[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#901860: marked as done (Buffer write and cleanup problem in rastertoepson filter of CUPS)



Your message dated Tue, 03 Jul 2018 05:49:14 +0000
with message-id <E1faEBe-000DhF-Bj@fasolo.debian.org>
and subject line Bug#901860: fixed in cups 2.2.8-4
has caused the Debian Bug report #901860,
regarding Buffer write and cleanup problem in rastertoepson filter of CUPS
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact owner@bugs.debian.org
immediately.)


-- 
901860: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=901860
Debian Bug Tracking System
Contact owner@bugs.debian.org with problems
--- Begin Message ---
Package: cups
Version: all

There is/was a buffer boundary problem in the rastertoepson filter
coming with cups, which only affects A6 paper size on any Linux.

The filter crashes at the end of the first page and leaves the dot
matrix printer in an non-reseted state. This leaves to several problems
later.

Because it is a Memory Management Bug and CUPS is a security sensitive
package, this may even lead to security issues.

I already filed the bug upstream and there it was fixed within one
week.

https://github.com/apple/cups/issues/5323

Please backport the fixes:
https://github.com/apple/cups/commit/0dd6c36be918fe1d3c216a1c168277f37908c465
and
https://github.com/apple/cups/commit/7e041a5e5569fdb339906eeb00e6706d562e228a

to the cups package.

Any information and files needed are in the github issue mentioned
above.


Regards
Frank Polte

-- 


Doc Cirrus GmbH
CEO Dr. Torsten Schmale
Amtsgericht Berlin-Charlottenburg, HRB 144219
UStID: DE285186284

--- End Message ---
--- Begin Message ---
Source: cups
Source-Version: 2.2.8-4

We believe that the bug you reported is fixed in the latest version of
cups, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 901860@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Didier Raboud <odyx@debian.org> (supplier of updated cups package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 03 Jul 2018 07:18:20 +0200
Source: cups
Binary: libcups2 libcupsimage2 libcupscgi1 libcupsmime1 libcupsppdc1 cups cups-core-drivers cups-daemon cups-client cups-ipp-utils libcups2-dev libcupsimage2-dev cups-bsd cups-common cups-server-common cups-ppdc
Architecture: source
Version: 2.2.8-4
Distribution: unstable
Urgency: medium
Maintainer: Debian Printing Team <debian-printing@lists.debian.org>
Changed-By: Didier Raboud <odyx@debian.org>
Description:
 cups       - Common UNIX Printing System(tm) - PPD/driver support, web interfa
 cups-bsd   - Common UNIX Printing System(tm) - BSD commands
 cups-client - Common UNIX Printing System(tm) - client programs (SysV)
 cups-common - Common UNIX Printing System(tm) - common files
 cups-core-drivers - Common UNIX Printing System(tm) - driverless printing
 cups-daemon - Common UNIX Printing System(tm) - daemon
 cups-ipp-utils - Common UNIX Printing System(tm) - IPP developer/admin utilities
 cups-ppdc  - Common UNIX Printing System(tm) - PPD manipulation utilities
 cups-server-common - Common UNIX Printing System(tm) - server common files
 libcups2   - Common UNIX Printing System(tm) - Core library
 libcups2-dev - Common UNIX Printing System(tm) - Development files CUPS library
 libcupscgi1 - Common UNIX Printing System(tm) - CGI library
 libcupsimage2 - Common UNIX Printing System(tm) - Raster image library
 libcupsimage2-dev - Common UNIX Printing System(tm) - Development files CUPS image li
 libcupsmime1 - Common UNIX Printing System(tm) - MIME library
 libcupsppdc1 - Common UNIX Printing System(tm) - PPD manipulation library
Closes: 901860
Changes:
 cups (2.2.8-4) unstable; urgency=medium
 .
   * Backport upstream patches:
     - Fix A4 crash in Epson 24-pin driver (Closes: #901860)
Checksums-Sha1:
 99e58258276012518f0f8de6db84c10f479df2c5 3467 cups_2.2.8-4.dsc
 0e3135036258bbd275aa08b05243def1bd52c055 351380 cups_2.2.8-4.debian.tar.xz
Checksums-Sha256:
 e1f1f3abd9ab6d4e9e7c706b2a54cbaaeb86f593bf2e37fc53afb70f04217177 3467 cups_2.2.8-4.dsc
 a96159fb59f5197e33df6fe45a13e7fc59e11091bcd927ce3272c687dfcc3d4a 351380 cups_2.2.8-4.debian.tar.xz
Files:
 d3b19b785fcefa510cf0a43545d17db5 3467 net optional cups_2.2.8-4.dsc
 bd9789d6e06f0d4bf9b369fb0b54f536 351380 net optional cups_2.2.8-4.debian.tar.xz

-----BEGIN PGP SIGNATURE-----
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=s5FO
-----END PGP SIGNATURE-----

--- End Message ---

Reply to: