-
hplip (0.9.7-4ubuntu1.1) dapper-security; urgency=low
* SECURITY UPDATE: privilege escalation using the hplip alert-mailing
functionality.
- debian/patches/70_SECURITY_CVE-2008-2940.dpatch: fix handle_event()
in hpssd.py to validate device-uri parameter and disable
handle_setalerts(). This fix alters hplip behaviour by preventing
users from setting alerts and by moving alert configuration to a
root-controlled /etc/hp/alerts.conf file.
- CVE-2008-2940
* SECURITY UPDATE: denial of service in hpssd message parser.
- debian/patches/71_SECURITY_CVE-2008-2941.dpatch: fix handle_event()
in hpssd.py to correctly validate parameters.
- CVE-2008-2941
-- Marc Deslauriers <email address hidden> Tue, 18 Nov 2008 13:39:37 -0500
-
hplip (0.9.7-4ubuntu1) dapper; urgency=low
* Synchronize with Debian unstable.
* Keep the .desktop file, add "NoDisplay=true".
* Keep qt build dependencies, now in main.
* hplip-data now provides hpijs-data (introduced in 0.9.8).
* Try to open a message dialog for the "No Qt" message. Malone: #26413.
* Install ppd files into a manufacturer specific directory.
* Set the manufacturer name to "HP".
* Start hplip before cupsys. Malone: #3841, #26570.
* Put toolbox icon in category system, not application. Malone: #25627.
hplip (0.9.7-4) unstable; urgency=low
* New upstream 0.9.7-2 patch: fixes for the following problems:
+ Photosmart 2570 series blue screen scanning error
+ GetDeviceStatus overwrite in hpiod (from RedHat)
+ SuperB margin issue with OJ K550, OJ K850 and DJ9800
+ _GNU_SOURCE define in hpaio.h. (from RedHat)
* Remove versioning of python-qt3 and pyqt-utils build-dependencies to
make backports easier. Current versions in stable, testing and sid
are safe AFAIK
* Build-depend on libsnmp9-dev|libsnmp5-dev, to ease sarge backports
hplip (0.9.7-3) unstable; urgency=low
* Switch from two versioned conflicts to two versioned depends/recommends
to encode the relationship between hplip and hplip-data. This is
easier on apt, since conflicts preclude unpack, while depends preclude
configure
* Fix non-removal of rem_str on 60_lp_instead_of_lpr (closes: #341445)
hplip (0.9.7-2) unstable; urgency=low
* Brown paperbag release
* Actually add 60_lp_instead_of_lpr to list of active dpatches.
This closes: #336407 for real
hplip (0.9.7-1) unstable; urgency=low
* New upstream version
* HPIJS 2.1.7:
+ Fixed OJ K550 typo in HPIJS
+ Added photo tray support to DJGenericVIP device class. This effects
all DJGenericVIP PPD files
+ Added support for the following new printers:
+ HP Color LaserJet 3000 (LJColor/PS)
+ HP Color LaserJet 3600 (LJJetReady)
+ HP Color LaserJet 3800 (LJColor/PS)
* HPLIP 0.9.7:
+ Added 1284.4 support to hpiod. Previous support was MLC only
+ Changed hp-toolbox startup behavior to increase performance
+ Added checks in messaging code to prevent invalid messages from
crashing hpssd
+ Added hp-toolbox PML cleanup code to LJ status code
+ Fixed clj28xx scanning issue. Mfpdtf buffer was too small
libsane-hpaio. This fixes a problem introduced in 0.9.5
+ Modified hp-makeuri to allow hostnames for network addresses
+ Added support for "alternate n-up" for PS documents to hp-print
+ Fixed an issue where the website link for support information is
wrong in "HP" tab of "Support Information" dialog
+ Fixed an issue setting the scan token in libsane-hpaio
+ Fixed an issue where an error occurs while executing the command
"hp-check -lnone" in terminal
+ Fixed an issue where an exception is caught but the program does not
show a correct prompt when running the command "hp-align" with parameter
-p
+ Fixed System::GetSnmp sigfault in hpiod. This will fix network
scanning/hp-toolbox issues in previous HPLIP releases
+ Fixed an issue where an error occurs while executing hp-photo after
the usb cable was disconnected
* Use far less tight versioning that works with the new rules for binNMUs,
and break a dependency loop while at it (closes: #339909)
* Add versioned dependency on coreutils 5.1+ (closes: #337375)
* New dpatch 60_lp_instead_of_lpr:
Use "lp" instead of "lpr" to submit jobs (closes: #336407)
* Ship copyright and changelogs along with hplip-data too, as it is not
depending on hplip anymore and the /usr/share/doc/hplip-data symlink has
to go away
-- Matthias Klose <email address hidden> Tue, 11 Apr 2006 10:27:47 +0000
-
hplip (0.9.6-1ubuntu8) dapper; urgency=low
* Fix symlink in /usr/share/cups/model.
-- Matthias Klose <email address hidden> Fri, 14 Apr 2006 08:06:24 +0000
-
hplip (0.9.6-1ubuntu7) dapper; urgency=low
* Keep the .desktop file, add "NoDisplay=true".
* Keep qt build dependencies, now in main.
* hplip-data now provides hpijs-data (introduced in 0.9.8).
* Try to open a message dialog for the "No Qt" message. Malone: #26413.
* Install ppd files into a manufacturer specific directory.
* Set the manufacturer name to "HP".
* Start hplip before cupsys. Malone: #3841, #26570.
* Put toolbox icon in category system, not application. Malone: #25627.
-- Matthias Klose <email address hidden> Tue, 11 Apr 2006 10:27:47 +0000
-
hplip (0.9.6-1ubuntu6) dapper; urgency=low
* Updated patch name and listed it from 00list so it's used
-- Sebastien Bacher <email address hidden> Wed, 15 Feb 2006 23:53:10 +0100
-
hplip (0.9.6-1ubuntu5) dapper; urgency=low
* Patch to support the newer-style /dev/usblp%d device names we've
been using in dapper for USB printers.
-- Scott James Remnant <email address hidden> Wed, 15 Feb 2006 18:18:14 +0000
-
hplip (0.9.6-1ubuntu4) dapper; urgency=low
* Rebuild with libsnmp9-dev.
-- Fabio M. Di Nitto <email address hidden> Thu, 01 Dec 2005 08:13:47 +0100