Use-after-free via pointer aliasing in pngsettRNS and pngsetPLTE. (CVE-2026-33416) Out-of-bounds read/write in the palette expansion on ARM Neon. (CVE-2026-33636)
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2026-0070.json"