[ubuntu/jammy-updates] cups-filters 1.28.15-0ubuntu1.5 (Accepted)
Ubuntu Archive Robot
ubuntu-archive-robot at lists.canonical.com
Thu Nov 20 18:58:39 UTC 2025
cups-filters (1.28.15-0ubuntu1.5) jammy-security; urgency=medium
* SECURITY UPDATE: heap-buffer overflow write in cfImageLut
- debian/patches/CVE-2025-57812-1.patch: use bpp in
cupsfilters/image-tiff.c.
- debian/patches/CVE-2025-57812-2.patch: reject color images with 1 bit
per sample in cupsfilters/image-tiff.c.
- debian/patches/CVE-2025-57812-3.patch: reject images where the number
of samples does not correspond with the color space in
cupsfilters/image-tiff.c.
- debian/patches/CVE-2025-57812-4.patch: reject images with planar
color configuration in cupsfilters/image-tiff.c.
- debian/patches/CVE-2025-57812-5.patch: reject images with vertical
scanlines in cupsfilters/image-tiff.c.
- CVE-2025-57812
* SECURITY UPDATE: out-of-bounds write in cfFilterPDFToRaster()
- debian/patches/CVE-2025-64503.patch: validate page size in
filter/pdftoraster.cxx.
- CVE-2025-64503
* SECURITY UPDATE: Heap Buffer Overflow in rastertopclx Filter
- debian/patches/CVE-2025-64524.patch: initialize memory and add checks
to filter/rastertopclx.c.
- CVE-2025-64524
Date: 2025-11-13 15:12:16.851845+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
Signed-By: Ubuntu Archive Robot <ubuntu-archive-robot at lists.canonical.com>
https://launchpad.net/ubuntu/+source/cups-filters/1.28.15-0ubuntu1.5
-------------- next part --------------
Sorry, changesfile not available.
More information about the jammy-changes
mailing list