Login
Newsletter
Werbung

Sicherheit: Zwei Probleme in cups-filters
Aktuelle Meldungen Distributionen
Name: Zwei Probleme in cups-filters
ID: DSA-3303-1
Distribution: Debian
Plattformen: Debian sid, Debian wheezy, Debian jessie
Datum: Di, 7. Juli 2015, 16:55
Referenzen: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3258
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3279
Applikationen: cups-filters

Originalnachricht

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian Security Advisory DSA-3303-1 security@debian.org
https://www.debian.org/security/ Alessandro Ghedini
July 07, 2015 https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package : cups-filters
CVE ID : CVE-2015-3258 CVE-2015-3279

It was discovered that the texttopdf utility, part of cups-filters, was
susceptible to multiple heap-based buffer overflows due to improper
handling of print jobs with a specially crafted line size. This could
allow remote attackers to crash texttopdf or possibly execute arbitrary
code.

For the oldstable distribution (wheezy), these problems have been fixed
in version 1.0.18-2.1+deb7u2.

For the stable distribution (jessie), these problems have been fixed in
version 1.0.61-5+deb8u1.

For the unstable distribution (sid), these problems have been fixed in
version 1.0.71-1.

We recommend that you upgrade your cups-filters packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=iIn9
-----END PGP SIGNATURE-----


--
To UNSUBSCRIBE, email to debian-security-announce-REQUEST@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact
listmaster@lists.debian.org
Archive: https://lists.debian.org/559bd4d8.82b8b40a.9d72a.fffffc2d@mx.google.com
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung