Format: 1.7 Date: Tue, 18 Nov 2008 14:36:40 -0500 Source: hplip Binary: hplip hplip-data hplip-gui hplip-dbg hplip-doc hpijs-ppds hpijs Architecture: all i386_translations i386 Version: 2.8.2-0ubuntu8.1 Distribution: hardy Urgency: low Maintainer: Ubuntu/i386 Build Daemon Changed-By: Marc Deslauriers Description: hpijs - HP Linux Printing and Imaging - gs IJS driver (hpijs) hpijs-ppds - HP Linux Printing and Imaging - HPIJS PPD files hplip - HP Linux Printing and Imaging System (HPLIP) hplip-data - HP Linux Printing and Imaging - data files hplip-dbg - HP Linux Printing and Imaging - debugging information hplip-doc - HP Linux Printing and Imaging - documentation hplip-gui - HP Linux Printing and Imaging - GUI utilities Changes: hplip (2.8.2-0ubuntu8.1) hardy-security; urgency=low . * SECURITY UPDATE: privilege escalation using the hplip alert-mailing functionality. - debian/patches/92_SECURITY_CVE-2008-2940.dpatch: fix handle_event() in hpssd.py to validate device-uri parameter and disable handle_setalerts(). This fix alters hplip behaviour by preventing users from setting alerts and by moving alert configuration to a root-controlled /etc/hp/alerts.conf file. - CVE-2008-2940 * SECURITY UPDATE: denial of service in hpssd message parser. - debian/patches/93_SECURITY_CVE-2008-2941.dpatch: fix handle_event() in hpssd.py to correctly validate parameters. - CVE-2008-2941 Files: c5a1b517bc403570513f27a1f15341b8 1529318 utils optional hpijs-ppds_2.8.2+2.8.2-0ubuntu8.1_all.deb 8f55c60778ef6f7e075803152a313496 7019114 utils optional hplip-data_2.8.2-0ubuntu8.1_all.deb d4f8e634314c25160cee0bc44b6c55eb 128378 utils optional hplip-gui_2.8.2-0ubuntu8.1_all.deb 2cdbd923c549fe09c8436ff36bf73a1a 4167440 doc optional hplip-doc_2.8.2-0ubuntu8.1_all.deb 1e60563afd779ed83a410660ede6df61 214573 raw-translations - hplip_2.8.2-0ubuntu8.1_i386_translations.tar.gz e8c891f92d1219bdfa178a8eb533215f 374220 text optional hpijs_2.8.2+2.8.2-0ubuntu8.1_i386.deb 64477942b624ef3cf98921e3535cc473 308622 utils optional hplip_2.8.2-0ubuntu8.1_i386.deb 79b9fb3adfe38464311e6689ff634c35 788090 utils extra hplip-dbg_2.8.2-0ubuntu8.1_i386.deb Original-Maintainer: Debian HPIJS and HPLIP maintainers