Contact | Site en Français               

 


 

Vulnerabilities & Threats

 
  VUPEN Security Advisories
  Linux Security Advisories

  Malware Advisories

  Security Research
  Threat Watch Blog
  Zero-Day Monitor
  Search Engine
  Mailing List & RSS
 
   

>> Fedora Security Update Fixes CUPS Xpdf Buffer Overflow Vulnerabilities

Title : Fedora Security Update Fixes CUPS Xpdf Buffer Overflow Vulnerabilities
VUPEN ID : VUPEN/ADV-2005-2911
CVE ID : CVE-2005-3191 - CVE-2005-3192 - CVE-2005-3193
Rated as : High Risk 
Remotely Exploitable : Yes
Locally Exploitable : Yes
Release Date : 2005-12-15


Technical Description    Receive VUPEN Security alerts in a Text format  Receive VUPEN Security alerts in a PDF format  Receive VUPEN Security alerts in an XML format  Receive VUPEN Security notifications by SMS 

Fedora has released updated packages to correct multiple vulnerabilities identified in CUPS. These flaws could be exploited by remote attackers to execute arbitrary commands and take complete control of an affected system. For additional information, see : VUPEN/ADV-2005-2755

Affected Products

Fedora Core 3
Fedora Core 4

Solution

Upgrade the affected packages :
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/
a16b24d62175371a28230813b893d13e SRPMS/cups-1.1.22-0.rc1.8.8.src.rpm
2d8f5c576d251986bfa2a1a65c1c1213 x86_64/cups-1.1.22-0.rc1.8.8.x86_64.rpm
53198315aced0b36d52491d31de5e1f4 x86_64/cups-devel-1.1.22-0.rc1.8.8.x86_64.rpm
da3600023cfad0b051c749fa6e5603c4 x86_64/cups-libs-1.1.22-0.rc1.8.8.x86_64.rpm
ca9d1ffaa7570cb5d280afceb7b16206 x86_64/debug/cups-debuginfo-1.1.22-0.rc1.8.8.x86_64.rpm
d89aa606c5ac6dffd386191e1951df62 x86_64/cups-libs-1.1.22-0.rc1.8.8.i386.rpm
0583c561e2982ec7b99490907ed9e1dd i386/cups-1.1.22-0.rc1.8.8.i386.rpm
778d7e73a2ea359ad22ee5e500e9c6ea i386/cups-devel-1.1.22-0.rc1.8.8.i386.rpm
d89aa606c5ac6dffd386191e1951df62 i386/cups-libs-1.1.22-0.rc1.8.8.i386.rpm
d4882235801d05997d7be73d68ceadf2 i386/debug/cups-debuginfo-1.1.22-0.rc1.8.8.i386.rpm
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/4/
9f3241cdce65e2288063b004191d821f SRPMS/cups-1.1.23-15.2.src.rpm
b33b2065777807135ac0ee1163eee9dd ppc/cups-1.1.23-15.2.ppc.rpm
a1ad26b33f6ef8cd069d68a60965e420 ppc/cups-devel-1.1.23-15.2.ppc.rpm
baf953d87f7cae2351eebd4d84b51444 ppc/cups-libs-1.1.23-15.2.ppc.rpm
1a65b0e24de0a644463359b37828fc12 ppc/cups-lpd-1.1.23-15.2.ppc.rpm
adfeb798565f8b20161d3fc07d4d5ef8 ppc/debug/cups-debuginfo-1.1.23-15.2.ppc.rpm
4d37438acd0ba2d32debeb809b6cfa33 ppc/cups-libs-1.1.23-15.2.ppc64.rpm
afff8a06dc61ada2e1f557092b66706f x86_64/cups-1.1.23-15.2.x86_64.rpm
6ffc5a90953dbc600c5084a5a0c8ddf6 x86_64/cups-devel-1.1.23-15.2.x86_64.rpm
162ab3be0438376eb297dc616075be4b x86_64/cups-libs-1.1.23-15.2.x86_64.rpm
5debbf5530f0d3477b7ec56d4afd9163 x86_64/cups-lpd-1.1.23-15.2.x86_64.rpm
5a95f3142fcad950b4e1e7e584ef3381 x86_64/debug/cups-debuginfo-1.1.23-15.2.x86_64.rpm
180a0b4aa1378eab8ec521cb7bffb117 x86_64/cups-libs-1.1.23-15.2.i386.rpm
6c5206ca5b15d704bd6dd293c5b845ba i386/cups-1.1.23-15.2.i386.rpm
2f67ff6fe00c03c4113a83f19af7be19 i386/cups-devel-1.1.23-15.2.i386.rpm
180a0b4aa1378eab8ec521cb7bffb117 i386/cups-libs-1.1.23-15.2.i386.rpm
a25f210965cfd37b9a0819676bb98544 i386/cups-lpd-1.1.23-15.2.i386.rpm
4c09fe61e0419073f8b4014b06541cb5 i386/debug/cups-debuginfo-1.1.23-15.2.i386.rpm

References

http://www.vupen.com/english/advisories/2005/2911
http://www.frsirt.com/english/reference/2465
http://www.frsirt.com/english/reference/2466

ChangeLog

2005-12-15 : Initial release

Vulnerability Management

Subscribe to VUPEN VNS and receive real-time e-mail and SMS alerts when new advisories or patches relevant to your systems and network configurations are available.

Feedback

If you have additional information or corrections for this security advisory please submit them via our contact form.

 

Vulnerability Alerting

Free 14-Day Trial

 
  Latest News

 

  >> 2009-06-10

     

  VUPEN Security Research
  Discovered Critical Flaws
  in Adobe Acrobat and MS

  Office Word


  >> 2009-06-02

     

  VUPEN Security Research
  Discovered Critical Flaws
  in ACDSee Products


  >> 2009-05-22

     

  VUPEN Discovered Two
  Critical Vulnerabilities in
  Novell GroupWise 8 / 7


  >> 2009-05-12

     

  Microsoft Patched 14
  Office PowerPoint Flaws

 

  >> 2009-04-28

     

  Adobe Reader / Acrobat
  Vulnerabilities
Disclosed

 

 

More Informations    
    








Copyright 2003-2009 © VUPEN.COM - Privacy Policy