[ubuntu/saucy-security] cups-filters 1.0.40-0ubuntu1.1 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Wed Mar 12 11:42:18 UTC 2014


cups-filters (1.0.40-0ubuntu1.1) saucy-security; urgency=medium

  * SECURITY UPDATE: arbitrary code execution via overflows in urftopdf
    - debian/patches/CVE-2013-647x.patch: check sizes in
      filter/urftopdf.cpp.
    - CVE-2013-6473
  * SECURITY UPDATE: arbitrary code execution via overflows in pdftoopvp
    - debian/patches/CVE-2013-647x.patch: use gmallocn and gmallocn3 in
      filter/pdftoopvp/{oprs/OPVPSplash.cxx,OPVPOutputDev.cxx}.
    - CVE-2013-6474
    - CVE-2013-6475
  * SECURITY UPDATE: arbitrary code execution via driver in pdftoopvp
    - debian/patches/CVE-2013-647x.patch: restrict driver path in
      filter/pdftoopvp/oprs/OPVPWrapper.cxx.
    - CVE-2013-6476

Date: 2014-03-11 15:16:15.144268+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/saucy/+source/cups-filters/1.0.40-0ubuntu1.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Saucy-changes mailing list