[ubuntu/mantic-proposed] cups-filters 2.0~rc1-0ubuntu2 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Fri May 26 13:34:14 UTC 2023
cups-filters (2.0~rc1-0ubuntu2) mantic; urgency=medium
* SECURITY UPDATE: code execution in beh CUPS backend
- debian/patches/CVE-2023-24805-1.patch: use execv() instead of
system() in backend/beh.c.
- debian/patches/CVE-2023-24805-2.patch: extra checks against
odd/forged input in backend/beh.c.
- debian/patches/CVE-2023-24805-3.patch: further improvements in
backend/beh.c.
- CVE-2023-24805
Date: Mon, 15 May 2023 10:35:05 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/cups-filters/2.0~rc1-0ubuntu2
-------------- next part --------------
Format: 1.8
Date: Mon, 15 May 2023 10:35:05 -0400
Source: cups-filters
Built-For-Profiles: noudeb
Architecture: source
Version: 2.0~rc1-0ubuntu2
Distribution: mantic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Changes:
cups-filters (2.0~rc1-0ubuntu2) mantic; urgency=medium
.
* SECURITY UPDATE: code execution in beh CUPS backend
- debian/patches/CVE-2023-24805-1.patch: use execv() instead of
system() in backend/beh.c.
- debian/patches/CVE-2023-24805-2.patch: extra checks against
odd/forged input in backend/beh.c.
- debian/patches/CVE-2023-24805-3.patch: further improvements in
backend/beh.c.
- CVE-2023-24805
Checksums-Sha1:
e794abe2145855ec0a7918e03183468a60ccab81 2438 cups-filters_2.0~rc1-0ubuntu2.dsc
c7a5a10b6aaf57218f2c62d19715e1a569944e36 54420 cups-filters_2.0~rc1-0ubuntu2.debian.tar.xz
fce11b480ec0049f4801a2e140b5337a1d550c5b 9501 cups-filters_2.0~rc1-0ubuntu2_source.buildinfo
Checksums-Sha256:
5bc0030c6785578686493714671e4c286d0d13bbe4613c12f92e3594394fbd6f 2438 cups-filters_2.0~rc1-0ubuntu2.dsc
efee3d0400fbc3d83bae5269d4a5a052021bfc90b25a6fb19160be0b78930295 54420 cups-filters_2.0~rc1-0ubuntu2.debian.tar.xz
58d5025b970e4ff20e779b78aa10c7c7c6dda3397188f93a60394b581286a54b 9501 cups-filters_2.0~rc1-0ubuntu2_source.buildinfo
Files:
7396b48e6ac1a7ba7f3ea6f93e873057 2438 net optional cups-filters_2.0~rc1-0ubuntu2.dsc
3ffe9fca70e7a920b3739d9f7bb6889f 54420 net optional cups-filters_2.0~rc1-0ubuntu2.debian.tar.xz
145be0586dfef6dc9ace6f1695094956 9501 net optional cups-filters_2.0~rc1-0ubuntu2_source.buildinfo
Original-Maintainer: Debian Printing Team <debian-printing at lists.debian.org>
More information about the mantic-changes
mailing list