Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 10 Nov 2007 09:51:08 +0100
From:      zbigniew szalbot <zbigniew@szalbot.homedns.org>
To:        freebsd-questions@freebsd.org
Subject:   cups-base problem
Message-ID:  <473570FC.7070002@szalbot.homedns.org>

next in thread | raw e-mail | index | archive | help
Dear all,

Today I saw a security notice:

Affected package: cups-base-1.2.11_3
Type of problem: cups -- off-by-one buffer overflow.
Reference: <http://www.FreeBSD.org/ports/portaudit/8dd9722c-8e97-11dc-b8f6-001c2514716c.

So I tried to upgrade it using portupgrade:
$ sudo portupgrade
** Port marked as IGNORE: print/cups-base:
        is forbidden: remote execution of arbitrary code

cat distinfo
MD5 (cups-1.3.3-source.tar.bz2) = d4911e68b6979d16bc7a55f68d16cc53
SHA256 (cups-1.3.3-source.tar.bz2) = 
5e9e5670777055293e309cb0cbb2758df9c1275bf648df70478b7389c2d804de
SIZE (cups-1.3.3-source.tar.bz2) = 4077262

I am not sure I understand the message about remote execution of 
arbitrary code.

Anyway, how should I upgrade this port?

Thank you very much in advance!

Zbigniew Szalbot



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?473570FC.7070002>