[ubuntu/gutsy-security] cupsys_1.3.2-1ubuntu7.8_ia64_translations.tar.gz, cupsys_1.3.2-1ubuntu7.8_amd64_translations.tar.gz, cupsys_1.3.2-1ubuntu7.8_i386_translations.tar.gz, cupsys_1.3.2-1ubuntu7.8_lpia_translations.tar.gz, cupsys_1.3.2-1ubuntu7.8_powerpc_translations.tar.gz, cupsys_1.3.2-1ubuntu7.8_sparc_translations.tar.gz, cupsys_1.3.2-1ubuntu7.8_hppa_translations.tar.gz, cupsys 1.3.2-1ubuntu7.8 (Accepted)

Ubuntu Installer archive at ubuntu.com
Wed Oct 15 21:56:04 BST 2008


cupsys (1.3.2-1ubuntu7.8) gutsy-security; urgency=low

  * SECURITY UPDATE: heap-based buffer overflow due to unchecked boundary in
    the SGI filter
    - debian/patches/78_CVE-2008-3639.dpatch: adjust filter/image-sgilib.c to
      properly check for xsize. Taken from Debian patch by Martin Pitt.
    - STR #2918
    - CVE-2008-3639
  * SECURITY UPDATE: integer overflow in texttops filter which could lead
    to heap-based overflow
    - debian/patches/79_CVE-2008-3640.dpatch: adjust textcommon.c and
      texttops.c to check for too large or negative page metrics. Taken from
      Debian patch by Martin Pitt.
    - STR #2919
    - CVE-2008-3640
  * SECURITY UPDATE: buffer overflow in HPGL filter which could lead to
    arbitrary code execution
    - debian/patches/80_CVE-2008-3641.dpatch: adjust hpgl-attr.c to properly
      check for an invalid number of pens. Also includes fix for regression in
      orginal upstream patch which changed the color mapping and an off-by-one
      loop error. Taken from Debian patch by Martin Pitt.
    - STR #2911
    - STR #2966
    - CVE-2008-3641

Date: Tue, 14 Oct 2008 13:49:34 -0500
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/gutsy/+source/cupsys/1.3.2-1ubuntu7.8
-------------- next part --------------
Format: 1.7
Date: Tue, 14 Oct 2008 13:49:34 -0500
Source: cupsys
Binary: cupsys cupsys-bsd cupsys-client cupsys-common libcupsimage2 libcupsimage2-dev libcupsys2 libcupsys2-dev
Architecture: amd64_translations amd64 hppa_translations hppa i386_translations i386 all ia64_translations ia64 lpia_translations lpia powerpc_translations powerpc source sparc_translations sparc
Version: 1.3.2-1ubuntu7.8
Distribution: gutsy-security
Urgency: low
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description:
 cupsys     - Common UNIX Printing System(tm) - server
 cupsys-bsd - Common UNIX Printing System(tm) - BSD commands
 cupsys-client - Common UNIX Printing System(tm) - client programs (SysV)
 libcupsimage2 - Common UNIX Printing System(tm) - image libs
 libcupsimage2-dev - Common UNIX Printing System(tm) - image development files
 libcupsys2 - Common UNIX Printing System(tm) - libs
 libcupsys2-dev - Common UNIX Printing System(tm) - development files
 cupsys-common - Common UNIX Printing System(tm) - common files
Changes:
 cupsys (1.3.2-1ubuntu7.8) gutsy-security; urgency=low
 .
   * SECURITY UPDATE: heap-based buffer overflow due to unchecked boundary in
     the SGI filter
     - debian/patches/78_CVE-2008-3639.dpatch: adjust filter/image-sgilib.c to
       properly check for xsize. Taken from Debian patch by Martin Pitt.
     - STR #2918
     - CVE-2008-3639
   * SECURITY UPDATE: integer overflow in texttops filter which could lead
     to heap-based overflow
     - debian/patches/79_CVE-2008-3640.dpatch: adjust textcommon.c and
       texttops.c to check for too large or negative page metrics. Taken from
       Debian patch by Martin Pitt.
     - STR #2919
     - CVE-2008-3640
   * SECURITY UPDATE: buffer overflow in HPGL filter which could lead to
     arbitrary code execution
     - debian/patches/80_CVE-2008-3641.dpatch: adjust hpgl-attr.c to properly
       check for an invalid number of pens. Also includes fix for regression in
       orginal upstream patch which changed the color mapping and an off-by-one
       loop error. Taken from Debian patch by Martin Pitt.
     - STR #2911
     - STR #2966
     - CVE-2008-3641
Files:
 339a12b9fefdaade557e8d8b8e66cea8 741701 raw-translations - cupsys_1.3.2-1ubuntu7.8_amd64_translations.tar.gz
 13e510e27e1025732d203a933ded8ade 186418 libs optional libcupsys2_1.3.2-1ubuntu7.8_amd64.deb
 9a2fd628887a01cc2fcb49131ec8ed0f 46884 libs optional libcupsimage2_1.3.2-1ubuntu7.8_amd64.deb
 3a2c4daded2923691da8fe3f60d93f3e 2034890 net optional cupsys_1.3.2-1ubuntu7.8_amd64.deb
 cb352043a1985e24614dc27ffa5ded01 89506 net optional cupsys-client_1.3.2-1ubuntu7.8_amd64.deb
 7a9debd353faa26803f0e8707a97697a 152014 libdevel optional libcupsys2-dev_1.3.2-1ubuntu7.8_amd64.deb
 5007c193bb8416754a9d7e7ad09c4808 60020 libdevel optional libcupsimage2-dev_1.3.2-1ubuntu7.8_amd64.deb
 88b05a4cbb9f5714951edade3dd0609b 37204 net extra cupsys-bsd_1.3.2-1ubuntu7.8_amd64.deb
 4e153bc7b382de918fdd6410d15b72e9 741647 raw-translations - cupsys_1.3.2-1ubuntu7.8_hppa_translations.tar.gz
 fee5909b584ee0c115253036537bef6a 193174 libs optional libcupsys2_1.3.2-1ubuntu7.8_hppa.deb
 025f1c682164a5be61ec8f023fd7db7b 51406 libs optional libcupsimage2_1.3.2-1ubuntu7.8_hppa.deb
 35bca5a5b7369aebca3fa2683c413e74 2089434 net optional cupsys_1.3.2-1ubuntu7.8_hppa.deb
 2854567babedec7126f4ea5e4739e4e6 91772 net optional cupsys-client_1.3.2-1ubuntu7.8_hppa.deb
 08512dfc2146f6fbd4f8302646d64175 161922 libdevel optional libcupsys2-dev_1.3.2-1ubuntu7.8_hppa.deb
 16a6d6fa146d1be8be261a8336307f03 62538 libdevel optional libcupsimage2-dev_1.3.2-1ubuntu7.8_hppa.deb
 8253ccda9b6e737b66750d5ea43efea6 39188 net extra cupsys-bsd_1.3.2-1ubuntu7.8_hppa.deb
 6419c157fd22fcfb2e1563ccced2fcae 1080404 net optional cupsys-common_1.3.2-1ubuntu7.8_all.deb
 9c1c0dbb45bf7dc148e01f00bcd01625 1092336 raw-translations - cupsys_1.3.2-1ubuntu7.8_i386_translations.tar.gz
