[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#934957: cups: multiple security issues (including CVEified CVE-2019-8675 and CVE-2019-8696)



clone -1 -2
reassign -2 release.debian.org
retitle -2 buster-pu: package cups/2.2.10-6+deb10u1
user release.debian.org@packages.debian.org
usertags -1 pu
clone -1 -3
reassign -3 release.debian.org
retitle -3 stretch-pu: package cups/2.2.1-8+deb9u3
user release.debian.org@packages.debian.org
usertags -3 opu
thanks

Le samedi, 17 août 2019, 11.34:01 h CEST Salvatore Bonaccorso a écrit :
> Filling for tracking. The recent 2.2.12[1] release includes fixes for
> several security issues, two of those got CVEs and are related to SNMP
> buffer overflows. [2] includes all those.

This was fixed in unstable through the CUPS minor release.

The Security Team declined to fix these in a security upload, so let's fix 
these in stable point releases. I'll prepare patches soon.

Cheers,
    OdyX

Attachment: signature.asc
Description: This is a digitally signed message part.


Reply to: