cups-base problem

zbigniew szalbot zbigniew at szalbot.homedns.org
Sat Nov 10 01:10:16 PST 2007


Dear all,

Today I saw a security notice:

Affected package: cups-base-1.2.11_3
Type of problem: cups -- off-by-one buffer overflow.
Reference: <http://www.FreeBSD.org/ports/portaudit/8dd9722c-8e97-11dc-b8f6-001c2514716c.

So I tried to upgrade it using portupgrade:
$ sudo portupgrade
** Port marked as IGNORE: print/cups-base:
        is forbidden: remote execution of arbitrary code

cat distinfo
MD5 (cups-1.3.3-source.tar.bz2) = d4911e68b6979d16bc7a55f68d16cc53
SHA256 (cups-1.3.3-source.tar.bz2) = 
5e9e5670777055293e309cb0cbb2758df9c1275bf648df70478b7389c2d804de
SIZE (cups-1.3.3-source.tar.bz2) = 4077262

I am not sure I understand the message about remote execution of 
arbitrary code.

Anyway, how should I upgrade this port?

Thank you very much in advance!

Zbigniew Szalbot


More information about the freebsd-questions mailing list