-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 19 May 2023 18:25:20 +0200 Source: cups-filters Architecture: source Version: 1.28.7-1+deb11u2 Distribution: bullseye-security Urgency: high Maintainer: Debian Printing Team <debian-printing@lists.debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Closes: 1036224 Changes: cups-filters (1.28.7-1+deb11u2) bullseye-security; urgency=high . * CVE-2023-24805 prevent arbitrary command execution by escaping the quoting of the arguments in a job with a forged job title more information are available in the commit message at: https://github.com/OpenPrinting/cups-filters/commit/93e60d3df35 (Closes: #1036224) Checksums-Sha1: 33e4a9a7f6e90302b7a0f887f1c7d3c2c55837cc 3042 cups-filters_1.28.7-1+deb11u2.dsc b4096e5aa17d8e398b5cc352490476175af508fd 1503052 cups-filters_1.28.7.orig.tar.xz b2b2ec4287bf64ad2c028d347fc2fc3cdd57b7d1 84664 cups-filters_1.28.7-1+deb11u2.debian.tar.xz 0b7ecef714bb55c5ca559b64660879e27b8d5e2e 14325 cups-filters_1.28.7-1+deb11u2_amd64.buildinfo Checksums-Sha256: a86d2ea49aff421fec10dc5a0aed5fd6d416253d7d4601b6c120cd4fb2af27d9 3042 cups-filters_1.28.7-1+deb11u2.dsc e4150902809c58dfff7089c9345f196ecd88e38bce2be4800fa4811a0902057d 1503052 cups-filters_1.28.7.orig.tar.xz 77ef9081fc43a48c8af9d7e26243044bbf6df1b0939961e681fac26954c57872 84664 cups-filters_1.28.7-1+deb11u2.debian.tar.xz 2af154a8c0584a7237baff3e863981a264ada0d3855b60bd71a551bca146f1f0 14325 cups-filters_1.28.7-1+deb11u2_amd64.buildinfo Files: 3b9e8eae79e47a7614a459e52e875263 3042 net optional cups-filters_1.28.7-1+deb11u2.dsc 2efeed97e11ea5e157c5f4f2e0780fe7 1503052 net optional cups-filters_1.28.7.orig.tar.xz 286307f71c1e960e374d90724d1ef148 84664 net optional cups-filters_1.28.7-1+deb11u2.debian.tar.xz 18936f34ad8573e9976131f30bcd8a82 14325 net optional cups-filters_1.28.7-1+deb11u2_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAmRp7o1fFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYR2B0D/9o7C4NAyAiX5ChvI5FllsWSx/7Vvci RKoaIuK+UIHqPDKtCnUdbp4xg4LaebX9Wj13Qpj/C80jPImBEuSmevyeEHWU8nt6 gVN7Cw6lcS+H6uJWZkDuI/qulSvJ/YyGSMLy/CEyRaKNbRyOHYHcFSQJvERIwr3g HUZpV3PKZHs2S4ZvW8SQgaAiGx79PZ0WunzvM73Bvj911wsScwZieBrbhM//3OLq 5a23HM4jFoXXKvpOPIglCm76fYNh1166OVoI4IUlVfuKo3PlbCfLu+bHJj4/JLfO xUzR9662IKPgDNvlU7P+O2q1BH7H6CGbCGBSJeyoYQV5zWE4rNETqo1o3ZvlNYzV tn9Q4fax9cXEZUxGxAtMpQb9+435NkDA3rlnZwVScQKpTQneqansA5bvY+5IN1vr hhdUpixtgSXYPqdg5R/hHsXQZrRadeqPmeDnyuZtb0qetiX7CFYIeHdTF5Wtrozg NlmCMxo/LGpBW0eQ1+wOFvSsz1c5lYHdZJaIKqIi0b76L+YYSHEyIxezvi2GneK4 od10IB2srOy7wknPQaZ2Lo9KaKY43IpZ8uv515GpUmGRHUGoBs8fTlII/10Cr+Zn DEcmxOKzkPoNQqU5CqLA+upVWVnhMhGNouRxD/M5Whrsbi+FeDcIJGVGEpXR/PCu KBxsL9MX1Imnng== =a6Lb -----END PGP SIGNATURE-----