Linux Compatible
  • News
    • Channels
    • Archive
    • Search
    • Submit
  • Articles
    • Categories
  • Knowledgebase
  • Compatibility
    • Search
  • Links
  • Forums
  • Twitter
Advertisement

Latest News
[ Windows | Linux | Apple ]

· Ubuntu 13.04 on me high-end box - Horrible
· NVIDIA GeForce Chips Comparison Table and more
· CSF 6.09 released
· Microsoft and Google agree to build YouTube app for Windows Phone 8
· OS X 10.8.4 Build 12E55 Seeded to Developers
· Wine 1.5.31 released
· Libxvmc/Libx11 Updates for Debian
· OCZ Vertex 450 SSD Reviews and more
· Proxmox VE 3.0 released
· More Windows 8.1 features discovered in WinRT?

Upcoming News
· Appointee to the Fedora Board; election nominations closing imminently.
· Logitech k310 Washable Keyboard
· [Tech ARP] BIOS Option Of The Week - Hardware Prefetcher
· SuperTooth HD VOICE Bluetooth Speakerphone Review @ TestFreaks
· A Futurelooks News Flash - An Affordable Titan – N?= VIDIA’s GEFORCE GTX 780 Reviewed
· News: AMD's A4-5000 'Kabini' APU reviewed
· Wine release 1.5.31
· NVIDIA GeForce Chips Comparison Table @ Hardware Secrets
· Resident Evil Revelations Video Review with Kaeyi Dream @ HardwareHeaven.com
· [security-announce] openSUSE-SU-2013:0825-1: important: MozillaFirefox: update to version 21.0

Linux Compatibility
· Dell Dimension 9100
· CL-CAM50001 UPC=3700284609322
· DFE 520 TX
· nVidia GeForce4 MX 440
· Gore: Ultimate Soldier
· SMC2802W V2 wi-fi 54Mbps PCI card
· Wireless modem router N300
· Dell P780
· ASUS A7V8X
· BricsCAD for Linux

New Forum Topics
· shutdown link ?
by: estirwent
on: 2013-05-11 17:46
18 replies, 6521 views

· Laptop keyboard drank soda
by: Zenn
on: 2013-04-30 00:27
1 replies, 723 views

· connecting to to internet with ubuntu
by: Zenn
on: 2013-04-30 00:26
2 replies, 4611 views

· Need Linux-compatible PS/2 expansion card
by: Zenn
on: 2013-04-30 00:26
1 replies, 797 views

· irql_not_less_or_equal blue screen
by: Zenn
on: 2013-04-30 00:25
2 replies, 1177 views

News Channels
· Drivers
· Guides
· Reviews
· Security
· Software
· Press Release
· Updates
· Interviews
· Linux
· General
· Debian
· Red Hat
· Slackware
· Gentoo
· Mandriva
· White Box
· SUSE
· GNOME
· KDE
· CentOS
· Ubuntu
· MEPIS
· Android

What's New
Login to see an overview of all news stories since your last visit.

Welcome to our website

To take full advantage of all features you need to login or register. Registration is completely free and takes only a few seconds.

Linux Compatible » News » January 2009 » USN-708-1: HPLIP vulnerability

USN-708-1: HPLIP vulnerability

Posted by Bob on: 01/13/2009 09:55 PM [ Print | 0 comment(s) ]

A new HPLIP vulnerability update is available for Ubuntu Linux. Here the announcement:




Ubuntu Security Notice USN-708-1 January 13, 2009
hplip vulnerability
https://launchpad.net/bugs/191299
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D

A security issue affects the following Ubuntu releases:

Ubuntu 7.10

This advisory also applies to the corresponding versions of
Kubuntu, Edubuntu, and Xubuntu.

The problem can be corrected by upgrading your system to the
following package versions:

Ubuntu 7.10:
hplip 2.7.7.dfsg.1-0ubuntu5.3

In general, a standard system upgrade is sufficient to effect the
necessary changes.

Details follow:

It was discovered that an installation script in the HPLIP package would
change permissions on the hplip config files located in user's home directo=
ries.
A local user could exploit this and change permissions on arbitrary files
upon an HPLIP installation or upgrade, which could lead to root privileges.


