Opened 8 years ago

Closed 8 years ago

#7178 closed enhancement (fixed)

cups-filters-1.2.0

Reported by: Fernando de Oliveira Owned by: Fernando de Oliveira
Priority: high Milestone: 7.9
Component: BOOK Version: SVN
Severity: normal Keywords:
Cc:

Description

This a security Release

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5477

Description

named in ISC BIND 9.x before 9.9.7-P2 and 9.10.x before 9.10.2-P3 allows
remote attackers to cause a denial of service (REQUIRE assertion failure
and daemon exit) via TKEY queries.

https://www.openprinting.org/download/cups-filters/cups-filters-1.2.0.tar.xz

http://bzr.linuxfoundation.org/loggerhead/openprinting/cups-filters/annotate/head:/NEWS

NEWS - OpenPrinting CUPS Filters v1.2.0 - 2015-11-26
----------------------------------------------------

CHANGES IN V1.2.0

  - cups-browsed: When using IP-address-based device URIs via
    the "IPBasedDeviceURIs" directive in cups-browsed.conf, add
    two additional settings to restrict the used IP addresses to
    either only IPv4 addresses or only IPv6 addresses.
  - foomatic-rip: SECURITY FIX: Also consider the back tick
    ('`') as an illegal shell escape character. Thanks to Michal
    Kowalczyk from the Google Security Team for the hint
    (CVE-2015-8327).

Change History (2)

comment:1 by Fernando de Oliveira, 8 years ago

Owner: changed from blfs-book@… to Fernando de Oliveira
Status: newassigned

comment:2 by Fernando de Oliveira, 8 years ago

Resolution: fixed
Status: assignedclosed

Fixed at r16688.

Note: See TracTickets for help on using tickets.