 fe12de8de5a779538844e2aecd5ccedb 183190 libs optional libcupsys2_1.3.2-1ubuntu7.8_i386.deb
 158a4aef965ef1c697c5c7aef53f9e90 46280 libs optional libcupsimage2_1.3.2-1ubuntu7.8_i386.deb
 16b0a7b694a38e4616fce6415116a7e9 2018384 net optional cupsys_1.3.2-1ubuntu7.8_i386.deb
 80b08f6080ed3c46e4fc954da05d9e6d 86494 net optional cupsys-client_1.3.2-1ubuntu7.8_i386.deb
 36b5af34074b13e44e2d2ae5f76fa6fc 145692 libdevel optional libcupsys2-dev_1.3.2-1ubuntu7.8_i386.deb
 8572d274d06e1a650d2d5199ea5dcf6f 58882 libdevel optional libcupsimage2-dev_1.3.2-1ubuntu7.8_i386.deb
 05cb382029ccb2285530af9de662b686 36486 net extra cupsys-bsd_1.3.2-1ubuntu7.8_i386.deb
 81c50026ee53b84cda8e951402962529 741698 raw-translations - cupsys_1.3.2-1ubuntu7.8_ia64_translations.tar.gz
 3e81d6f3c99f07788b5fd91a10018325 228106 libs optional libcupsys2_1.3.2-1ubuntu7.8_ia64.deb
 1806079dd6834febb6d266053bf564b7 69208 libs optional libcupsimage2_1.3.2-1ubuntu7.8_ia64.deb
 b4e08400e065988190d4cf270b0739b0 2267974 net optional cupsys_1.3.2-1ubuntu7.8_ia64.deb
 b8f7af3d33c8ed5b7531db1b30a16524 113918 net optional cupsys-client_1.3.2-1ubuntu7.8_ia64.deb
 c0048d7295c50f8a1927d7e781eda7dc 203326 libdevel optional libcupsys2-dev_1.3.2-1ubuntu7.8_ia64.deb
 b9dc97f5d7aaf18eb3791d0107d14053 82550 libdevel optional libcupsimage2-dev_1.3.2-1ubuntu7.8_ia64.deb
 8ff42002b77e95d10477c59687ff30b4 46080 net extra cupsys-bsd_1.3.2-1ubuntu7.8_ia64.deb
 0806d0e1be2fdb48b873ea977107b759 181382 libs optional libcupsys2_1.3.2-1ubuntu7.8_lpia.deb
 9cf01d1b6646691ebc9893c57af83472 741140 raw-translations - cupsys_1.3.2-1ubuntu7.8_lpia_translations.tar.gz
 a2e2c5cc101d720249efd108b1a724ca 47662 libs optional libcupsimage2_1.3.2-1ubuntu7.8_lpia.deb
 d97dab5d5a099884f7bca77dd118233a 2020696 net optional cupsys_1.3.2-1ubuntu7.8_lpia.deb
 07cfc2fdf8615471278b10550f713a3e 88054 net optional cupsys-client_1.3.2-1ubuntu7.8_lpia.deb
 8e91390ca3bb0bd98ab7a43017e38a90 142426 libdevel optional libcupsys2-dev_1.3.2-1ubuntu7.8_lpia.deb
 d582e3100eaf68e9b10585ca6ce0a078 59624 libdevel optional libcupsimage2-dev_1.3.2-1ubuntu7.8_lpia.deb
 f73b632b59630a2727e45be083730c23 36570 net extra cupsys-bsd_1.3.2-1ubuntu7.8_lpia.deb
 e12fe6cb805452cb06b4459043ec6995 741678 raw-translations - cupsys_1.3.2-1ubuntu7.8_powerpc_translations.tar.gz
 0033c62b251a505fb7d80b5b8c96f6b6 192204 libs optional libcupsys2_1.3.2-1ubuntu7.8_powerpc.deb
 91fcaca5686ce2070e654699b60514f4 51856 libs optional libcupsimage2_1.3.2-1ubuntu7.8_powerpc.deb
 b0f8237ccff1e54e070645e79e085794 2099614 net optional cupsys_1.3.2-1ubuntu7.8_powerpc.deb
 9a34baee6e8356d911d637e52fcb0747 107736 net optional cupsys-client_1.3.2-1ubuntu7.8_powerpc.deb
 205fedd96bd614314b2e9ecb18e78f53 146952 libdevel optional libcupsys2-dev_1.3.2-1ubuntu7.8_powerpc.deb
 c3c1a6f415dacee7b5f0e63e0f83ca6c 59494 libdevel optional libcupsimage2-dev_1.3.2-1ubuntu7.8_powerpc.deb
 1f2a7db4dd6dfc7910a9c84f28425537 46502 net extra cupsys-bsd_1.3.2-1ubuntu7.8_powerpc.deb
 4f603d11b93e600bd82009983bc88580 1218 net optional cupsys_1.3.2-1ubuntu7.8.dsc
 cc7a79b80d0cc2caa8f9c5aea2f9397b 128977 net optional cupsys_1.3.2-1ubuntu7.8.diff.gz
 cf1aa21a42953ebc7f6531416b6d025a 741623 raw-translations - cupsys_1.3.2-1ubuntu7.8_sparc_translations.tar.gz
 074755797d588b92f7030c0a9562cb67 182218 libs optional libcupsys2_1.3.2-1ubuntu7.8_sparc.deb
 9976f70a905893735ee445cca7ecda7f 45572 libs optional libcupsimage2_1.3.2-1ubuntu7.8_sparc.deb
 a1b9da985d3d0211790f170443e74ac9 2061026 net optional cupsys_1.3.2-1ubuntu7.8_sparc.deb
 d916d0d9478082000a0f698347613387 89606 net optional cupsys-client_1.3.2-1ubuntu7.8_sparc.deb
 48954d641e131708913530887d28c064 148486 libdevel optional libcupsys2-dev_1.3.2-1ubuntu7.8_sparc.deb
 dc5d816068b451c8926dd06a25e1715b 58098 libdevel optional libcupsimage2-dev_1.3.2-1ubuntu7.8_sparc.deb
 f568ceabe0e419d263b75a5c852eb10a 37558 net extra cupsys-bsd_1.3.2-1ubuntu7.8_sparc.deb
Original-Maintainer: Debian CUPS Maintainers <pkg-cups-devel at lists.alioth.debian.org>


More information about the gutsy-changes mailing list