Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-3864

Опубликовано: 06 окт. 2020
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2020-3864: cups security and bug fix update (MODERATE)

[1:1.6.3-51]

  • 1823758 - CVE-2017-18190 cups: DNS rebinding attacks via incorrect whitelist [rhel-7]

[1:1.6.3-50]

  • 1813413 - [RHEL 7.7] segfault in cupsdSaveJob() caused by no space in /var

[1:1.6.3-49]

  • more covscan issues raised from the fix 1672212

[1:1.6.3-48]

  • fixing covscan issue from 1672212

[1:1.6.3-47]

  • 1672212 - cupsd eats a lot of memory when lots of queue with extensive PPDs are created

[1:1.6.3-46]

  • 1715907 - CUPS- client: cupsGetPPD3() function tries to load PPD from IPP printer and not from the CUPS queue

[1:1.6.3-45]

  • fixing covscan issue from 1774460

[1:1.6.3-44]

  • 1774460 - CVE-2019-8696 cups: stack-buffer-overflow in libcupss asn1_get_packed function [rhel-7]
  • 1774461 - CVE-2019-8675 cups: stack-buffer-overflow in libcupss asn1_get_type function [rhel-7]
  • 1753809 - Settings in ~/.cups/client.conf arent used

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

cups

1.6.3-51.el7

cups-client

1.6.3-51.el7

cups-devel

1.6.3-51.el7

cups-filesystem

1.6.3-51.el7

cups-ipptool

1.6.3-51.el7

cups-libs

1.6.3-51.el7

cups-lpd

1.6.3-51.el7

Oracle Linux x86_64

cups

1.6.3-51.el7

cups-client

1.6.3-51.el7

cups-devel

1.6.3-51.el7

cups-filesystem

1.6.3-51.el7

cups-ipptool

1.6.3-51.el7

cups-libs

1.6.3-51.el7

cups-lpd

1.6.3-51.el7

Связанные уязвимости

suse-cvrf
около 6 лет назад

Security update for cups

suse-cvrf
около 6 лет назад

Security update for cups

suse-cvrf
около 6 лет назад

Security update for cups

suse-cvrf
около 6 лет назад

Security update for cups

suse-cvrf
около 6 лет назад

Security update for cups