Skip to content

Commit c69c403

Browse files
Merge PR "[AUTO-CHERRYPICK] [AUTOPATCHER-CORE] Upgrade libpng to 1.6.52 for CVE-2025-66293 [HIGH] - branch main" #15234
Co-authored-by: jslobodzian <joslobo@microsoft.com>
1 parent 232279b commit c69c403

File tree

3 files changed

+7
-4
lines changed

3 files changed

+7
-4
lines changed
Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,5 @@
11
{
22
"Signatures": {
3-
"libpng-1.6.51.tar.xz": "b1872484c1c5c70acc79cbb15fb366df954fa8d5dacbe7f729d858902d17933c"
3+
"libpng-1.6.52.tar.xz": "36bd726228ec93a3b6c22fdb49e94a67b16f2fe9b39b78b7cb65772966661ccc"
44
}
55
}

SPECS/libpng/libpng.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
Summary: contains libraries for reading and writing PNG files.
22
Name: libpng
3-
Version: 1.6.51
3+
Version: 1.6.52
44
Release: 1%{?dist}
55
License: zlib
66
Vendor: Microsoft Corporation
@@ -57,6 +57,9 @@ make %{?_smp_mflags} -k check
5757
%{_mandir}/man3/*
5858

5959
%changelog
60+
* Thu Dec 04 2025 CBL-Mariner Servicing Account <cblmargh@microsoft.com> - 1.6.52-1
61+
- Auto-upgrade to 1.6.52 - for CVE-2025-66293
62+
6063
* Thu Nov 27 2025 CBL-Mariner Servicing Account <cblmargh@microsoft.com> - 1.6.51-1
6164
- Auto-upgrade to 1.6.51 - for CVE-2025-64505, CVE-2025-64506, CVE-2025-65018, CVE-2025-64720
6265

cgmanifest.json

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -10571,8 +10571,8 @@
1057110571
"type": "other",
1057210572
"other": {
1057310573
"name": "libpng",
10574-
"version": "1.6.51",
10575-
"downloadUrl": "https://downloads.sourceforge.net/libpng/libpng-1.6.51.tar.xz"
10574+
"version": "1.6.52",
10575+
"downloadUrl": "https://downloads.sourceforge.net/libpng/libpng-1.6.52.tar.xz"
1057610576
}
1057710577
}
1057810578
},

0 commit comments

Comments
 (0)