Release Info

Advisory: CLSA-2023:1689009273

OS: Ubuntu 16.04 ELS

Public date: 2023-07-10 13:14:35

Project: cups

Version: 2.1.3-4ubuntu0.11+tuxcare.els2

Errata link: https://errata.cloudlinux.com/ubuntu16-els/CLSA-2023-1689009273.html

Changelog

* SECURITY UPDATE: a heap buffer overflow vulnerability - debian/patches/CVE-2023-32324.patch: fix _cups_strlcpy() to exit immideately if a length of the source string is zero - CVE-2023-32324

Update

Update command: apt-get update apt-get --only-upgrade install cups*

Packages list

cups_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb cups-bsd_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb cups-client_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb cups-common_2.1.3-4ubuntu0.11+tuxcare.els2_all.deb cups-core-drivers_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb cups-daemon_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb cups-ipp-utils_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb cups-ppdc_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb cups-server-common_2.1.3-4ubuntu0.11+tuxcare.els2_all.deb libcups2_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb libcups2-dev_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb libcupscgi1_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb libcupscgi1-dev_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb libcupsimage2_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb libcupsimage2-dev_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb libcupsmime1_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb libcupsmime1-dev_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb libcupsppdc1_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb libcupsppdc1-dev_2.1.3-4ubuntu0.11+tuxcare.els2_amd64.deb

CVEs

CVE-2023-32324