Back Linuxsecurity Fedora 43: mingw-libpng Important Buffer Overflow Fix CVE-2025
MinGW Windows Libpng library. Update Information : Update to libpng-1.6.53, fixes CVE-2025-66293 and CVE-2025-64505.
MinGW Windows Libpng library.
Update to libpng-1.6.53, fixes CVE-2025-66293 and CVE-2025-64505.
* Sat Dec 13 2025 Sandro Mani - 1.6.53-1 - Update to 1.6.53
* Sat Dec 13 2025 Sandro Mani - 1.6.53-1 - Update to 1.6.53
[ 1 ] Bug #2418425 - CVE-2025-64505 mingw-libpng: LIBPNG heap buffer overflow via malformed palette index [fedora-43] [ 2 ] Bug #2418739 - CVE-2025-66293 mingw-libpng: LIBPNG out-of-bounds read in png_image_read_composite [fedora-42] [ 3 ] Bug #2418750 - CVE-2025-66293 mingw-libpng: LIBPNG out-of-bounds read in png_image_read_composite [fedora-43]
[ 1 ] Bug #2418425 - CVE-2025-64505 mingw-libpng: LIBPNG heap buffer overflow via malformed palette index [fedora-43] [ 2 ] Bug #2418739 - CVE-2025-66293 mingw-libpng: LIBPNG out-of-bounds read in png_image_read_composite [fedora-42] [ 3 ] Bug #2418750 - CVE-2025-66293 mingw-libpng: LIBPNG out-of-bounds read in png_image_read_composite [fedora-43]
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-da6d092209' at the command line. For more information, refer to the dnf documentation available at
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
