Linux Compatible
  • News
    • Channels
    • Archive
    • Search
    • Submit
  • Articles
    • Categories
  • Knowledgebase
  • Compatibility
    • Search
  • Links
  • Forums
  • Twitter
Advertisement

Latest News
[ Windows | Linux | Apple ]

· Daily Reviews Summary 02/09/12
· 3 Advanced Tips & Tricks For Using Windows Explorer
· MySQL 5.5.20 for Debian 6
· How to Install Screenlets for Desktop Widgets in Linux Mint 12
· Microsoft, Google, and Apple talk up "fair and reasonable" patent license fees
· Latest Windows 8 and Windows 8 Server build numbers revealed
· 3 CentOS Updates
· 3 RHEL Updates
· European Apple resellers say lack of inventory is putting them out of business
· Latest Windows 8 Consumer Preview build number: 8225?

Upcoming News
· Intel 520 Series Cherryville 240GB SSD Review @ HCW
· [CentOS-announce] CEBA-2012:0106 CentOS 5 selinux-policy Update
· Samsung NX 200 Review @ TechReviewSource.com
· OCZ RevoDrive 3 120GB SSD Review @ t-break
· OCZ Technology Octane 512GB Solid State Drive with 1.13 Performance Firmware
· Western Digital WD TV Live Media Player Review @ Bigbruin.com
· Hitachi Touro Desk Pro 3TB USB 3.0 External HDD Review @ Madshrimps
· Intel 520 Series 240GB (Raid 0 update) SSD Review
· Spire BlackDragon 400 W @ techPowerUp
· Windows 8 confirmed for February 29th (Beta Queue)

Linux Compatibility
· XPS L502X
· Slim Portable DVD Writer GP10
· AverTV Volar Green HD
· Dell Latitude E6420
· Canon CanoScan FB 636U
· Logitech QuickCam Pro 4000
· GeForce 7300 GT
· Umax Astra 4500 USB Scanner
· Photosmart Pro B9180
· kingston DataTraveler DTI/16GB

New Forum Topics
· Sony Ericsson XPERIA Arc:320usd,Apple iPhone 4G 32GB--$280
by: fdgf
on: 2012-02-09 16:03
0 replies, 0 views

· Directx
by: Rajoo
on: 2012-02-06 21:29
0 replies, 112 views

· Code: Bad EIP Value
by: megatouchguy
on: 2012-01-28 06:27
0 replies, 354 views

· XP Pro crashes on start up
by: javien
on: 2012-01-17 12:38
6 replies, 2029 views

· Lan Wireless Access To Shared Folders Problem
by: MinusZero
on: 2012-01-09 06:45
2 replies, 2212 views

News Channels
· Drivers
· Guides
· Reviews
· Security
· Software
· Press Release
· Updates
· Interviews
· Linux
· General
· Debian
· Red Hat
· Slackware
· Gentoo
· Mandriva
· White Box
· SUSE
· GNOME
· KDE
· CentOS
· Ubuntu
· MEPIS
· Android

What's New
Login to see an overview of all news stories since your last visit.

Welcome to our website

To take full advantage of all features you need to login or register. Registration is completely free and takes only a few seconds.

Linux Compatible » News » January 2009 » USN-708-1: HPLIP vulnerability

USN-708-1: HPLIP vulnerability

Posted by Bob on: 01/13/2009 09:55 PM [ Print | 0 comment(s) ]

A new HPLIP vulnerability update is available for Ubuntu Linux. Here the announcement:




Ubuntu Security Notice USN-708-1 January 13, 2009
hplip vulnerability
https://launchpad.net/bugs/191299
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D

A security issue affects the following Ubuntu releases:

Ubuntu 7.10

This advisory also applies to the corresponding versions of
Kubuntu, Edubuntu, and Xubuntu.

The problem can be corrected by upgrading your system to the
following package versions:

Ubuntu 7.10:
hplip 2.7.7.dfsg.1-0ubuntu5.3

In general, a standard system upgrade is sufficient to effect the
necessary changes.

Details follow:

It was discovered that an installation script in the HPLIP package would
change permissions on the hplip config files located in user's home directo=
ries.
A local user could exploit this and change permissions on arbitrary files
upon an HPLIP installation or upgrade, which could lead to root privileges.


