[lsb-discuss] foomatic-rip in SUSE: Updates needed

Thorsten Kukuk kukuk at suse.de
Wed Dec 19 04:38:17 PST 2007


Hi,

On Wed, Dec 19, Till Kamppeter wrote:

> Hi,
> 
> during the tests for the LSB 3.2 release we have found out that there 
> are enterprise editions of SUSE Linux which ship an outdated version of 
> foomatic-rip of 3 years ago.
> 
> The problems are the follwing:
> 
> - Security bug CAN-2004-0801: By sending a print job with appropriately 
> made option settings one can run arbitrary commands as the printing 
> system user "lp". This was fixed three years ago.

Sorry to say, but it seems some people can only compare version numbers
and never understand the concept of patches and maintenance.

But this bug was fixed three years ago in our packages, so this is no
problem at all.


  Thorsten

-- 
Thorsten Kukuk         http://www.suse.de/~kukuk/      kukuk at suse.de
SUSE LINUX Products GmbH       Maxfeldstr. 5       D-90409 Nuernberg
--------------------------------------------------------------------    
Key fingerprint = 8C6B FD92 EE0F 42ED F91A  6A73 6D1A 7F05 2E59 24BB



More information about the lsb-discuss mailing list