linux user group brescia

immagine del castello

Archivio della mailing list

[joey a infodrom.org: [SECURITY] [DSA 110-1] New CUPS packages fix buffer overflow]

marco ghidinelli marcogh a linux.it
Gio 14 Feb 2002 09:49:38 UTC
uh oh..
se c'e' qualcuno che lo usa occhio...

----- Forwarded message from Martin Schulze <joey a infodrom.org> -----

From: joey a infodrom.org (Martin Schulze)
Date: Wed, 13 Feb 2002 19:59:01 +0100 (CET)
To: debian-security-announce a lists.debian.org (Debian Security Announcements)
Subject: [SECURITY] [DSA 110-1] New CUPS packages fix buffer overflow
X-Mailing-List: <debian-security-announce a lists.debian.org> archive/latest/303

--------------------------------------------------------------------------
Debian Security Advisory DSA 110-1                     security a debian.org
http://www.debian.org/security/                             Martin Schulze
February 13th, 2002  
--------------------------------------------------------------------------

Package        : cupsys
Vulnerability  : buffer overflow
Problem-Type   : remote
Debian-specific: no

The authors of CUPS, the Common UNIX Printing System, have found a
potential buffer overflow bug in the code of the CUPS daemon where it
reads the names of attributes.  This affects all versions of CUPS.

This problem has been fixed in version 1.0.4-10 for the stable Debian
distribution and version 1.1.13-2 for the current testing/unstable
distribution.

We recommend that you upgrade your CUPS packages immediately if you
have them installed.

wget url
	will fetch the file for you
dpkg -i file.deb
        will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
        will update the internal database
apt-get upgrade
        will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


-- 
To UNSUBSCRIBE, email to debian-security-announce-request a lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster a lists.debian.org

----- End forwarded message -----

-- 



Maggiori informazioni sulla lista Lug