Chapter 1. Package Updates
34
• RPM verification would fail on configuration files even though content changes were expected.
(BZ#487161)
• the CUPS scheduler requires an updated version of the krb5 package in order to function correctly
but this was not an RPM dependency. (BZ#489714)
• the text-only filter would not send form-feed characters correctly. (BZ#491190)
• incorrect IPP-Get-Jobs requests, accepted by CUPS in current versions of Red Hat Enterprise Linux
but rejected in newer versions of the upstream package, were generated by the cupsGetJobs2() API
function and by the lpstat and lpq commands. (BZ#497529)
All cups users should upgrade to these updated packages, which resolve these issues.
1.29.2. RHSA-2009:1082: Important security update
Important
This update has already been released (prior to the GA of this release) as the security
errata
RHSA-2009:1082
205
Updated cups packages that fix one security issue are now available for Red Hat Enterprise Linux 5.
This update has been rated as having important security impact by the Red Hat Security Response
Team.
The Common UNIX® Printing System (CUPS) provides a portable printing layer for UNIX operating
systems. The Internet Printing Protocol (IPP) allows users to print and manage printing-related tasks
over a network.
A NULL pointer dereference flaw was found in the CUPS IPP routine, used for processing incoming
IPP requests for the CUPS scheduler. An attacker could use this flaw to send specially-crafted IPP
requests that would crash the cupsd daemon. (
CVE-2009-0949
206
)
Red Hat would like to thank Anibal Sacco from Core Security Technologies for reporting this issue.
Users of cups are advised to upgrade to these updated packages, which contain a backported patch
to correct this issue. After installing this update, the cupsd daemon will be restarted automatically.
1.29.3. RHSA-2009:0429: Important security update
Important
This update has already been released (prior to the GA of this release) as the security
errata
RHSA-2009:0429
207
Updated cups packages that fix multiple security issues are now available for Red Hat Enterprise
Linux 4 and 5.
206
https://www.redhat.com/security/data/cve/CVE-2009-0949.html
Summary of Contents for ENTERPRISE 5.4 RELEASE NOTES
Page 1: ...Red Hat Enterprise Linux 5 4 Technical Notes Every Change to Every Package ...
Page 18: ...xviii ...
Page 306: ...288 ...
Page 464: ...446 ...
Page 466: ...448 ...