lp://staging/~ubuntu-core-dev/cups/lucid

Created by Martin Pitt and last modified
Get this branch:
bzr branch lp://staging/~ubuntu-core-dev/cups/lucid
Members of Ubuntu Core Development Team can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu Core Development Team
Project:
CUPS
Status:
Development

Recent revisions

863. By Martin Pitt

debian/control: Update Vcs-Bzr: for lucid branch.

862. By Martin Pitt

releasing version 1.4.3-1ubuntu1.2

861. By Martin Pitt

* SECURITY UPDATE: cross-site request forgery in admin interface
  - debian/patches/CVE-2010-0540.dpatch: add unpredictable session token
    to cgi-bin/cgi.h, cgi-bin/libcupscgi.exp, cgi-bin/template.c,
    cgi-bin/var.c, templates/*.tmpl.
  - CVE-2010-0540
* SECURITY UPDATE: denial of service or arbitrary code execution in
  texttops image filter
  - debian/patches/CVE-2010-0542.dpatch: make sure calloc succeeded in
    filter/texttops.c.
  - CVE-2010-0542
* SECURITY UPDATE: web interface memory disclosure
  - debian/patches/CVE-2010-1748.dpatch: validate data in cgi-bin/var.c.
  - CVE-2010-1748
* SECURITY UPDATE: file overwrite vulnerability
  - debian/patches/security-str3510.dpatch: introduce cups_open() in
    cups/file.c and use to make sure hard-linked or symlinked files don't
    get overwritten as root.
  - No CVE number
* debian/libcupscgi1.symbols: Add new symbols

860. By Martin Pitt

releasing version 1.4.3-1ubuntu1

859. By Martin Pitt

* debian/filters/pstopdf: Fixed the problem of the UseCIEColor warning of
  Ghostscript correctly. The file format converter should not do any kind
  of color correction but simply pass the colors through (LP: #578181).
* debian/patches/cups-deviced-allow-device-ids-with-newline.dpatch: Some
  printers have broken device IDs with newline characters inside. These
  break the cups-deviced printer discovery mechanism and so the printers
  get ignored. This patch allows newline characters in device IDs
  (LP: #468701).

858. By Martin Pitt

releasing version 1.4.3-1

857. By Martin Pitt

* New upstream bug fix release. See http://www.cups.org/articles.php?L594
  for details.
* Drop CVE-2010-0393.dpatch, upstream now.
* Update usb-backend-both-usblp-and-libusb.dpatch for new version.

856. By Martin Pitt

select_use_after_free.dpatch: Add additional fix by Tim Waugh and Vincent
Danen for CVE-2010-0302, and update tag header. (Closes: #572940)

855. By Till Kampeter <till@till>

debian/filters/pstopdf: Use "-dUseCIEColor" for the Ghostscript call in the
pstopdf filter, to eliminate the warning "Set UseCIEColor for
UseDeviceIndependentColor to work properly.".

854. By Till Kampeter <till@till>

  Thanks to Duncan Lock for finding and reporting the bug and Johann Felix
  Soden for creating the patch to fix it (LP: #544636).

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp://staging/cups
This branch contains Public information 
Everyone can see this information.