[ubuntu/cosmic-proposed] cups 2.2.8-5 (Accepted)

Till Kamppeter till.kamppeter at gmail.com
Thu Aug 9 09:47:40 UTC 2018


cups (2.2.8-5) unstable; urgency=high

  * CVE-2018-6553: Fix AppArmor cupsd sandbox bypass due to use of hard links
    (Closes: #903605)
  * All these were fixed in 2.2.8:
    - CVE-2018-4180 Local Privilege Escalation to Root in dnssd Backend
      (CUPS_SERVERBIN)
    - CVE-2018-4181 Limited Local File Reads as Root via cupsd.conf Include
      Directive
    - CVE-2018-4182 cups-exec Sandbox Bypass Due to Insecure Error Handling
    - CVE-2018-4183 cups-exec Sandbox Bypass Due to Profile Misconfiguration

Date: 2018-07-13 16:28:46.775843+00:00
Signed-By: Till Kamppeter <till.kamppeter at gmail.com>
https://launchpad.net/ubuntu/+source/cups/2.2.8-5
-------------- next part --------------
Sorry, changesfile not available.


More information about the Cosmic-changes mailing list