-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Mon, 28 Jul 2008 18:57:39 +0200 Source: cupsys Binary: libcupsys2-dev cupsys libcupsys2 libcupsimage2 cupsys-common cupsys-client cupsys-dbg cupsys-bsd libcupsys2-gnutls10 libcupsimage2-dev Architecture: mipsel Version: 1.2.7-4etch4 Distribution: stable-security Urgency: high Maintainer: Debian Build Daemon Changed-By: Martin Pitt Description: cupsys - Common UNIX Printing System(tm) - server cupsys-bsd - Common UNIX Printing System(tm) - BSD commands cupsys-client - Common UNIX Printing System(tm) - client programs (SysV) cupsys-dbg - Common UNIX Printing System(tm) - debugging symbols libcupsimage2 - Common UNIX Printing System(tm) - image libs libcupsimage2-dev - Common UNIX Printing System(tm) - image development files libcupsys2 - Common UNIX Printing System(tm) - libs libcupsys2-dev - Common UNIX Printing System(tm) - development files Closes: 476305 Changes: cupsys (1.2.7-4etch4) stable-security; urgency=high . * Add 74_CVE-2008-0053.dpatch: Fix buffer overflows in filter/hpgl-input.c by crated HP-GL files; possibly exploitable to run arbitrary code. (CVE-2008-0053, upstream SVN trunk r7219) * Add 75_CVE-2008-1373.dpatch: Fix buffer overflow in GIF filter by crafted images with large code_size value; potentially exploitable to run arbitrary code. (CVE-2008-1373, STR#2765, upstream svn trunk r7420) * Add 76_CVE-2008-1722.dpatch: Fix integer overflows in PNG filter by crafted images with large dimensions; potentially exploitable to run arbitrary code. (CVE-2008-1722, STR #2790, svn trunk r7437) (Closes: #476305) Files: 0354f63d7126c3775cc74a95426052d4 158270 libs optional libcupsys2_1.2.7-4etch4_mipsel.deb 7c91af84b2fab2419fa4939bb8080097 86688 libs optional libcupsimage2_1.2.7-4etch4_mipsel.deb 7d7af09023892fdd9e862ddcbb590fb3 1552918 net optional cupsys_1.2.7-4etch4_mipsel.deb 5884939dabb325cda97351bafdb62cfe 77456 net optional cupsys-client_1.2.7-4etch4_mipsel.deb ba6b2f7c16957759b63e20d66d5964f2 150896 libdevel optional libcupsys2-dev_1.2.7-4etch4_mipsel.deb 2ee768d4dc5f9c8cbd046a801f154ef8 57846 libdevel optional libcupsimage2-dev_1.2.7-4etch4_mipsel.deb 702ec7fbc7b2716e10a97f7b7c11e75a 36064 net extra cupsys-bsd_1.2.7-4etch4_mipsel.deb bb31572c9939fe22762ceef59550b25e 1084676 libdevel extra cupsys-dbg_1.2.7-4etch4_mipsel.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iQEVAwUBSJFxtWz0hbPcukPfAQJcpQf/YTxpuWG775n+K3eSw/cZWxby7YUDn1bB IYQRcuO2RSen88JBYNK2tVMPpPSLlx+2ByWt7LOXHbcmKMjQAyQ18U1+QQ3prDoz yroFRksLQwA3Kf9vjwoXU3gEp8BOdklXAvdovoBUF9MPK6jZb+bkBg6NNeJjzG5l 3+wHVC2qDCmM+VY/S4ppcpLMA2zH84fzCGJPCjT+c+NncH316F3b5UDZEnctqicN /uy2wi6HZAr0scKxTJ2+5LMwZSMvvGR+2DKAJGsL4+pzCLtVEcAX1glkD/4buzm2 ZpFEGfW0N7fAC1ked6YyiAyAFG8Jv1LjHj/NJ7Bw8ncoKoRdATLaSw== =tqbG -----END PGP SIGNATURE-----