Format: 1.7 Date: Tue, 18 Nov 2008 13:39:37 -0500 Source: hplip Binary: hpijs hplip-data hpijs-ppds hplip hplip-doc hplip-gui hplip-dbg Architecture: powerpc_translations powerpc Version: 2.7.7.dfsg.1-0ubuntu5.1 Distribution: gutsy Urgency: low Maintainer: Ubuntu/powerpc Build Daemon Changed-By: Marc Deslauriers Description: hpijs - HP Linux Printing and Imaging - gs IJS driver (hpijs) hplip - HP Linux Printing and Imaging System (HPLIP) hplip-dbg - HP Linux Printing and Imaging - debugging information Changes: hplip (2.7.7.dfsg.1-0ubuntu5.1) gutsy-security; urgency=low . * SECURITY UPDATE: privilege escalation using the hplip alert-mailing functionality. - debian/patches/91_SECURITY_CVE-2008-2940.dpatch: fix handle_event() in hpssd.py to validate device-uri parameter and disable handle_setalerts(). This fix alters hplip behaviour by preventing users from setting alerts and by moving alert configuration to a root-controlled /etc/hp/alerts.conf file. - CVE-2008-2940 * SECURITY UPDATE: denial of service in hpssd message parser. - debian/patches/92_SECURITY_CVE-2008-2941.dpatch: fix handle_event() in hpssd.py to correctly validate parameters. - CVE-2008-2941 Files: 881d9454ff02d5b2fe84fddb29c38be2 165289 raw-translations - hplip_2.7.7.dfsg.1-0ubuntu5.1_powerpc_translations.tar.gz 2635fbbe0d26218e328e5a65f6739ee1 348144 text optional hpijs_2.7.7+2.7.7.dfsg.1-0ubuntu5.1_powerpc.deb fa76d41aeb82c0bd14565aa7046d3673 319062 utils optional hplip_2.7.7.dfsg.1-0ubuntu5.1_powerpc.deb db9c4e4175812910e690b6d93c78c484 784396 utils extra hplip-dbg_2.7.7.dfsg.1-0ubuntu5.1_powerpc.deb Original-Maintainer: Henrique de Moraes Holschuh