USN-563-1: CUPS vulnerabilities


 
Thread Tools Search this Thread
Special Forums Cybersecurity Security Advisories (RSS) USN-563-1: CUPS vulnerabilities
# 1  
Old 01-09-2008
USN-563-1: CUPS vulnerabilities

Referenced CVEs:
CVE-2007-5849, CVE-2007-6358


Description:
=========================================================== Ubuntu Security Notice USN-563-1 January 09, 2008cupsys vulnerabilitiesCVE-2007-5849, CVE-2007-6358===========================================================A security issue affects the following Ubuntu releases:Ubuntu 6.06 LTSUbuntu 6.10Ubuntu 7.04Ubuntu 7.10This advisory also applies to the corresponding versions ofKubuntu, Edubuntu, and Xubuntu.The problem can be corrected by upgrading your system to thefollowing package versions:Ubuntu 6.06 LTS: cupsys 1.2.2-0ubuntu0.6.06.6Ubuntu 6.10: cupsys 1.2.4-2ubuntu3.2Ubuntu 7.04: cupsys 1.2.8-0ubuntu8.2Ubuntu 7.10: cupsys 1.3.2-1ubuntu7.3In general, a standard system upgrade is sufficient to effect thenecessary changes.Details follow:Wei Wang discovered that the SNMP discovery backend did not correctlycalculate the length of strings. If a user were tricked into scanningfor printers, a remote attacker could send a specially crafted packetand possibly execute arbitrary code.Elias Pipping discovered that temporary files were not handled safelyin certain situations when converting PDF to PS. A local attacker couldcause a denial of service.





More...
Login or Register to Ask a Question

Previous Thread | Next Thread
Login or Register to Ask a Question
cups-config(1)							    Apple Inc.							    cups-config(1)

NAME
cups-config - get cups api, compiler, directory, and link information. SYNOPSIS
cups-config --api-version cups-config --build cups-config --cflags cups-config --datadir cups-config --help cups-config --ldflags cups-config [ --image ] [ --static ] --libs cups-config --serverbin cups-config --serverroot cups-config --version DESCRIPTION
cups-config is the CUPS program configuration utility. It should be used by application developers to determine the necessary command-line options for the compiler and linker, as well as determining installation directories for filters, configuration files, and drivers. OPTIONS
--api-version Displays the current API version (major.minor). --build Displays a system-specific build number. --cflags Displays the necessary compiler options. --datadir Displays the default CUPS data directory. --help Displays the program usage message. --image When used with --libs, adds the CUPS imaging library to the list of displayed libraries. --ldflags Displays the necessary linker options. --libs Displays the necessary librarys to link to. --serverbin Displays the default CUPS binary directory, where filters and backends are stored. --serverroot Displays the default CUPS configuration file directory. --static When used with --libs, shows the static libraries instead of the default (shared) libraries. --version Displays the full version number of the CUPS installation (major.minor.patch). SEE ALSO
http://localhost:631/help COPYRIGHT
Copyright 2007-2011 by Apple Inc. 23 October 2008 CUPS cups-config(1)