Skip to content

Conversation

@CBL-Mariner-Bot
Copy link
Collaborator

[AUTOPATCHER-CORE] Upgrade libpng to 1.6.55 for CVE-2026-25646
Upgrade pipeline run -> https://dev.azure.com/mariner-org/mariner/_build/results?buildId=1047004&view=results

@Kanishk-Bansal
Copy link
Contributor

Build

@Kanishk-Bansal
Copy link
Contributor

pnggroup/libpng@01d03b8 fixes the CVE and the change is verified to be in https://github.com/pnggroup/libpng/releases/tag/v1.6.55

@Kanishk-Bansal Kanishk-Bansal added the CVE-fixed-by-upgrade CVE fixed by package upgrade label Feb 11, 2026
Copy link
Member

@MadhurAggarwal MadhurAggarwal left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Changes look good to me, and Buddy Build succeeded

@MadhurAggarwal MadhurAggarwal added the CVEFixReadyForMaintainerReview When a CVE fix has been reviewed by release manager and is ready for stable maintainer review label Feb 11, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Automatic PR AutoUpgrade Core CVE-fixed-by-upgrade CVE fixed by package upgrade CVEFixReadyForMaintainerReview When a CVE fix has been reviewed by release manager and is ready for stable maintainer review fasttrack/2.0 PRs Destined for Azure Linux 2.0 Packaging security

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants