Описание
Security update for cups
This update for cups fixes the following issues:
- CVE-2020-10001: Fixed an out-of-bounds read in the ippReadIO function (bsc#1180520).
- CVE-2019-8842: Fixed an out-of-bounds read in an extension field (bsc#1170671).
This update was imported from the SUSE:SLE-15:Update update project.
Список пакетов
openSUSE Leap 15.2
cups-2.2.7-lp152.9.3.1
cups-client-2.2.7-lp152.9.3.1
cups-config-2.2.7-lp152.9.3.1
cups-ddk-2.2.7-lp152.9.3.1
cups-devel-2.2.7-lp152.9.3.1
cups-devel-32bit-2.2.7-lp152.9.3.1
libcups2-2.2.7-lp152.9.3.1
libcups2-32bit-2.2.7-lp152.9.3.1
libcupscgi1-2.2.7-lp152.9.3.1
libcupscgi1-32bit-2.2.7-lp152.9.3.1
libcupsimage2-2.2.7-lp152.9.3.1
libcupsimage2-32bit-2.2.7-lp152.9.3.1
libcupsmime1-2.2.7-lp152.9.3.1
libcupsmime1-32bit-2.2.7-lp152.9.3.1
libcupsppdc1-2.2.7-lp152.9.3.1
libcupsppdc1-32bit-2.2.7-lp152.9.3.1
Ссылки
- E-Mail link for openSUSE-SU-2021:0253-1
- SUSE Security Ratings
- SUSE Bug 1170671
- SUSE Bug 1180520
- SUSE CVE CVE-2019-8842 page
- SUSE CVE CVE-2020-10001 page
Описание
A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2019-007 High Sierra. In certain configurations, a remote attacker may be able to submit arbitrary print jobs.
Затронутые продукты
openSUSE Leap 15.2:cups-2.2.7-lp152.9.3.1
openSUSE Leap 15.2:cups-client-2.2.7-lp152.9.3.1
openSUSE Leap 15.2:cups-config-2.2.7-lp152.9.3.1
openSUSE Leap 15.2:cups-ddk-2.2.7-lp152.9.3.1
Ссылки
- CVE-2019-8842
- SUSE Bug 1170671
Описание
An input validation issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave. A malicious application may be able to read restricted memory.
Затронутые продукты
openSUSE Leap 15.2:cups-2.2.7-lp152.9.3.1
openSUSE Leap 15.2:cups-client-2.2.7-lp152.9.3.1
openSUSE Leap 15.2:cups-config-2.2.7-lp152.9.3.1
openSUSE Leap 15.2:cups-ddk-2.2.7-lp152.9.3.1
Ссылки
- CVE-2020-10001
- SUSE Bug 1170671
- SUSE Bug 1180520