d6421a6d07ab48090c4b583eabbae46b9f4af6-ol9_x86_64_u7_baseos_patch
libpng-1.6.37-12.el9_7.4.x86_64.rpm71f7a2a6e1f7c7692271c02ce7a76688551385ab5041c118c2627d489ee5c1e5-ol9_x86_64_baseos_latest
libpng-1.6.37-12.el9_7.4.x86_64.rpm71f7a2a6e1f7c7692271c02ce7a76688551385ab5041c118c2627d489ee5c1e5-ol9_x86_64_u7_baseos_patch
libpng-devel-1.6.37-12.el9_7.4.i686.rpm3dbe90460de7d85df38ce2deb897de525f6c53d51b51d95f545764ea414e8701-ol9_x86_64_appstream
libpng-devel-1.6.37-12.el9_7.4.x86_64.rpme3a04032c79527303453841d55eeb1b042794cce2d3364b355437387a765bfe6-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete