ELSA-2008-0153

ELSA-2008-0153 - Important: cups security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2008-02-25

Description


[1.1.17-13.3.51]
- Prevented invalid memory accesses when a class and its singleton printer
are timed out in the same sweep (CVE-2008-0597, bug #433827).

[1.1.17-13.3.50]
- Back-ported mimeDeleteType from 1.2.x (CVE-2008-0596, bug #433827).

[1.1.17-13.3.49]
- Prevent double-free when a browsed class has the same name as a printer
or vice versa (bug #433763, STR #2656).

[1.1.17-13.3.48]
- Removed mandatory debugging output from cups-polld (bug #246545),
which had
been introduced by this change:
- Backported cups-polld fixes (bug #205694).
- Reverted previous change as no security impact (bug #418361).

[1.1.17-13.3.47]
- Applied patch to fix CVE-2007-5848 (bug #418361).


Related CVEs



Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 3 (i386) cups-1.1.17-13.3.51.src.rpm5f7b291f2c896b9408dcf8e02cc58071ELSA-2010-0754
cups-1.1.17-13.3.51.i386.rpmb97566696f47987ad006354c60a6162cELSA-2010-0754
cups-devel-1.1.17-13.3.51.i386.rpm91cac056928549a2a62a5957c38333a8ELSA-2010-0754
cups-libs-1.1.17-13.3.51.i386.rpmff6a5438aabc1b9e5c59e1fc5fc37ad9ELSA-2010-0754
Oracle Linux 3 (x86_64) cups-1.1.17-13.3.51.src.rpm5f7b291f2c896b9408dcf8e02cc58071ELSA-2010-0754
cups-1.1.17-13.3.51.x86_64.rpma584efee7d314faccb0a002f38842f23ELSA-2010-0754
cups-devel-1.1.17-13.3.51.x86_64.rpma68887da9efea94753e895ba8c1d9d39ELSA-2010-0754
cups-libs-1.1.17-13.3.51.i386.rpmff6a5438aabc1b9e5c59e1fc5fc37ad9ELSA-2010-0754
cups-libs-1.1.17-13.3.51.x86_64.rpmfc0e68277435aa875912cbd0adc16359ELSA-2010-0754



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete