CESA-2008:0498 Moderate CentOS 3 s390(x) cups - security update  

Posted by Daniela Mehler

CentOS Errata and Security Advisory 2008:0498

https://rhn.redhat.com/errata/RHSA-2008-0498.html

The following updated files have been uploaded and are currently syncing to the mirrors:

s390:
updates/s390/RPMS/cups-1.1.17-13.3.53.s390.rpm
updates/s390/RPMS/cups-devel-1.1.17-13.3.53.s390.rpm
updates/s390/RPMS/cups-libs-1.1.17-13.3.53.s390.rpm

s390x:
updates/s390x/RPMS/cups-1.1.17-13.3.53.s390x.rpm
updates/s390x/RPMS/cups-devel-1.1.17-13.3.53.s390x.rpm
updates/s390x/RPMS/cups-libs-1.1.17-13.3.53.s390x.rpm


--

Pasi Pirhonen - upi@iki.fi - http://pasi.pirhonen.eu/
Top-postings silently ignored

--0qt3EE9wi45a2ZFX
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: Digital signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)

iD8DBQFIRrvFcEnkTQJeUTsRAoN8AJ93N1q8ZL0sxc9K7UDnois07p1UrgCfUQZ/
yXqEoRuFXABVsX/uJ8GTlkw
=6gQK
-----END PGP SIGNATURE-----

--0qt3EE9wi45a2ZFX--

--===============0180081274=
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
CentOS-announce mailing list
CentOS-announce@centos.org
http://lists.centos.org/mailman/listinfo/centos-announce

--===============0180081274==--



CESA-2008:0498 Moderate CentOS 3 x86_64 cups - security update

CESA-2008:0498 Moderate CentOS 3 i386 cups - security update  

Posted by Daniela Mehler

CentOS Errata and Security Advisory CESA-2008:0498

cups security update for CentOS 3 i386:
https://rhn.redhat.com/errata/RHSA-2008-0498.html

The following updated file has been uploaded and is currently syncing to the mirrors:

i386:
updates/i386/RPMS/cups-1.1.17-13.3.53.i386.rpm
updates/i386/RPMS/cups-devel-1.1.17-13.3.53.i386.rpm
updates/i386/RPMS/cups-libs-1.1.17-13.3.53.i386.rpm

source:
updates/SRPMS/cups-1.1.17-13.3.53.src.rpm

You may update your CentOS-3 i386 installations by running the command:

yum update cups


CESA-2008:0516 Critical CentOS 3 i386 evolution - security update
CESA-2008:0498 Moderate CentOS 3 x86_64 cups - security update

Linux macro benchmark tool stabilizes  

Posted by Daniela Mehler

Linux macro benchmark tool stabilizes

A software tool aimed at helping users administer macro benchmarks like kernel compile time tests has achieved its first stable release. Version 1.0 of the Phoronix test suite can download and compile various well-known open source packages, or users' own software, generating detailed XML/HTML reports.


Phoronix aims to help hobbyists, hardware vendors, and software vendors measure system performance, the project says. A command-line tool written partly in the PHP5 scripting language, it is available as source code, or in a deb package. It depends on libt1-5, php5-common, php5-gd, php5-cli, and libgd2-xpm. The software is released under the GPLv3, although not all available tests use that license. Commercial support for the tools is available from Phoronix Media.

The phoronix-test-suite is extensible, meaning that users can write test profiles for their own applications, following a well-documented XML schema. Alternatively, they can use the framework with dozens of included tests, most aimed at measuring how long applications like apache, mplayer, and the Linux kernel take to compile.

Linux macro benchmark tool stabilizes


Phoronix test suite report
(Click to enlarge)

Once tests have been run, the software generates a detailed report in XML format. The report can be viewed in a web browser. Results from multiple iterations are graphed. Additionally, a "PTS Global" online component lets users share and compare results online.

Additional touted features include:57 test profiles
23 test suites
Automatic detection of installed hardware and software
Support for housing multiple tests within a test suite
Automatic installation of tests
Support for running tests in batch mode
Unified system (thermal, fan speed, voltage) monitoring while tests are running
Automatic control of ambient services such as power management and screensaver
Side-by-side results comparison viewer
Integrated visual graphing support of test results
Online results repository via PTS Global
Test profiles compatible across Linux distributions, architecturesMichael Larabel, project founder and lead developer, stated, "The Suite [provides] a platform for conducting tests in an autonomous, reproducible, and standardized environment."

Andrew Scholfield, contributing developer, stated, "The Suite makes it easy to create complex testing configurations and still have the results presented in a readable and understandable fashion."

A biologist by trade, Scholfield adds, "Even a relatively simple molecular dynamics simulation can take a whole day of CPU time to only produce a couple nanoseconds of the simulation. The Phoronix Test Suite should be able to offer insight into what machine configurations perform the best at different tasks."

Carla Schroder, author of the Linux Cookbook and Linux Networking Cookbook, stated, "[The Suite] has an especially interesting and useful feature that I believe is unique: a public repository for sharing and comparing test results, and replicating tests performed by other users."

Availability

The Phoronix Test Suite 1.0 can be downloaded at here. The next major release is planned for the fourth quarter. Commercial support for the suite is available from Larabel's venture, Phoronix Media.


Ubuntu 8.04 LTS vs. Windows XP SP3: Application Performance Benchmark

CESA-2008:0498 Moderate CentOS 3 x86_64 cups - security update  

Posted by Daniela Mehler

CentOS Errata and Security Advisory CESA-2008:0498

cups security update for CentOS 3 x86_64:
https://rhn.redhat.com/errata/RHSA-2008-0498.html

The following updated file has been uploaded and is currently syncing to the mirrors:

x86_64:
updates/x86_64/RPMS/cups-1.1.17-13.3.53.x86_64.rpm
updates/x86_64/RPMS/cups-devel-1.1.17-13.3.53.x86_64.rpm
updates/x86_64/RPMS/cups-libs-1.1.17-13.3.53.i386.rpm
updates/x86_64/RPMS/cups-libs-1.1.17-13.3.53.x86_64.rpm

source:
updates/SRPMS/cups-1.1.17-13.3.53.src.rpm

You may update your CentOS-3 x86_64 installations by running the command:

yum update cups


RHSA-2008:0498-01 Moderate: cups security update
CESA-2008:0288 Critical CentOS 3 x86_64 samba - security update

CESA-2008:0516 Critical CentOS 3 i386 evolution - security update  

Posted by Daniela Mehler

CentOS Errata and Security Advisory CESA-2008:0516

evolution security update for CentOS 3 i386:
https://rhn.redhat.com/errata/RHSA-2008-0516.html

The following updated file has been uploaded and is currently syncing to the mirrors:

i386:
updates/i386/RPMS/evolution-1.4.5-22.el3.i386.rpm
updates/i386/RPMS/evolution-devel-1.4.5-22.el3.i386.rpm

source:
updates/SRPMS/evolution-1.4.5-22.el3.src.rpm

You may update your CentOS-3 i386 installations by running the command:

yum update evolution


CESA-2008:0288 Critical CentOS 3 x86_64 samba - security update

GLSA 200806-02 libxslt: Execution of arbitrary code  

Posted by Daniela Mehler

A new security update has been released for Gentoo Linux - libxslt: Execution of arbitrary code. Here the announcement:
"Gentoo Linux Security Advisory GLSA 200806-02
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
http://security.gentoo.org/
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -

Severity: Normal
Title: libxslt: Execution of arbitrary code
Date: June 03, 2008
Bugs: #222499
ID: 200806-02

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -

Synopsis
========

A vulnerability was found in libxslt, possibly resulting in the
execution of arbitrary code and Denial of Service.

Background
==========

Libxslt is the XSLT C library developed for the GNOME project. XSLT
itself is an XML language to define transformations for XML.

Affected packages
=================

-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 dev-libs/libxslt < 1.1.24 >= 1.1.24

Description
===========

Anthony de Almeida Lopes reported a vulnerability in libxslt when
handling XSL style-sheet files, which could be exploited to trigger the
use of uninitialized memory, e.g. in a call to "free()".

Impact
======

A remote attacker could entice a user or automated system to process an
XML file using a specially crafted XSL transformation file, possibly
resulting in the execution of arbitrary code or a Denial of Service.

Workaround
==========

There is no known workaround at this time.

Resolution
==========

All libxslt users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose ">=dev-libs/libxslt-1.1.24"

References
==========

[ 1 ] CVE-2008-1767
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1767

Availability
============

This GLSA and any updates to it are available for viewing at
the Gentoo Security Website:

http://security.gentoo.org/glsa/glsa-200806-02.xml

Concerns?
=========

Security is a primary focus of Gentoo Linux and ensuring the
confidentiality and security of our users machines is of utmost
importance to us. Any security concerns should be addressed to
security@gentoo.org or alternatively, you may file a bug at
http://bugs.gentoo.org.

License
=======

Copyright 2008 Gentoo Foundation, Inc; referenced text
belongs to its owner(s).

The contents of this document are licensed under the
Creative Commons - Attribution / Share Alike license.

http://creativecommons.org/licenses/by-sa/2.5
"


GLSA 200805-22 MPlayer: User-assisted execution of arbitrary code
GLSA 200805-17 Perl: Execution of arbitrary code

RHSA-2008:0498-01 Moderate: cups security update  

Posted by Daniela Mehler

A new update is available for Red Hat Enterprise Linux. Here the announcement:
"-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

=====================================================================
Red Hat Security Advisory

Synopsis: Moderate: cups security update
Advisory ID: RHSA-2008:0498-01
Product: Red Hat Enterprise Linux
Advisory URL: https://rhn.redhat.com/errata/RHSA-2008-0498.html
Issue date: 2008-06-04
CVE Names: CVE-2008-1722
=====================================================================

1. Summary:

Updated cups packages that fix a security issue are now available for Red
Hat Enterprise Linux 3, Red Hat Enterprise Linux 4, and Red Hat Enterprise
Linux 5.

This update has been rated as having moderate security impact by the Red
Hat Security Response Team.

2. Relevant releases/architectures:

Red Hat Enterprise Linux AS version 3 - i386, ia64, ppc, s390, s390x, x86_64
Red Hat Desktop version 3 - i386, x86_64
Red Hat Enterprise Linux ES version 3 - i386, ia64, x86_64
Red Hat Enterprise Linux WS version 3 - i386, ia64, x86_64
Red Hat Enterprise Linux AS version 4 - i386, ia64, ppc, s390, s390x, x86_64
Red Hat Enterprise Linux Desktop version 4 - i386, x86_64
Red Hat Enterprise Linux ES version 4 - i386, ia64, x86_64
Red Hat Enterprise Linux WS version 4 - i386, ia64, x86_64
Red Hat Enterprise Linux Desktop (v. 5 client) - i386, x86_64
RHEL Desktop Workstation (v. 5 client) - i386, x86_64
Red Hat Enterprise Linux (v. 5 server) - i386, ia64, ppc, s390x, x86_64

3. Description:

The Common UNIX Printing System (CUPS) provides a portable printing layer
for UNIX operating systems.

An integer overflow flaw leading to a heap buffer overflow was discovered
in the Portable Network Graphics (PNG) decoding routines used by the CUPS
image converting filters "imagetops" and "imagetoraster". An attacker could
create a malicious PNG file that could possibly execute arbitrary code as
the "lp" user if the file was printed. (CVE-2008-1722)

All CUPS users are advised to upgrade to these updated packages, which
contain backported patch to resolve this issue.

4. Solution:

Before applying this update, make sure that all previously-released
errata relevant to your system have been applied.

This update is available via Red Hat Network. Details on how to use
the Red Hat Network to apply this update are available at
http://kbase.redhat.com/faq/FAQ_58_10188

5. Bugs fixed (http://bugzilla.redhat.com/):

441692 - CVE-2008-1722 cups: integer overflow in the image filter

6. Package List:

Red Hat Enterprise Linux AS version 3:

Source:
ftp://updates.redhat.com/enterprise/3AS/en/os/SRPMS/cups-1.1.17-13.3.53.src.rpm

i386:
cups-1.1.17-13.3.53.i386.rpm
cups-debuginfo-1.1.17-13.3.53.i386.rpm
cups-devel-1.1.17-13.3.53.i386.rpm
cups-libs-1.1.17-13.3.53.i386.rpm

ia64:
cups-1.1.17-13.3.53.ia64.rpm
cups-debuginfo-1.1.17-13.3.53.i386.rpm
cups-debuginfo-1.1.17-13.3.53.ia64.rpm
cups-devel-1.1.17-13.3.53.ia64.rpm
cups-libs-1.1.17-13.3.53.i386.rpm
cups-libs-1.1.17-13.3.53.ia64.rpm

ppc:
cups-1.1.17-13.3.53.ppc.rpm
cups-debuginfo-1.1.17-13.3.53.ppc.rpm
cups-debuginfo-1.1.17-13.3.53.ppc64.rpm
cups-devel-1.1.17-13.3.53.ppc.rpm
cups-libs-1.1.17-13.3.53.ppc.rpm
cups-libs-1.1.17-13.3.53.ppc64.rpm

s390:
cups-1.1.17-13.3.53.s390.rpm
cups-debuginfo-1.1.17-13.3.53.s390.rpm
cups-devel-1.1.17-13.3.53.s390.rpm
cups-libs-1.1.17-13.3.53.s390.rpm

s390x:
cups-1.1.17-13.3.53.s390x.rpm
cups-debuginfo-1.1.17-13.3.53.s390.rpm
cups-debuginfo-1.1.17-13.3.53.s390x.rpm
cups-devel-1.1.17-13.3.53.s390x.rpm
cups-libs-1.1.17-13.3.53.s390.rpm
cups-libs-1.1.17-13.3.53.s390x.rpm

x86_64:
cups-1.1.17-13.3.53.x86_64.rpm
cups-debuginfo-1.1.17-13.3.53.i386.rpm
cups-debuginfo-1.1.17-13.3.53.x86_64.rpm
cups-devel-1.1.17-13.3.53.x86_64.rpm
cups-libs-1.1.17-13.3.53.i386.rpm
cups-libs-1.1.17-13.3.53.x86_64.rpm

Red Hat Desktop version 3:

Source:
ftp://updates.redhat.com/enterprise/3desktop/en/os/SRPMS/cups-1.1.17-13.3.53.src.rpm

i386:
cups-1.1.17-13.3.53.i386.rpm
cups-debuginfo-1.1.17-13.3.53.i386.rpm
cups-devel-1.1.17-13.3.53.i386.rpm
cups-libs-1.1.17-13.3.53.i386.rpm

x86_64:
cups-1.1.17-13.3.53.x86_64.rpm
cups-debuginfo-1.1.17-13.3.53.i386.rpm
cups-debuginfo-1.1.17-13.3.53.x86_64.rpm
cups-devel-1.1.17-13.3.53.x86_64.rpm
cups-libs-1.1.17-13.3.53.i386.rpm
cups-libs-1.1.17-13.3.53.x86_64.rpm

Red Hat Enterprise Linux ES version 3:

Source:
ftp://updates.redhat.com/enterprise/3ES/en/os/SRPMS/cups-1.1.17-13.3.53.src.rpm

i386:
cups-1.1.17-13.3.53.i386.rpm
cups-debuginfo-1.1.17-13.3.53.i386.rpm
cups-devel-1.1.17-13.3.53.i386.rpm
cups-libs-1.1.17-13.3.53.i386.rpm

ia64:
cups-1.1.17-13.3.53.ia64.rpm
cups-debuginfo-1.1.17-13.3.53.i386.rpm
cups-debuginfo-1.1.17-13.3.53.ia64.rpm
cups-devel-1.1.17-13.3.53.ia64.rpm
cups-libs-1.1.17-13.3.53.i386.rpm
cups-libs-1.1.17-13.3.53.ia64.rpm

x86_64:
cups-1.1.17-13.3.53.x86_64.rpm
cups-debuginfo-1.1.17-13.3.53.i386.rpm
cups-debuginfo-1.1.17-13.3.53.x86_64.rpm
cups-devel-1.1.17-13.3.53.x86_64.rpm
cups-libs-1.1.17-13.3.53.i386.rpm
cups-libs-1.1.17-13.3.53.x86_64.rpm

Red Hat Enterprise Linux WS version 3:

Source:
ftp://updates.redhat.com/enterprise/3WS/en/os/SRPMS/cups-1.1.17-13.3.53.src.rpm

i386:
cups-1.1.17-13.3.53.i386.rpm
cups-debuginfo-1.1.17-13.3.53.i386.rpm
cups-devel-1.1.17-13.3.53.i386.rpm
cups-libs-1.1.17-13.3.53.i386.rpm

ia64:
cups-1.1.17-13.3.53.ia64.rpm
cups-debuginfo-1.1.17-13.3.53.i386.rpm
cups-debuginfo-1.1.17-13.3.53.ia64.rpm
cups-devel-1.1.17-13.3.53.ia64.rpm
cups-libs-1.1.17-13.3.53.i386.rpm
cups-libs-1.1.17-13.3.53.ia64.rpm

x86_64:
cups-1.1.17-13.3.53.x86_64.rpm
cups-debuginfo-1.1.17-13.3.53.i386.rpm
cups-debuginfo-1.1.17-13.3.53.x86_64.rpm
cups-devel-1.1.17-13.3.53.x86_64.rpm
cups-libs-1.1.17-13.3.53.i386.rpm
cups-libs-1.1.17-13.3.53.x86_64.rpm

Red Hat Enterprise Linux AS version 4:

Source:
ftp://updates.redhat.com/enterprise/4AS/en/os/SRPMS/cups-1.1.22-0.rc1.9.20.2.el4_6.8.src.rpm

i386:
cups-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-devel-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm

ia64:
cups-1.1.22-0.rc1.9.20.2.el4_6.8.ia64.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.ia64.rpm
cups-devel-1.1.22-0.rc1.9.20.2.el4_6.8.ia64.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.ia64.rpm

ppc:
cups-1.1.22-0.rc1.9.20.2.el4_6.8.ppc.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.ppc.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.ppc64.rpm
cups-devel-1.1.22-0.rc1.9.20.2.el4_6.8.ppc.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.ppc.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.ppc64.rpm

s390:
cups-1.1.22-0.rc1.9.20.2.el4_6.8.s390.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.s390.rpm
cups-devel-1.1.22-0.rc1.9.20.2.el4_6.8.s390.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.s390.rpm

s390x:
cups-1.1.22-0.rc1.9.20.2.el4_6.8.s390x.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.s390.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.s390x.rpm
cups-devel-1.1.22-0.rc1.9.20.2.el4_6.8.s390x.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.s390.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.s390x.rpm

x86_64:
cups-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm
cups-devel-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm

Red Hat Enterprise Linux Desktop version 4:

Source:
ftp://updates.redhat.com/enterprise/4Desktop/en/os/SRPMS/cups-1.1.22-0.rc1.9.20.2.el4_6.8.src.rpm

i386:
cups-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-devel-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm

x86_64:
cups-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm
cups-devel-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm

Red Hat Enterprise Linux ES version 4:

Source:
ftp://updates.redhat.com/enterprise/4ES/en/os/SRPMS/cups-1.1.22-0.rc1.9.20.2.el4_6.8.src.rpm

i386:
cups-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-devel-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm

ia64:
cups-1.1.22-0.rc1.9.20.2.el4_6.8.ia64.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.ia64.rpm
cups-devel-1.1.22-0.rc1.9.20.2.el4_6.8.ia64.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.ia64.rpm

x86_64:
cups-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm
cups-devel-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm

Red Hat Enterprise Linux WS version 4:

Source:
ftp://updates.redhat.com/enterprise/4WS/en/os/SRPMS/cups-1.1.22-0.rc1.9.20.2.el4_6.8.src.rpm

i386:
cups-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-devel-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm

ia64:
cups-1.1.22-0.rc1.9.20.2.el4_6.8.ia64.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.ia64.rpm
cups-devel-1.1.22-0.rc1.9.20.2.el4_6.8.ia64.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.ia64.rpm

x86_64:
cups-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-debuginfo-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm
cups-devel-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.i386.rpm
cups-libs-1.1.22-0.rc1.9.20.2.el4_6.8.x86_64.rpm

Red Hat Enterprise Linux Desktop (v. 5 client):

Source:
ftp://ftp.redhat.com/pub/redhat/linux/enterprise/5Client/en/os/SRPMS/cups-1.2.4-11.18.el5_2.1.src.rpm

i386:
cups-1.2.4-11.18.el5_2.1.i386.rpm
cups-debuginfo-1.2.4-11.18.el5_2.1.i386.rpm
cups-libs-1.2.4-11.18.el5_2.1.i386.rpm
cups-lpd-1.2.4-11.18.el5_2.1.i386.rpm

x86_64:
cups-1.2.4-11.18.el5_2.1.x86_64.rpm
cups-debuginfo-1.2.4-11.18.el5_2.1.i386.rpm
cups-debuginfo-1.2.4-11.18.el5_2.1.x86_64.rpm
cups-libs-1.2.4-11.18.el5_2.1.i386.rpm
cups-libs-1.2.4-11.18.el5_2.1.x86_64.rpm
cups-lpd-1.2.4-11.18.el5_2.1.x86_64.rpm

RHEL Desktop Workstation (v. 5 client):

Source:
ftp://ftp.redhat.com/pub/redhat/linux/enterprise/5Client/en/os/SRPMS/cups-1.2.4-11.18.el5_2.1.src.rpm

i386:
cups-debuginfo-1.2.4-11.18.el5_2.1.i386.rpm
cups-devel-1.2.4-11.18.el5_2.1.i386.rpm

x86_64:
cups-debuginfo-1.2.4-11.18.el5_2.1.i386.rpm
cups-debuginfo-1.2.4-11.18.el5_2.1.x86_64.rpm
cups-devel-1.2.4-11.18.el5_2.1.i386.rpm
cups-devel-1.2.4-11.18.el5_2.1.x86_64.rpm

Red Hat Enterprise Linux (v. 5 server):

Source:
ftp://ftp.redhat.com/pub/redhat/linux/enterprise/5Server/en/os/SRPMS/cups-1.2.4-11.18.el5_2.1.src.rpm

i386:
cups-1.2.4-11.18.el5_2.1.i386.rpm
cups-debuginfo-1.2.4-11.18.el5_2.1.i386.rpm
cups-devel-1.2.4-11.18.el5_2.1.i386.rpm
cups-libs-1.2.4-11.18.el5_2.1.i386.rpm
cups-lpd-1.2.4-11.18.el5_2.1.i386.rpm

ia64:
cups-1.2.4-11.18.el5_2.1.ia64.rpm
cups-debuginfo-1.2.4-11.18.el5_2.1.i386.rpm
cups-debuginfo-1.2.4-11.18.el5_2.1.ia64.rpm
cups-devel-1.2.4-11.18.el5_2.1.ia64.rpm
cups-libs-1.2.4-11.18.el5_2.1.i386.rpm
cups-libs-1.2.4-11.18.el5_2.1.ia64.rpm
cups-lpd-1.2.4-11.18.el5_2.1.ia64.rpm

ppc:
cups-1.2.4-11.18.el5_2.1.ppc.rpm
cups-debuginfo-1.2.4-11.18.el5_2.1.ppc.rpm
cups-debuginfo-1.2.4-11.18.el5_2.1.ppc64.rpm
cups-devel-1.2.4-11.18.el5_2.1.ppc.rpm
cups-devel-1.2.4-11.18.el5_2.1.ppc64.rpm
cups-libs-1.2.4-11.18.el5_2.1.ppc.rpm
cups-libs-1.2.4-11.18.el5_2.1.ppc64.rpm
cups-lpd-1.2.4-11.18.el5_2.1.ppc.rpm

s390x:
cups-1.2.4-11.18.el5_2.1.s390x.rpm
cups-debuginfo-1.2.4-11.18.el5_2.1.s390.rpm
cups-debuginfo-1.2.4-11.18.el5_2.1.s390x.rpm
cups-devel-1.2.4-11.18.el5_2.1.s390.rpm
cups-devel-1.2.4-11.18.el5_2.1.s390x.rpm
cups-libs-1.2.4-11.18.el5_2.1.s390.rpm
cups-libs-1.2.4-11.18.el5_2.1.s390x.rpm
cups-lpd-1.2.4-11.18.el5_2.1.s390x.rpm

x86_64:
cups-1.2.4-11.18.el5_2.1.x86_64.rpm
cups-debuginfo-1.2.4-11.18.el5_2.1.i386.rpm
cups-debuginfo-1.2.4-11.18.el5_2.1.x86_64.rpm
cups-devel-1.2.4-11.18.el5_2.1.i386.rpm
cups-devel-1.2.4-11.18.el5_2.1.x86_64.rpm
cups-libs-1.2.4-11.18.el5_2.1.i386.rpm
cups-libs-1.2.4-11.18.el5_2.1.x86_64.rpm
cups-lpd-1.2.4-11.18.el5_2.1.x86_64.rpm

These packages are GPG signed by Red Hat for security. Our key and
details on how to verify the signature are available from
https://www.redhat.com/security/team/key/#package

7. References:

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1722
http://www.redhat.com/security/updates/classification/#moderate

8. Contact:

The Red Hat security contact is . More contact
details at https://www.redhat.com/security/team/contact/

Copyright 2008 Red Hat, Inc.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.4 (GNU/Linux)

iD8DBQFIRq2/XlSAg2UNWIIRAsyBAKCwEzXA65eLSfgjLH/6m83ZxU8biACfZAXl
8kpCCrBL1HmnRc7GuaBu+TI=
=U0Oy
-----END PGP SIGNATURE-----
"


RHSA-2008:0288-01 Critical: samba security update
RHSA-2008:0270-01 Important: libvorbis security update