Updated packages for Ubuntu 7.10:

Source archives:

http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip_2.7.7.dfsg.1-=
0ubuntu5.3.diff.gz
Size/MD5: 149462 e8b5cb18aff082738bfcfe069eb873f5
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip_2.7.7.dfsg.1-=
0ubuntu5.3.dsc
Size/MD5: 1064 531e707f0cbace5f1eb82039e409c306
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip_2.7.7.dfsg.1.=
orig.tar.gz
Size/MD5: 14361049 ae5165d46413db8119979f5b3345f7a5

Architecture independent packages:

http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip-data_2.7.7.df=
sg.1-0ubuntu5.3_all.deb
Size/MD5: 6898006 691895b0f8e5fc93bcb86d47d11da1af
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip-doc_2.7.7.dfs=
g.1-0ubuntu5.3_all.deb
Size/MD5: 4146918 d4e0b928aacc84bbe2a05862050a5963
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip-gui_2.7.7.dfs=
g.1-0ubuntu5.3_all.deb
Size/MD5: 117628 91f0c9d09f2520e76b3a3e6cde4abd63
http://security.ubuntu.com/ubuntu/pool/universe/h/hplip/hpijs-ppds_2.7.=
7+2.7.7.dfsg.1-0ubuntu5.3_all.deb
Size/MD5: 480134 59604754cef89d7b5ae128ecf20f44da

amd64 architecture (Athlon64, Opteron, EM64T Xeon):

http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hpijs_2.7.7+2.7.7.d=
fsg.1-0ubuntu5.3_amd64.deb
Size/MD5: 341576 918813fb4741326051c7480ffeae9a9a
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip-dbg_2.7.7.dfs=
g.1-0ubuntu5.3_amd64.deb
Size/MD5: 770122 ccef78fc8a55b4e94318931964e9e97b
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip_2.7.7.dfsg.1-=
0ubuntu5.3_amd64.deb
Size/MD5: 302856 f2a47e27a69aa016334a1ffdac105be1

i386 architecture (x86 compatible Intel/AMD):

http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hpijs_2.7.7+2.7.7.d=
fsg.1-0ubuntu5.3_i386.deb
Size/MD5: 334690 dd891b2df494fd1fbc46abd25b9ef7db
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip-dbg_2.7.7.dfs=
g.1-0ubuntu5.3_i386.deb
Size/MD5: 747250 4676694a4d20445e64f3f4dc91aaa44c
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip_2.7.7.dfsg.1-=
0ubuntu5.3_i386.deb
Size/MD5: 290282 921463222e2b642fb5bc16083d8b70ac

lpia architecture (Low Power Intel Architecture):

http://ports.ubuntu.com/pool/main/h/hplip/hpijs_2.7.7+2.7.7.dfsg.1-0ubu=
ntu5.3_lpia.deb
Size/MD5: 337798 9c060add246bb5212706b9dd0d92cc51
http://ports.ubuntu.com/pool/main/h/hplip/hplip-dbg_2.7.7.dfsg.1-0ubunt=
u5.3_lpia.deb
Size/MD5: 926096 af4481ea010212486ea621103329cf13
http://ports.ubuntu.com/pool/main/h/hplip/hplip_2.7.7.dfsg.1-0ubuntu5.3=
_lpia.deb
Size/MD5: 290082 f26b9fc31e3457719b3102b3a9c77b5b

powerpc architecture (Apple Macintosh G3/G4/G5):

http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hpijs_2.7.7+2.7.7.d=
fsg.1-0ubuntu5.3_powerpc.deb
Size/MD5: 348258 66f9714865cad898e10e98ef83f6e443
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip-dbg_2.7.7.dfs=
g.1-0ubuntu5.3_powerpc.deb
Size/MD5: 784504 0c76dac215474fc62900aea547168387
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip_2.7.7.dfsg.1-=
0ubuntu5.3_powerpc.deb
Size/MD5: 319006 52d13211d1681fe90b74951dc204a788

sparc architecture (Sun SPARC/UltraSPARC):

http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hpijs_2.7.7+2.7.7.d=
fsg.1-0ubuntu5.3_sparc.deb
Size/MD5: 332756 a3411ca114399f0359b949462e0313ab
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip-dbg_2.7.7.dfs=
g.1-0ubuntu5.3_sparc.deb
Size/MD5: 717210 401d1050417a9a8608198088abb9e305
http://security.ubuntu.com/ubuntu/pool/main/h/hplip/hplip_2.7.7.dfsg.1-=
0ubuntu5.3_sparc.deb
Size/MD5: 289370 f92c0c0f6a2f2ccef18d3874db728bf7



--=-CXh9fLe/CpQXpMIMbKne
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: This is a digitally signed message part

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)

iEYEABECAAYFAkls/o8ACgkQLMAs/0C4zNrcLgCghOdVf4DIVYQ/G4ERIDP2qJ2P
wKcAn05AE2q/x4yoir1sbwux1JtUtBmU
=8Pw+
-----END PGP SIGNATURE-----


Bookmark and Share

« Apple to replace 17-inch MacBook Pro batteries in stores · RHSA-2009:0016-01 Critical: java-1.5.0-ibm security update »

Linux Compatible » News » January 2009 » USN-708-1: HPLIP vulnerability
All products mentioned are registered trademarks or trademarks of their respective owners.
© 2002-2013 Esselbach Internet Solutions - All Rights Reserved. Terms and privacy policy
Powered by Contentteller® Business Edition