-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 26 Sep 2024 23:45:05 +0200 Source: cups Binary: cups cups-bsd cups-bsd-dbgsym cups-client cups-client-dbgsym cups-core-drivers cups-core-drivers-dbgsym cups-daemon cups-daemon-dbgsym cups-dbgsym cups-ipp-utils cups-ipp-utils-dbgsym cups-ppdc cups-ppdc-dbgsym libcups2 libcups2-dbgsym libcups2-dev libcupsimage2 libcupsimage2-dbgsym libcupsimage2-dev Architecture: armhf Version: 2.4.2-3+deb12u8 Distribution: bookworm-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-06) Changed-By: Thorsten Alteholz Description: cups - Common UNIX Printing System(tm) - PPD/driver support, web interfa cups-bsd - Common UNIX Printing System(tm) - BSD commands cups-client - Common UNIX Printing System(tm) - client programs (SysV) cups-core-drivers - Common UNIX Printing System(tm) - driverless printing cups-daemon - Common UNIX Printing System(tm) - daemon cups-ipp-utils - Common UNIX Printing System(tm) - IPP developer/admin utilities cups-ppdc - Common UNIX Printing System(tm) - PPD manipulation utilities libcups2 - Common UNIX Printing System(tm) - Core library libcups2-dev - Common UNIX Printing System(tm) - Development files CUPS library libcupsimage2 - Common UNIX Printing System(tm) - Raster image library libcupsimage2-dev - Common UNIX Printing System(tm) - Development files CUPS image li Changes: cups (2.4.2-3+deb12u8) bookworm-security; urgency=high . * CVE-2024-47175 Fix CVE and upstream also added some extra hardening to patch - validate URIs, attribute names, and capabilities in cups/ppd-cache.c, scheduler/ipp.c - sanitize make and model in cups/ppd-cache.c - PPDize preset and template names in cups/ppd-cache.c - quote PPD localized strings in cups/ppd-cache.c - fix warnings in cups/ppd-cache.c Checksums-Sha1: 5b72088c9ea2ce1925cbca176cb40adaeb3fb5d1 34072 cups-bsd-dbgsym_2.4.2-3+deb12u8_armhf.deb 2c0947c13f26312db31fb7385061d3e3eee4a704 39452 cups-bsd_2.4.2-3+deb12u8_armhf.deb f98fbcc01fa5e43c48e1eebefb4e6279509708a2 118808 cups-client-dbgsym_2.4.2-3+deb12u8_armhf.deb 4288b7278177e371c84df2cbba16b21ff177ba15 155340 cups-client_2.4.2-3+deb12u8_armhf.deb 85c0af5365bbe3e933168243257004faffb9af8d 53056 cups-core-drivers-dbgsym_2.4.2-3+deb12u8_armhf.deb c5b52c08f6e33eb2080cf02ebcb8fa1ab43abdd0 37592 cups-core-drivers_2.4.2-3+deb12u8_armhf.deb 4cf490b949a93c545c5ce40d4ff61059666ceabc 485036 cups-daemon-dbgsym_2.4.2-3+deb12u8_armhf.deb d4d2a1fd7ca26383e073b1b1b85794ac28ba47cc 334448 cups-daemon_2.4.2-3+deb12u8_armhf.deb 9cb968b40f11943bca51c0652a42962c2bee2d8b 641352 cups-dbgsym_2.4.2-3+deb12u8_armhf.deb 05b275886ecfc30490ef26ea5eef636c6b698be3 214396 cups-ipp-utils-dbgsym_2.4.2-3+deb12u8_armhf.deb a92fae8239f712929c7f0eebea10dac9f4aa4acb 228008 cups-ipp-utils_2.4.2-3+deb12u8_armhf.deb 70ae5c0796d7c78f1bb6179ff2e6946c27cf7838 320088 cups-ppdc-dbgsym_2.4.2-3+deb12u8_armhf.deb d3d03bf738791b788310e7e2c8cb2d91a52ab1f7 111748 cups-ppdc_2.4.2-3+deb12u8_armhf.deb