GLSA: cups

From: Daniel Ahlberg (alizat_private)
Date: Sun Dec 29 2002 - 05:35:18 PST

  • Next message: Matthias Andree: "Leafnode security announcement SA:2002:01"

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1
    
    - - --------------------------------------------------------------------
    GENTOO LINUX SECURITY ANNOUNCEMENT 200212-13
    - - --------------------------------------------------------------------
    
    PACKAGE : cups
    SUMMARY : multiple cups vulnerbilities
    DATE    : 2002-12-29 13:12 UTC
    EXPLOIT : remote and local
    
    - - --------------------------------------------------------------------
    
    - From iDEFENSE advisory:
    
    "Exploitation of multiple CUPS vulnerabilities allow local and remote 
    attackers in the worst of the scenarios to gain root privileges."
    
    Read the full advisory at
    http://www.idefense.com/advisory/12.19.02.txt
    
    SOLUTION
    
    It is recommended that all Gentoo Linux users who are running
    net-print/cups-1.1.17_pre20021025 or earlier update their systems as 
    follows:
    
    emerge rsync
    emerge cups
    emerge clean
    
    - - --------------------------------------------------------------------
    alizat_private - GnuPG key is available at www.gentoo.org/~aliz
    lordvanat_private
    - - --------------------------------------------------------------------
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.2.1 (GNU/Linux)
    
    iD8DBQE+DvoLfT7nyhUpoZMRAh8YAJ4lvCiGG5XfVvbpoKfzkKvj0geBygCeJRh1
    XYhpQT4S3rWtJu33t3ouuSI=
    =Qel0
    -----END PGP SIGNATURE-----
    



    This archive was generated by hypermail 2b30 : Mon Dec 30 2002 - 09:47:36 PST