Debian Security Advisory
DSA-2875-1 cups-filters -- security update
- Date Reported:
- 12 Mar 2014
- Affected Packages:
- cups-filters
- Vulnerable:
- Yes
- Security database references:
- In Mitre's CVE dictionary: CVE-2013-6474, CVE-2013-6475, CVE-2013-6476.
- More information:
-
Florian Weimer of the Red Hat Product Security Team discovered multiple vulnerabilities in the pdftoopvp CUPS filter, which could result in the execution of aribitrary code if a malformed PDF file is processed.
For the stable distribution (wheezy), these problems have been fixed in version 1.0.18-2.1+deb7u1.
For the unstable distribution (sid), these problems have been fixed in version 1.0.47-1.
We recommend that you upgrade your cups-filters packages.