A project of members of the computing staff of Princeton University and the Institute for Advanced Study.
 
Elders/PU_IAS security updates: cups and libpng PDF Print E-mail
cups security update for 5 Client/Server fixes improper processing of certain IPP tags that could be used by attacker to crash cups server or potentially to execute arbitrary code (if the attacker was able to connect to cups TCP IPP port, not by default).  In addition this update fixes numerous bugs.
cups advisory

libpng security update for 1/1WS, 2/2WS and 5 Client/Server fixes several flaws in the way libpng processed png image chunks.  This flaw could've been used to crash applications linked against libpng.
libpng advisory