[ubuntu/jammy-updates] cups-filters 1.28.15-0ubuntu1.5 (Accepted)

Ubuntu Archive Robot ubuntu-archive-robot at lists.canonical.com
Thu Nov 20 18:58:39 UTC 2025


cups-filters (1.28.15-0ubuntu1.5) jammy-security; urgency=medium

  * SECURITY UPDATE: heap-buffer overflow write in cfImageLut
    - debian/patches/CVE-2025-57812-1.patch: use bpp in
      cupsfilters/image-tiff.c.
    - debian/patches/CVE-2025-57812-2.patch: reject color images with 1 bit
      per sample in cupsfilters/image-tiff.c.
    - debian/patches/CVE-2025-57812-3.patch: reject images where the number
      of samples does not correspond with the color space in
      cupsfilters/image-tiff.c.
    - debian/patches/CVE-2025-57812-4.patch: reject images with planar
      color configuration in cupsfilters/image-tiff.c.
    - debian/patches/CVE-2025-57812-5.patch: reject images with vertical
      scanlines in cupsfilters/image-tiff.c.
    - CVE-2025-57812
  * SECURITY UPDATE: out-of-bounds write in cfFilterPDFToRaster()
    - debian/patches/CVE-2025-64503.patch: validate page size in
      filter/pdftoraster.cxx.
    - CVE-2025-64503
  * SECURITY UPDATE: Heap Buffer Overflow in rastertopclx Filter
    - debian/patches/CVE-2025-64524.patch: initialize memory and add checks
      to filter/rastertopclx.c.
    - CVE-2025-64524

Date: 2025-11-13 15:12:16.851845+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
Signed-By: Ubuntu Archive Robot <ubuntu-archive-robot at lists.canonical.com>
https://launchpad.net/ubuntu/+source/cups-filters/1.28.15-0ubuntu1.5
-------------- next part --------------
Sorry, changesfile not available.


More information about the jammy-changes mailing list