-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 26 Sep 2024 23:45:05 +0200 Source: cups Binary: cups cups-bsd cups-bsd-dbgsym cups-client cups-client-dbgsym cups-core-drivers cups-core-drivers-dbgsym cups-daemon cups-daemon-dbgsym cups-dbgsym cups-ipp-utils cups-ipp-utils-dbgsym cups-ppdc cups-ppdc-dbgsym libcups2 libcups2-dbgsym libcups2-dev libcupsimage2 libcupsimage2-dbgsym libcupsimage2-dev Architecture: i386 Version: 2.4.2-3+deb12u8 Distribution: bookworm-security Urgency: high Maintainer: i386 Build Daemon (x86-grnet-01) Changed-By: Thorsten Alteholz Description: cups - Common UNIX Printing System(tm) - PPD/driver support, web interfa cups-bsd - Common UNIX Printing System(tm) - BSD commands cups-client - Common UNIX Printing System(tm) - client programs (SysV) cups-core-drivers - Common UNIX Printing System(tm) - driverless printing cups-daemon - Common UNIX Printing System(tm) - daemon cups-ipp-utils - Common UNIX Printing System(tm) - IPP developer/admin utilities cups-ppdc - Common UNIX Printing System(tm) - PPD manipulation utilities libcups2 - Common UNIX Printing System(tm) - Core library libcups2-dev - Common UNIX Printing System(tm) - Development files CUPS library libcupsimage2 - Common UNIX Printing System(tm) - Raster image library libcupsimage2-dev - Common UNIX Printing System(tm) - Development files CUPS image li Changes: cups (2.4.2-3+deb12u8) bookworm-security; urgency=high . * CVE-2024-47175 Fix CVE and upstream also added some extra hardening to patch - validate URIs, attribute names, and capabilities in cups/ppd-cache.c, scheduler/ipp.c - sanitize make and model in cups/ppd-cache.c - PPDize preset and template names in cups/ppd-cache.c - quote PPD localized strings in cups/ppd-cache.c - fix warnings in cups/ppd-cache.c Checksums-Sha1: 98eaee731db9ad17dfaf94870d91832becf7e174 43264 cups-bsd-dbgsym_2.4.2-3+deb12u8_i386.deb 92166cc9baec12a6997c0a7215840efd63ae29a4 41004 cups-bsd_2.4.2-3+deb12u8_i386.deb e4cc352762c4a25f9207fa218f349b140c02bde8 144288 cups-client-dbgsym_2.4.2-3+deb12u8_i386.deb 9cb4998232d273313b3ec0c7c965978c0d829d21 160832 cups-client_2.4.2-3+deb12u8_i386.deb ecc1353a5219d24580b50c85bc0b9cc56a6d0d5b 51472 cups-core-drivers-dbgsym_2.4.2-3+deb12u8_i386.deb 4df296439d0105f0b16bf6a94bae3c769bda8bd7 40160 cups-core-drivers_2.4.2-3+deb12u8_i386.deb da47d136e4971831e9370cbe87622fd2d27d6714 420896 cups-daemon-dbgsym_2.4.2-3+deb12u8_i386.deb 9d464c747f2615f52ece065bf1084579fa882c4d 368776 cups-daemon_2.4.2-3+deb12u8_i386.deb d67e9372c312b20df3b868e14370e6740a3d17c3 620452 cups-dbgsym_2.4.2-3+deb12u8_i386.deb f9bc497de2c13fa03529a80ad09fd3d5c05093e8 211332 cups-ipp-utils-dbgsym_2.4.2-3+deb12u8_i386.deb 22c4140056d912cb85b78e634e522d6588de98ac 241944 cups-ipp-utils_2.4.2-3+deb12u8_i386.deb 67c0f54514ce4d301bd4e0c47be257c4d86483dc 332896 cups-ppdc-dbgsym_2.4.2-3+deb12u8_i386.deb 18d7a5ecc1cc84ecefbcf69464a62a78d5a65871 128792 cups-ppdc_2.4.2-3+deb12u8_i386.deb