CESA-2010:0129 -- centos 5 i386 cupsID: oval:org.secpod.oval:def:201940 | Date: (C)2012-01-31 (M)2024-02-08 |
Class: PATCH | Family: unix |
The Common UNIX Printing System provides a portable printing layer for UNIX operating systems. It was discovered that the Red Hat Security Advisory RHSA-2009:1595 did not fully correct the use-after-free flaw in the way CUPS handled references in its file descriptors-handling interface. A remote attacker could send specially-crafted queries to the CUPS server, causing it to crash. Users of cups are advised to upgrade to these updated packages, which contain a backported patch to correct this issue. After installing the update, the cupsd daemon will be restarted automatically.