﻿id	summary	reporter	owner	description	type	status	priority	milestone	component	version	severity	resolution	keywords	cc
3205	cups-1.4.5, with security fix	ken@…	Randy McMurchy	"Version upgrade, includes fix for CVE-2010-2941.  From the mitre report:

ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly execute arbitrary code via a crafted IPP request.

Loads of other fixes, see http://www.cups.org/articles.php?L597"	task	closed	normal		BOOK	SVN	medium	fixed		