f5b7894275aa3697f011d91b3b28a1b461daeffc 13134 cups_2.4.2-3+deb12u8_i386-buildd.buildinfo d4f2dae473b8d90aec8409763ece4d6aa4472ef6 301904 cups_2.4.2-3+deb12u8_i386.deb 35464f7569cdff927a014413ec1e49b6199ea1e1 458304 libcups2-dbgsym_2.4.2-3+deb12u8_i386.deb ed7d905762b8d4b7bb1369837a8f6cb6eded52b2 322828 libcups2-dev_2.4.2-3+deb12u8_i386.deb 47fdc208e5fdaca1be8b44a57687c28b7a767955 262284 libcups2_2.4.2-3+deb12u8_i386.deb 46dce109ddf8ed183a816522d74970cc0beb70ee 11828 libcupsimage2-dbgsym_2.4.2-3+deb12u8_i386.deb 9fa306bf47a100695641ba23c8bc0365efc84eee 6992 libcupsimage2-dev_2.4.2-3+deb12u8_i386.deb 28d7272b213353a2452fb0bc63d22789852b2254 17364 libcupsimage2_2.4.2-3+deb12u8_i386.deb Checksums-Sha256: 76f76147180c6242e8a4538cccf615c65b2fc86859f3b5c6b891894e3ac4d72f 43264 cups-bsd-dbgsym_2.4.2-3+deb12u8_i386.deb 0e43e28d383c745436fdfb6140659d950bb252d73e62b9746e732ca87f81c8eb 41004 cups-bsd_2.4.2-3+deb12u8_i386.deb 5a3a5624892f63ab3f830ded3819ea6afa2f1ceb9746f7e0ab0726fb242c9d79 144288 cups-client-dbgsym_2.4.2-3+deb12u8_i386.deb 57e9904bd7ab96a70476db2d28b207343b168dfa569dadb57a90c90964708699 160832 cups-client_2.4.2-3+deb12u8_i386.deb 1342e7a54348c17801ada6ddf076485cf7b715975d17e03557ff12be91837b8e 51472 cups-core-drivers-dbgsym_2.4.2-3+deb12u8_i386.deb 3ce26d521da0ea82b08008e97feda1260d2cd458bdd48fd59912b75133c8b3d5 40160 cups-core-drivers_2.4.2-3+deb12u8_i386.deb 36fca75349d9b1f29fff979c90c0b837208d4277a0f4aa7978fea960cbf3678c 420896 cups-daemon-dbgsym_2.4.2-3+deb12u8_i386.deb b9714f5941821b5978055aef3684e0a81289290be15b5c8b02e5769182812b97 368776 cups-daemon_2.4.2-3+deb12u8_i386.deb 22f28e93e46352fc21239007ca0eec8f052d26451666e6ea197c7ab5855c924c 620452 cups-dbgsym_2.4.2-3+deb12u8_i386.deb c4348fe16f380c80a87b7b76d363f76df6bea76d8cff1fe2e81ab02cf8b4f6de 211332 cups-ipp-utils-dbgsym_2.4.2-3+deb12u8_i386.deb c2e0c7cc5cdf73bc1321c50b3360d7e76a9f0660c96bf15b1ff99cd4db53f13e 241944 cups-ipp-utils_2.4.2-3+deb12u8_i386.deb 00b5e42e705babf5c4e502fce4fe738643b9457b412f2e387dece10aae6450f7 332896 cups-ppdc-dbgsym_2.4.2-3+deb12u8_i386.deb e7ba6afab3614dcfb73a100f950f59f829e888c65edfbc7a2f1eb2aee66e07e6 128792 cups-ppdc_2.4.2-3+deb12u8_i386.deb 0386a25d0ccb07ce255814be0cb36a2a66d7285d13eeea4801f8a795c20728e8 13134 cups_2.4.2-3+deb12u8_i386-buildd.buildinfo e07a74264f63d279a966fc6ef5cfef4bc683af998c95cf3a3310c9eda5d93abe 301904 cups_2.4.2-3+deb12u8_i386.deb e1dccfca9f93711282a9243865de8d1bc6dd7baff905083eea50e16bc2124e5a 458304 libcups2-dbgsym_2.4.2-3+deb12u8_i386.deb 0c3d3972a2b3f12b051cb058df236ae499e6eb8feb5277dfe4f86e74b43deb3c 322828 libcups2-dev_2.4.2-3+deb12u8_i386.deb ce86f888e9929635a23616ce3295b8185015ff5011e0a49873d81b3c0673ad63 262284 libcups2_2.4.2-3+deb12u8_i386.deb 4809b9c91678a7e1ee028c84f60f9a7252e575709eab4630485b290a47ee9daf 11828 libcupsimage2-dbgsym_2.4.2-3+deb12u8_i386.deb d9b3ab4bcb7740634e8426bdb8c59d4d7ac15f895381f4f02ca7efd262d949ea 6992 libcupsimage2-dev_2.4.2-3+deb12u8_i386.deb 