Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 16 Nov 2004 19:18:59 +0000
From:      Josef El-Rayes <josef@FreeBSD.org>
To:        Michael Nottebrock <michaelnottebrock@gmx.net>, freebsd-ports@freebsd.org, Jonathan Weiss <tomonage2@gmx.de>, security@freebsd.org
Subject:   Re: Problem with cups/xpdf
Message-ID:  <20041116191859.GB29946@daemon.li>
In-Reply-To: <20041116190015.GA29946@daemon.li>
References:  <BDBFC2F5.1063A%tomonage2@gmx.de> <200411161512.38168.michaelnottebrock@gmx.net> <20041116190015.GA29946@daemon.li>

next in thread | previous in thread | raw e-mail | index | archive | help
This is a MIME-formatted message.  If you see this text it means that your
E-mail software does not support MIME-formatted messages.

--=_daemon.li-30148-1100632739-0001-2
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

Josef El-Rayes <josef@freebsd.org>:
> Michael Nottebrock <michaelnottebrock@gmx.net>:
> > > I am trying to upgrade my cups-port with an up-to-date ports-tree. It=
 fails
> > > because of the xpdf-vulnurability. But my xpdf-port is the most recen=
t one
> > > and I think that the vulnurability was handelt in this version (if I =
can
> > > believ the cvs-comment).
> > >
> > > =3D=3D=3D>  cups-base-1.1.22.0 has known vulnerabilities:
> > > >> xpdf -- integer overflow vulnerabilities.
> > >
> > >    Reference:
> > > <http://www.FreeBSD.org/ports/portaudit/ad2f3337-26bf-11d9-9289-000c4=
1e2cda
> > >d .html>
> >=20
> > The vuxml entry is wrong, vid ad2f3337-26bf-11d9-9289-000c41e2cdad has=
=20
> > <range><ge>0</ge></range> but needs <range><lt>1.1.21</lt></range>.
> >=20
>=20
> Yes, you are absolutely right, I will correct the wrong range(s).
>=20

Okay I was a bit too fast, where did you find that the cups people fixed
this issue in their new release?

-josef


--=20
Josef El-Rayes                   (__)
Email:	  josef@daemon.li     \\\'',)=20
Web:	  http://daemon.li/     \/  \ ^
FreeBSD   Security Team         .\._/_)

--=_daemon.li-30148-1100632739-0001-2
Content-Type: application/pgp-signature
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)

iQEVAwUBQZpSolnFItmnnbU8AQI+8wf/TYqEgRj5E2k/BPJz70Jru9kT2dFcfNhh
GDG0co3H2wwHXCR0R9KG2ydmalC5bPL3NPtWCMxMKXw0hG+3EXoddoPJyArmDZlC
uJjn2MVj2pEHB4ITvw3J2lavyxtC9AD08eIuEQ9L0t86gMqFdW6uNeBvSiUUYxeE
/d/zAICqc7412EyiTEx3NmeA2VbTXQzKmdh34FeUclgLBZYQF1fYp2aymH49o9uQ
JUtCf/875TdYO68+/5102VdaKwb/csM9x/U7q00q92rldm9/rLBE45u/6sqmp5sZ
CxHyEhm9sTE39IcnsL7cIRtjsXOyFDQOn2Fm4aIl2ZsuaUYyrb1zvw==
=AXVf
-----END PGP SIGNATURE-----

--=_daemon.li-30148-1100632739-0001-2--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20041116191859.GB29946>