b308e4ac768b0c16ba750abc3724c815ac8062a0 13107 cups_2.4.2-3+deb12u8_armhf-buildd.buildinfo f9ab0494540e5eae6e276c1fe19925792c2a6629 269184 cups_2.4.2-3+deb12u8_armhf.deb f82cbb8fc26e3f87f8704879f42c2807fa53b37c 533992 libcups2-dbgsym_2.4.2-3+deb12u8_armhf.deb 9e1ba1893b2b6bccc080e39b0e2b0c80fb73f8e6 268720 libcups2-dev_2.4.2-3+deb12u8_armhf.deb b9add5910922deacf4962544adc7f1308de4f8b7 210204 libcups2_2.4.2-3+deb12u8_armhf.deb 1591b34fd8a0e077466234a5b18e6330beae8376 12728 libcupsimage2-dbgsym_2.4.2-3+deb12u8_armhf.deb 3b9235ece9795d39b38aa4d443b40360f6d38938 6208 libcupsimage2-dev_2.4.2-3+deb12u8_armhf.deb e22a92a5db456ca0643bf391dc06f62b236c4c25 16612 libcupsimage2_2.4.2-3+deb12u8_armhf.deb Checksums-Sha256: c07fcace8335c0184c122e2b01712b43e32d9e37ed4e5c9850b9d36458aceff8 34072 cups-bsd-dbgsym_2.4.2-3+deb12u8_armhf.deb e41915bc17ba26308307c25ddf71b7aeb67e835d5376366cb762273592082762 39452 cups-bsd_2.4.2-3+deb12u8_armhf.deb b6cd7c20c71fe428615bd436fa178b9b8260f7fe6d5d3f23b2ab8ed7166c35e5 118808 cups-client-dbgsym_2.4.2-3+deb12u8_armhf.deb f30e78d18ca51a0524cc6dab331c29907037cdaccc7e64e6c2d0fd3c898115a5 155340 cups-client_2.4.2-3+deb12u8_armhf.deb c2ed04cf75d6cf33c271b44b899e61e8acac0ef720d401b1fd8f48183cc1ffaf 53056 cups-core-drivers-dbgsym_2.4.2-3+deb12u8_armhf.deb 4baf67e27883efefee150dc19e2ccbc4f3a0cc89605de7c63c2c8f943ef91439 37592 cups-core-drivers_2.4.2-3+deb12u8_armhf.deb 9312eba15061142de13430fff71674b9564d389aedd153af8c026fbee9a24d4f 485036 cups-daemon-dbgsym_2.4.2-3+deb12u8_armhf.deb bb36213b51494d45f3a6f3662a4424d19bea4de6624a2a4c6b84675caaf83737 334448 cups-daemon_2.4.2-3+deb12u8_armhf.deb 5b0d25be03e0c73987bf1c88a31c0c893ad1117d63d91aa141e18f256acbea82 641352 cups-dbgsym_2.4.2-3+deb12u8_armhf.deb 10da8855e1f2df73940fae468b8c255cab56139b17203133fd0fd8aaf51b5982 214396 cups-ipp-utils-dbgsym_2.4.2-3+deb12u8_armhf.deb 259b6e016f5e00c82b63dc4ce7545b2c07621068f0b2918017544173d68defcb 228008 cups-ipp-utils_2.4.2-3+deb12u8_armhf.deb f8e794e6eb3c01bb8a3d0edf416f3adef923ec08ca5875b89b2e226adc7fad29 320088 cups-ppdc-dbgsym_2.4.2-3+deb12u8_armhf.deb b044e74cbe8b156c896df421a7c6adffbb650c23d49c162d2e920a193d69b962 111748 cups-ppdc_2.4.2-3+deb12u8_armhf.deb 2817e9a961bd4a9b6ea98460fdcf5a2fef3fb0dfc1eb92547db472bf02d631ce 13107 cups_2.4.2-3+deb12u8_armhf-buildd.buildinfo e436c8cf88b923e17985180cfb838a964f7480a5246809e6edc1dc38d6cad05c 269184 cups_2.4.2-3+deb12u8_armhf.deb 32ff3e84f4cbcb679aa6d454dc32689d07404be9dd9a8dad0998bf8dc707305f 533992 libcups2-dbgsym_2.4.2-3+deb12u8_armhf.deb b79efad38863d41d4e2b229f5815dafe267f6774e6c0874957dbfb1c3e5f9680 268720 libcups2-dev_2.4.2-3+deb12u8_armhf.deb 443ec46cf6a7a46038c12ccf3f11d0f838969c00a00e06535c8647aa8cbcacf7 210204 libcups2_2.4.2-3+deb12u8_armhf.deb 78eb13ce24f86eda65ce11718ebf15fe83422d82b16561d7acb022a7bb4ff90d 12728 libcupsimage2-dbgsym_2.4.2-3+deb12u8_armhf.deb 2c103041a57b811c7214cb128ce5f1219f61c5e89bab7cfe7a608e8560dfec8b 6208 libcupsimage2-dev_2.4.2-3+deb12u8_armhf.deb 5b5a607855313c085de1ad1522a9cbc80b44efa7443fd7b6a0ac3ea553204375 16612 libcupsimage2_2.4.2-3+deb12u8_armhf.deb Files: 8f1a0be96effdce94f13e401343b1a27 34072 debug optional cups-bsd-dbgsym_2.4.2-3+deb12u8_armhf.deb 60ed88f4c0ae4692cf90bf8b75adbb24 39452 net optional cups-bsd_2.4.2-3+deb12u8_armhf.deb adc909fb057878f7901047c986b03b84 118808 debug optional cups-client-dbgsym_2.4.2-3+deb12u8_armhf.deb 754a1d7bfc9758538c2fc3c1c3751e40 155340 net optional cups-client_2.4.2-3+deb12u8_armhf.deb 9377acfad3c280c5916df550eb2b7203 53056 debug optional cups-core-drivers-dbgsym_2.4.2-3+deb12u8_armhf.deb 054155d67ee81ab8a22cbe5177ed4440 37592 net optional cups-core-drivers_2.4.2-3+deb12u8_armhf.deb 68ab0a4a8fb0900f5226632b3a678d27 485036 debug optional cups-daemon-dbgsym_2.4.2-3+deb12u8_armhf.deb c984eafa243731501fc092a86c6dbc9c 334448 net optional cups-daemon_2.4.2-3+deb12u8_armhf.deb fa59ca25fc6a4d6a8682e7161f6a2d87 641352 debug optional cups-dbgsym_2.4.2-3+deb12u8_armhf.deb 552afffbcf91d8d33e66bc086d1c7995 214396 debug optional cups-ipp-utils-dbgsym_2.4.2-3+deb12u8_armhf.deb 7981ac04fe223c453e122ae63ec1b06b 228008 net optional cups-ipp-utils_2.4.2-3+deb12u8_armhf.deb 7deee7fe6b3b0b3f33f862f8b5a9617f 320088 debug optional cups-ppdc-dbgsym_2.4.2-3+deb12u8_armhf.deb dba09082a64446d74a90a85bc95d88b1 111748 utils optional cups-ppdc_2.4.2-3+deb12u8_armhf.deb 851d9547ac524b4c13d58d7385598600 13107 net optional cups_2.4.2-3+deb12u8_armhf-buildd.buildinfo 2566ca8008a596896c90886f68ec6c34 269184 net optional cups_2.4.2-3+deb12u8_armhf.deb e71262483dcf1526711817d6b3b81c99 533992 debug optional libcups2-dbgsym_2.4.2-3+deb12u8_armhf.deb 8e1cd8592812ccd3f3a342c7f95c15a7 268720 libdevel optional libcups2-dev_2.4.2-3+deb12u8_armhf.deb 2905e2768c7d2de7d7f2c1888e3ce63c 210204 libs optional libcups2_2.4.2-3+deb12u8_armhf.deb c6e79d0aba710c24934152916afe6611 12728 debug optional libcupsimage2-dbgsym_2.4.2-3+deb12u8_armhf.deb 7aa8ce6c8c5709700a3e6a5aaebdfe36 6208 libdevel optional libcupsimage2-dev_2.4.2-3+deb12u8_armhf.deb 8279ba02a5bef6d19678c014563d894e 16612 libs optional libcupsimage2_2.4.2-3+deb12u8_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEErcTbumGV7Ig2iXlfQdxRZ9J7nEgFAmb4H4oACgkQQdxRZ9J7 nEiGFg//dp5EYrGF47u1guG+bp2N8N4ABp9Ve0mvI76WUqIsaXC7La/lmis3sAq1 oIJpKMvj/0vxqGuxrcfIM17q20bxLNYLcV8bBDWK7etBhrEKeQL6F9yxgd2JGXjQ kUJ/4lWgC58o9gxBejdJ3HglOoXfOH+TjyIdZBujw4k9NmOUM09tUoOFMgvbwLCs orLX0M/gVf8ZJJT1Wa9FnHUERkXPwUHEQpqEw8LFExZ0Ut2yatJGRHbl8uel/4Ex f0ZKCI7HR1K3SVw8hEL74gpcoe39DDAMJld+Fx1HamjSAgkHpCFDfunIJElM59Se wZHG6yNt4MO50qBVwNHkBdJTSfyjcHTXI/5lOT94o1UOUz92DlhFe73LwgXQITIF ownElxPI8B6xlwQWJ2Qo+yCq9YeiSVn4TqGgfe4SYaOJfbU9f3AiYippFz+NFM4/ wMFtg9J1Yf3Z14FYTCfFQpEYGkogZ/JrRzsHV9cuw07Mpzuzcig00IFZg0Adt0Gi 79w6SkZvIAyo0n3qnvlassx7N3jgZ5928fKxTmcLxOsiXRBPNWBYKPPHB4unX0KG jNqpqkj1HT6RjwYdjknO9/2QliXsykwkZGjuMtoUQdp7fKpl6yLX8sHCQkCmFPEM EEb5Otg0LiyIyUqq2UiWygqfzgdykFAtyAwspT6qa5wPZ9FSQCo= =Nv+a -----END PGP SIGNATURE-----