ELSA-2010-0754

ELSA-2010-0754 - cups security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2010-10-07

Description



[1:1.1.17-13.3.70]
- Reinstated fix for CVE-2010-3702 (bug #595245).

[1:1.1.17-13.3.69]
- Temporarily removed fix for CVE-2010-3702.

[1:1.1.17-13.3.68]
- Added bounds checking to Type1CFontFile::getWord() in order to
verify fix for CVE-2010-3702.
- Applied small fix to CVE-2009-0791 change: allow objSize=0 in
gmallocCn() if C > 0. As well as being correct, this aids with
testing the fix for CVE-2010-3702.

[1:1.1.17-13.3.67]
- Applied upstream patch to fix uninitialized Gfx::parser pointer
dereference (bug #595245).


Related CVEs



Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 3 (i386) cups-1.1.17-13.3.70.src.rpm1a3f98085fff52fc2e3d0742187263f6595d8e3a6e99af24c2bb9935ae8b62ab-el3_i386_latest
cups-1.1.17-13.3.70.src.rpm1a3f98085fff52fc2e3d0742187263f6595d8e3a6e99af24c2bb9935ae8b62ab-el3_u9_i386_patch
cups-1.1.17-13.3.70.i386.rpm39665faad17d97ca5aa9fd5402805ad4b8c93615fe8528d01b97f2b9310a132d-el3_i386_latest
cups-1.1.17-13.3.70.i386.rpm39665faad17d97ca5aa9fd5402805ad4b8c93615fe8528d01b97f2b9310a132d-el3_u9_i386_patch
cups-devel-1.1.17-13.3.70.i386.rpm0abfcaf9c423d58669951bc0b46ffdb81dac2a2e17a0f040a75a26b9d51b9cb1-el3_i386_latest
cups-devel-1.1.17-13.3.70.i386.rpm0abfcaf9c423d58669951bc0b46ffdb81dac2a2e17a0f040a75a26b9d51b9cb1-el3_u9_i386_patch
cups-libs-1.1.17-13.3.70.i386.rpmcc5c4362078bfdf64bf8d60503c8a3ad1d9f1a0ef8956dc383339bfd1ad8aacd-el3_i386_latest
cups-libs-1.1.17-13.3.70.i386.rpmcc5c4362078bfdf64bf8d60503c8a3ad1d9f1a0ef8956dc383339bfd1ad8aacd-el3_u9_i386_patch
Oracle Linux 3 (x86_64) cups-1.1.17-13.3.70.src.rpm1a3f98085fff52fc2e3d0742187263f6595d8e3a6e99af24c2bb9935ae8b62ab-el3_u9_x86_64_patch
cups-1.1.17-13.3.70.src.rpm1a3f98085fff52fc2e3d0742187263f6595d8e3a6e99af24c2bb9935ae8b62ab-el3_x86_64_latest
cups-1.1.17-13.3.70.x86_64.rpmd32b5550b2b9f830e1722ae283efea72c8efa2d31c78a55caf0346025082edd0-el3_u9_x86_64_patch
cups-1.1.17-13.3.70.x86_64.rpmd32b5550b2b9f830e1722ae283efea72c8efa2d31c78a55caf0346025082edd0-el3_x86_64_latest
cups-devel-1.1.17-13.3.70.x86_64.rpmd3aec9c6e769c6b4fbeb51a044e34f7f9817cedcfc91e8d1342f22dd5f6cf558-el3_u9_x86_64_patch
cups-devel-1.1.17-13.3.70.x86_64.rpmd3aec9c6e769c6b4fbeb51a044e34f7f9817cedcfc91e8d1342f22dd5f6cf558-el3_x86_64_latest
cups-libs-1.1.17-13.3.70.i386.rpmcc5c4362078bfdf64bf8d60503c8a3ad1d9f1a0ef8956dc383339bfd1ad8aacd-el3_u9_x86_64_patch
cups-libs-1.1.17-13.3.70.i386.rpmcc5c4362078bfdf64bf8d60503c8a3ad1d9f1a0ef8956dc383339bfd1ad8aacd-el3_x86_64_latest
cups-libs-1.1.17-13.3.70.x86_64.rpm66610dc5f5e560a40b126ebc30adcb3fd8485faa9a6d210dbc1522a64cb63809-el3_u9_x86_64_patch
cups-libs-1.1.17-13.3.70.x86_64.rpm66610dc5f5e560a40b126ebc30adcb3fd8485faa9a6d210dbc1522a64cb63809-el3_x86_64_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete