Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2021:0253-1

Опубликовано: 05 фев. 2021
Источник: suse-cvrf

Описание

Security update for cups

This update for cups fixes the following issues:

  • CVE-2020-10001: Fixed an out-of-bounds read in the ippReadIO function (bsc#1180520).
  • CVE-2019-8842: Fixed an out-of-bounds read in an extension field (bsc#1170671).

This update was imported from the SUSE:SLE-15:Update update project.

Список пакетов

openSUSE Leap 15.2
cups-2.2.7-lp152.9.3.1
cups-client-2.2.7-lp152.9.3.1
cups-config-2.2.7-lp152.9.3.1
cups-ddk-2.2.7-lp152.9.3.1
cups-devel-2.2.7-lp152.9.3.1
cups-devel-32bit-2.2.7-lp152.9.3.1
libcups2-2.2.7-lp152.9.3.1
libcups2-32bit-2.2.7-lp152.9.3.1
libcupscgi1-2.2.7-lp152.9.3.1
libcupscgi1-32bit-2.2.7-lp152.9.3.1
libcupsimage2-2.2.7-lp152.9.3.1
libcupsimage2-32bit-2.2.7-lp152.9.3.1
libcupsmime1-2.2.7-lp152.9.3.1
libcupsmime1-32bit-2.2.7-lp152.9.3.1
libcupsppdc1-2.2.7-lp152.9.3.1
libcupsppdc1-32bit-2.2.7-lp152.9.3.1

Описание

A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2019-007 High Sierra. In certain configurations, a remote attacker may be able to submit arbitrary print jobs.


Затронутые продукты
openSUSE Leap 15.2:cups-2.2.7-lp152.9.3.1
openSUSE Leap 15.2:cups-client-2.2.7-lp152.9.3.1
openSUSE Leap 15.2:cups-config-2.2.7-lp152.9.3.1
openSUSE Leap 15.2:cups-ddk-2.2.7-lp152.9.3.1

Ссылки

Описание

An input validation issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave. A malicious application may be able to read restricted memory.


Затронутые продукты
openSUSE Leap 15.2:cups-2.2.7-lp152.9.3.1
openSUSE Leap 15.2:cups-client-2.2.7-lp152.9.3.1
openSUSE Leap 15.2:cups-config-2.2.7-lp152.9.3.1
openSUSE Leap 15.2:cups-ddk-2.2.7-lp152.9.3.1

Ссылки
Уязвимость openSUSE-SU-2021:0253-1