The libpng packages contain a library of functions for creating and manipulating Portable Network Graphics (PNG) image format files.
Security Fix(es):
libpng: libpng: Information disclosure and denial of service via integer truncation in simplified write API (CVE-2026-22801)
libpng: libpng: Denial of service and information disclosure via heap buffer over-read in pngimagefinish_read (CVE-2026-22695)
libpng: LIBPNG has a heap buffer overflow in pngsetquantize (CVE-2026-25646)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.