Date: Sat, 10 Nov 2007 09:51:08 +0100 From: zbigniew szalbot <zbigniew@szalbot.homedns.org> To: freebsd-questions@freebsd.org Subject: cups-base problem Message-ID: <473570FC.7070002@szalbot.homedns.org>
next in thread | raw e-mail | index | archive | help
Dear all, Today I saw a security notice: Affected package: cups-base-1.2.11_3 Type of problem: cups -- off-by-one buffer overflow. Reference: <http://www.FreeBSD.org/ports/portaudit/8dd9722c-8e97-11dc-b8f6-001c2514716c. So I tried to upgrade it using portupgrade: $ sudo portupgrade ** Port marked as IGNORE: print/cups-base: is forbidden: remote execution of arbitrary code cat distinfo MD5 (cups-1.3.3-source.tar.bz2) = d4911e68b6979d16bc7a55f68d16cc53 SHA256 (cups-1.3.3-source.tar.bz2) = 5e9e5670777055293e309cb0cbb2758df9c1275bf648df70478b7389c2d804de SIZE (cups-1.3.3-source.tar.bz2) = 4077262 I am not sure I understand the message about remote execution of arbitrary code. Anyway, how should I upgrade this port? Thank you very much in advance! Zbigniew Szalbot
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?473570FC.7070002>