Updated packages for Ubuntu 7.10:

Source archives:

http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip_2.7.7.dfsg.1-=
0ubuntu5.3.diff.gz
Size/MD5: 149462 e8b5cb18aff082738bfcfe069eb873f5
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip_2.7.7.dfsg.1-=
0ubuntu5.3.dsc
Size/MD5: 1064 531e707f0cbace5f1eb82039e409c306
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip_2.7.7.dfsg.1.=
orig.tar.gz
Size/MD5: 14361049 ae5165d46413db8119979f5b3345f7a5

Architecture independent packages:

http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip-data_2.7.7.df=
sg.1-0ubuntu5.3_all.deb
Size/MD5: 6898006 691895b0f8e5fc93bcb86d47d11da1af
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip-doc_2.7.7.dfs=
g.1-0ubuntu5.3_all.deb
Size/MD5: 4146918 d4e0b928aacc84bbe2a05862050a5963
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip-gui_2.7.7.dfs=
g.1-0ubuntu5.3_all.deb
Size/MD5: 117628 91f0c9d09f2520e76b3a3e6cde4abd63
http://security.ubuntu.com/ubuntu/pool/universe/h/hplip/hpijs-ppds_2.7.=
7+2.7.7.dfsg.1-0ubuntu5.3_all.deb
Size/MD5: 480134 59604754cef89d7b5ae128ecf20f44da

amd64 architecture (Athlon64, Opteron, EM64T Xeon):

http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hpijs_2.7.7+2.7.7.d=
fsg.1-0ubuntu5.3_amd64.deb
Size/MD5: 341576 918813fb4741326051c7480ffeae9a9a
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip-dbg_2.7.7.dfs=
g.1-0ubuntu5.3_amd64.deb
Size/MD5: 770122 ccef78fc8a55b4e94318931964e9e97b
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip_2.7.7.dfsg.1-=
0ubuntu5.3_amd64.deb
Size/MD5: 302856 f2a47e27a69aa016334a1ffdac105be1

i386 architecture (x86 compatible Intel/AMD):

http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hpijs_2.7.7+2.7.7.d=
fsg.1-0ubuntu5.3_i386.deb
Size/MD5: 334690 dd891b2df494fd1fbc46abd25b9ef7db
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip-dbg_2.7.7.dfs=
g.1-0ubuntu5.3_i386.deb
Size/MD5: 747250 4676694a4d20445e64f3f4dc91aaa44c
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip_2.7.7.dfsg.1-=
0ubuntu5.3_i386.deb
Size/MD5: 290282 921463222e2b642fb5bc16083d8b70ac

lpia architecture (Low Power Intel Architecture):

http://ports.ubuntu.com/pool/main/h/hplip/hpijs_2.7.7+2.7.7.dfsg.1-0ubu=
ntu5.3_lpia.deb
Size/MD5: 337798 9c060add246bb5212706b9dd0d92cc51
http://ports.ubuntu.com/pool/main/h/hplip/hplip-dbg_2.7.7.dfsg.1-0ubunt=
u5.3_lpia.deb
Size/MD5: 926096 af4481ea010212486ea621103329cf13
http://ports.ubuntu.com/pool/main/h/hplip/hplip_2.7.7.dfsg.1-0ubuntu5.3=
_lpia.deb
Size/MD5: 290082 f26b9fc31e3457719b3102b3a9c77b5b

powerpc architecture (Apple Macintosh G3/G4/G5):

http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hpijs_2.7.7+2.7.7.d=
fsg.1-0ubuntu5.3_powerpc.deb
Size/MD5: 348258 66f9714865cad898e10e98ef83f6e443
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip-dbg_2.7.7.dfs=
g.1-0ubuntu5.3_powerpc.deb
Size/MD5: 784504 0c76dac215474fc62900aea547168387
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip_2.7.7.dfsg.1-=
0ubuntu5.3_powerpc.deb
Size/MD5: 319006 52d13211d1681fe90b74951dc204a788

sparc architecture (Sun SPARC/UltraSPARC):

http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hpijs_2.7.7+2.7.7.d=
fsg.1-0ubuntu5.3_sparc.deb
Size/MD5: 332756 a3411ca114399f0359b949462e0313ab
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip-dbg_2.7.7.dfs=
g.1-0ubuntu5.3_sparc.deb
Size/MD5: 717210 401d1050417a9a8608198088abb9e305
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip_2.7.7.dfsg.1-=
0ubuntu5.3_sparc.deb
Size/MD5: 289370 f92c0c0f6a2f2ccef18d3874db728bf7



--=-CXh9fLe/CpQXpMIMbKne
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: This is a digitally signed message part

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)

iEYEABECAAYFAkls/o8ACgkQLMAs/0C4zNrcLgCghOdVf4DIVYQ/G4ERIDP2qJ2P
wKcAn05AE2q/x4yoir1sbwux1JtUtBmU
=8Pw+
-----END PGP SIGNATURE-----


Bookmark and Share

« Apple to replace 17-inch MacBook Pro batteries in stores · RHSA-2009:0016-01 Critical: java-1.5.0-ibm security update »

Linux Compatible » News » January 2009 » USN-708-1: HPLIP vulnerability
All products mentioned are registered trademarks or trademarks of their respective owners.
© 2002-2011 Esselbach Internet Solutions - All Rights Reserved. Terms and privacy policy
Powered by Contentteller® Business Edition