ELSA-2020-3864

ELSA-2020-3864 - cups security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2020-10-06

Description


[1:1.6.3-51]
- 1823758 - CVE-2017-18190 cups: DNS rebinding attacks via incorrect whitelist [rhel-7]

[1:1.6.3-50]
- 1813413 - [RHEL 7.7] segfault in cupsdSaveJob() caused by no space in /var

[1:1.6.3-49]
- more covscan issues raised from the fix 1672212

[1:1.6.3-48]
- fixing covscan issue from 1672212

[1:1.6.3-47]
- 1672212 - cupsd eats a lot of memory when lots of queue with extensive PPDs are created

[1:1.6.3-46]
- 1715907 - CUPS- client: cupsGetPPD3() function tries to load PPD from IPP printer and not from the CUPS queue

[1:1.6.3-45]
- fixing covscan issue from 1774460

[1:1.6.3-44]
- 1774460 - CVE-2019-8696 cups: stack-buffer-overflow in libcupss asn1_get_packed function [rhel-7]
- 1774461 - CVE-2019-8675 cups: stack-buffer-overflow in libcupss asn1_get_type function [rhel-7]
- 1753809 - Settings in ~/.cups/client.conf arent used


Related CVEs


CVE-2019-8675
CVE-2019-8696
CVE-2017-18190

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (aarch64) cups-1.6.3-51.el7.src.rpm1604a3f5e66c3982e4465ab0cd6b39e5-
cups-1.6.3-51.el7.aarch64.rpm2828728e354bd9a5f24b795e4c509bea-
cups-client-1.6.3-51.el7.aarch64.rpmf78390d14914b3cd8d0232598d6070f3-
cups-devel-1.6.3-51.el7.aarch64.rpm47f2ed21daf8c6b9f29d8c706f0f5762-
cups-filesystem-1.6.3-51.el7.noarch.rpm97980d382906484d7ab29a0fda8be537-
cups-ipptool-1.6.3-51.el7.aarch64.rpmb773856d1331b54b32d09a4434d31046-
cups-libs-1.6.3-51.el7.aarch64.rpm3c7ddf1cf26d63bdefa9ca2e3044c055-
cups-lpd-1.6.3-51.el7.aarch64.rpm1693516342677fafb99fa843cc01d15a-
Oracle Linux 7 (x86_64) cups-1.6.3-51.el7.src.rpm1604a3f5e66c3982e4465ab0cd6b39e5-
cups-1.6.3-51.el7.x86_64.rpmbc4d3f2cdacf402d6df82d0bd9d9e2b0-
cups-client-1.6.3-51.el7.x86_64.rpm9d6b1a50cf1e7ee632fdd2c1d7ece495-
cups-devel-1.6.3-51.el7.i686.rpm261fddd9a55347139c604d0731a8c1fb-
cups-devel-1.6.3-51.el7.x86_64.rpm54d67dbe3f182c92f24d9dbbc26d4b37-
cups-filesystem-1.6.3-51.el7.noarch.rpm97980d382906484d7ab29a0fda8be537-
cups-ipptool-1.6.3-51.el7.x86_64.rpm25dbad1a233e53073f4e1341f9e0de73-
cups-libs-1.6.3-51.el7.i686.rpm671c74593f0a61c52803ae1220566de1-
cups-libs-1.6.3-51.el7.x86_64.rpm7afb98a078d6846dad3a118e21862eb7-
cups-lpd-1.6.3-51.el7.x86_64.rpm7e2f77702ab274cf5307cf9c62c7f005-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete