Oval Definition:oval:com.redhat.rhsa:def:20050772
Revision Date:2005-09-27Version:502
Title:RHSA-2005:772: cups security update (Moderate)
Description:The Common UNIX Printing System (CUPS) provides a portable printing layer for UNIX(R) operating systems.

A bug was found in the way CUPS processes malformed HTTP requests. It is possible for a remote user capable of connecting to the CUPS daemon to issue a malformed HTTP GET request that causes CUPS to enter an infinite loop. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2005-2874 to this issue.

Two small bugs have also been fixed in this update. A signal handling problem has been fixed that could occasionally cause the scheduler to stop when told to reload. A problem with tracking open file descriptors under certain specific circumstances has also been fixed.

All users of CUPS should upgrade to these erratum packages, which contain a patch to correct this issue.
Family:unixClass:patch
Status:Reference(s):CVE-2005-2874
RHSA-2005:772-01
Platform(s):Red Hat Enterprise Linux 4
Product(s):
Definition Synopsis
  • Red Hat Enterprise Linux 4 is installed
  • AND Package Information
  • cups-devel is earlier than 1:1.1.22-0.rc1.9.8
  • AND cups-devel is signed with Red Hat master key
  • OR
  • cups-libs is earlier than 1:1.1.22-0.rc1.9.8
  • AND cups-libs is signed with Red Hat master key
  • OR
  • cups is earlier than 1:1.1.22-0.rc1.9.8
  • AND cups is signed with Red Hat master key
  • BACK