02605fc3ddf4a5cb45735036fbdfbb4f6d60ed4f1fdb462cb3882a32be6ae436 17364 libcupsimage2_2.4.2-3+deb12u8_i386.deb Files: f56d81892a63eda59fbe86746d3d2a2b 43264 debug optional cups-bsd-dbgsym_2.4.2-3+deb12u8_i386.deb 93a050b3330b1df75a8afcad3e8d50ce 41004 net optional cups-bsd_2.4.2-3+deb12u8_i386.deb 3b35089a92c22e0c10b339175a159e7d 144288 debug optional cups-client-dbgsym_2.4.2-3+deb12u8_i386.deb b9796299cdddfc3e58ecfb8945c420d6 160832 net optional cups-client_2.4.2-3+deb12u8_i386.deb 9ae62c393f10fb588ce24c33cac6b58b 51472 debug optional cups-core-drivers-dbgsym_2.4.2-3+deb12u8_i386.deb 53d93da02a802bdc0c7604d7b63abf50 40160 net optional cups-core-drivers_2.4.2-3+deb12u8_i386.deb 8130728025cea9a158449617ba7cf27f 420896 debug optional cups-daemon-dbgsym_2.4.2-3+deb12u8_i386.deb f7c6f6c66b4b43d467a31716dd926b15 368776 net optional cups-daemon_2.4.2-3+deb12u8_i386.deb 769bbcaed724d4c986451ab7387cdf0c 620452 debug optional cups-dbgsym_2.4.2-3+deb12u8_i386.deb 0ffd1d47cee6fa7341505208750c90e7 211332 debug optional cups-ipp-utils-dbgsym_2.4.2-3+deb12u8_i386.deb c18d8c385fd9e6bd994b9f0582b66d3a 241944 net optional cups-ipp-utils_2.4.2-3+deb12u8_i386.deb 208322e73bf3978c5907a40c4298109b 332896 debug optional cups-ppdc-dbgsym_2.4.2-3+deb12u8_i386.deb 49b92fc3a71d84e88962fa3850e4efd3 128792 utils optional cups-ppdc_2.4.2-3+deb12u8_i386.deb 8ed7695fb54d8c763df2eccf35eda72b 13134 net optional cups_2.4.2-3+deb12u8_i386-buildd.buildinfo e3f00cb3a09187881a69ec5830cd30b8 301904 net optional cups_2.4.2-3+deb12u8_i386.deb 0a74f25d42ae47016db625f1f4f3dc8b 458304 debug optional libcups2-dbgsym_2.4.2-3+deb12u8_i386.deb b7ef1075a81911bca9085059379e2dce 322828 libdevel optional libcups2-dev_2.4.2-3+deb12u8_i386.deb 6f45046ea3488f16ba2f06026659824c 262284 libs optional libcups2_2.4.2-3+deb12u8_i386.deb ce39e0f0e47210e2b4b64d0bf1869dd5 11828 debug optional libcupsimage2-dbgsym_2.4.2-3+deb12u8_i386.deb 271a257cf5a5bb4c4d510da44e86cd9e 6992 libdevel optional libcupsimage2-dev_2.4.2-3+deb12u8_i386.deb 5b4f91030c26f3647ace4328d7001bbf 17364 libs optional libcupsimage2_2.4.2-3+deb12u8_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEyTfXx8sBpQ0Lh3cUU9a0/LcaTpMFAmb4Hi8ACgkQU9a0/Lca TpNp8w/7BIYz3r6LZuRxy/KNSH2jGtyGGmsfEVGQjWPyhvi8Yv+IWzdKDaHaDcCx pM8/Wu95i3mAilkfGWj9GaaJPSGpn1tHogd5+jYmoMyu26dL93j8c/uyoHbqkkc8 9cvzTP7TPCfxY1uQjvk33DFGo9fX5eDBzaRCB4rMsTL8ojVgleuYHBit/B2XzGBQ suRaASndHbOvdWDVQZK9Hxu/N0szI8sPVBTFTX1TT5cwnKuudy5JRvCGW5fZjiOn actgkD1LXBzWLSH1DYq+0xg3UdROcu0cSb4a79odR90MuJYFZknp9v19TInI/LKL 00B7t0ikDjWmcbTh6lu7if8JibVNxSc32nuWGiU1ccsB/mA9KoMFmotz4TaTA1ld zjnuW/I1LsxDMzBwNwS3uwjmTTM4bmWVCjrmHj4vrccYXRUDYPi9K5/Xi+85+xYQ Q+XsUvyU5hLS3ZZNgDF6a8iowW4Xds70SJ1XW5P2leae0P474oo+OJaT56ZImE4w XIoZEwf78KMAs0YoWX7jbFTNgqjaIZYA8kebGLsaowBDdm9Ff76DSUwxRSBPAiHD m8a42XyvDlFYtuCqlanaRKHYrUPG2bECpGx3TaSgAdIuZQ5iAuXYOq/tIKbyF5xC 8+07Izrnn5gGTMDv7FEr14HtIVdBvf9q5EYb613PwA1Xbt7P1tw= =J4n9 -----END PGP SIGNATURE-----