Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora: 10 Security Advisory 2008-10895 Critical: CUPS DoS Issue

fedora
Calendar Grey December 9, 2008
Dist Fedora Esm H88
Patch release for CUPS in Fedora 10 tackling CVE-2008-5183 along with crucial bug corrections incorporated.
Security update to fix CVE-2008-5183

Summary

The Common UNIX Printing System provides a portable printing layer for

UNIX® operating systems. It has been developed by Easy Software Products

to promote a standard printing solution for all UNIX vendors and users.

CUPS provides the System V and Berkeley command-line interfaces.

Update Information:

Security update to fix CVE-2008-5183. Also changed in this update: * a bug that caused cups-polld to fail to resolve hostnames has been fixed * a bug that could cause libcups to get stuck in a loop has been fixed * the dnssd backend has been removed as it is not working correctly and can prevent printers being added

Change Log

* Wed Dec 3 2008 Tim Waugh 1:1.3.9-4 - Applied patch to fix STR #2974 (bug #473905, CVE-2008-5286, CVE-2008-1722). - Applied patch to fix RSS subscription limiting (bug #473901, CVE-2008-5183). - Fixed cups-polld again for res_init (STR #3023, bug #354071). - Added patch to avoid polling busy loop (STR #2988). * Thu Oct 30 2008 Tim Waugh 1:1.3.9-3 - Fixed LSPP labels (bug #468442).

References


[ 1 ] Bug #473901 - CVE-2008-5183 cups: DoS (daemon crash) by adding a large number of RSS subscriptions https://bugzilla.redhat.com/show_bug.cgi?id=473901

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update cups' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: cups
Product: Fedora 10
Version: 1.3.9
Release: 4.fc10
Summary: Common Unix Printing System

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here