[Pkg-cups-devel] Bug#692791: members of lpadmin can read every file on server via cups

Marc Deslauriers marc.deslauriers at canonical.com
Tue Nov 27 14:30:46 UTC 2012


FYI, as a security fix for our stable releases in Ubuntu, we plan on
disabling cupsd.conf modification in the web interface entirely.
Attached is the patch we plan on using.

Marc.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: CVE-2012-5519.patch
Type: text/x-patch
Size: 3180 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-cups-devel/attachments/20121127/4c3602c3/attachment.bin>


More information about the Pkg-cups-devel mailing list