Updated cups packages that fix multiple security issues and several bugsare now available for Red Hat Enterprise Linux 6.Red Hat Product Security has rated this update as having Moderate securityimpact. Common Vulnerability Scoring System (CVSS) base scores, which givedetailed severity ratings, are available for each vulnerability from theCVE links in the References section.

CUPS provides a portable printing layer for Linux, UNIX, and similaroperating systems.A cross-site scripting (XSS) flaw was found in the CUPS web interface.An attacker could use this flaw to perform a cross-site scripting attackagainst users of the CUPS web interface. (CVE-2014-2856)It was discovered that CUPS allowed certain users to create symbolic linksin certain directories under /var/cache/cups/. A local user with the ‘lp’group privileges could use this flaw to read the contents of arbitraryfiles on the system or, potentially, escalate their privileges on thesystem. (CVE-2014-3537, CVE-2014-5029, CVE-2014-5030, CVE-2014-5031)The CVE-2014-3537 issue was discovered by Francisco Alonso of Red HatProduct Security.These updated cups packages also include several bug fixes. Space precludesdocumenting all of these changes in this advisory. Users are directed tothe Red Hat Enterprise Linux 6.6 Technical Notes, linked to in theReferences section, for information on the most significant of thesechanges.All cups users are advised to upgrade to these updated packages, whichcontain backported patches to correct these issues. After installing thisupdate, the cupsd daemon will be restarted automatically.
Red Hat Enterprise Linux Desktop (v. 6)

SRPMS:
cups-1.4.2-67.el6.src.rpm
    MD5: 2722c1f24a8f1a81c1866627401885d2SHA-256: e71bd5dd38202eb02f5d0eb89b50c7b4796716a3aea21a63b7745c6349be93c4
 
IA-32:
cups-1.4.2-67.el6.i686.rpm
    MD5: 163f2d0ef714147739597956a88f3462SHA-256: 632fc6fbf632163249839b677d1afe14e8e60e08a70d02abaf95f376e24527ef
cups-debuginfo-1.4.2-67.el6.i686.rpm
    MD5: 07dc09b30b842d6d16682370cf48f91cSHA-256: 89df6cfade92d6188d8b692f71c22df4bdb6b3fdd6fc2e773b56f7732c1de3c2
cups-devel-1.4.2-67.el6.i686.rpm
    MD5: 208d82f7ddb7321921f3120f6ea3367aSHA-256: fd59c36edda36fd3b14079f24ad6d787dee76f0c8b2b31a8f75738bf73dbb120
cups-libs-1.4.2-67.el6.i686.rpm
    MD5: 4cfe3e5efa0a28680d6d8dcc530e4b12SHA-256: a82640faf75216bb9c68ecb40955e9986515e24a6f3d1b143f5d421057467b16
cups-lpd-1.4.2-67.el6.i686.rpm
    MD5: 1a10b26860aeaefc61a34336db106c06SHA-256: 854b57001e67a13af3c9c1c98c77b47df8eb54561e214e8fdd3a8705156a5bbc
cups-php-1.4.2-67.el6.i686.rpm
    MD5: 356010fee62b9fdcc759718e07b25676SHA-256: 4abaf04e93e832d0814251e809be37acc978e52d41c95dd6648c75486dd57061
 
x86_64:
cups-1.4.2-67.el6.x86_64.rpm
    MD5: f342f9aa4b4bb431ed60de22298f958cSHA-256: 357af7373d68681d346534f184bbf3db76cded79c34ecacfa5e67179d95d15cb
cups-debuginfo-1.4.2-67.el6.i686.rpm
    MD5: 07dc09b30b842d6d16682370cf48f91cSHA-256: 89df6cfade92d6188d8b692f71c22df4bdb6b3fdd6fc2e773b56f7732c1de3c2
cups-debuginfo-1.4.2-67.el6.x86_64.rpm
    MD5: bce04aa708e03d7daef695e979c8d860SHA-256: 96e022afe45b44f2c6d06c8d4e62eab66ac4941bef038c3134a35250f5e5ae57
cups-devel-1.4.2-67.el6.i686.rpm
    MD5: 208d82f7ddb7321921f3120f6ea3367aSHA-256: fd59c36edda36fd3b14079f24ad6d787dee76f0c8b2b31a8f75738bf73dbb120
cups-devel-1.4.2-67.el6.x86_64.rpm
    MD5: 481f1111f92688c76bca263302359f73SHA-256: d4561a318b8dab2345485258c6adcde83aece6a7ba7e36167e2b426b5ee7228f
cups-libs-1.4.2-67.el6.i686.rpm
    MD5: 4cfe3e5efa0a28680d6d8dcc530e4b12SHA-256: a82640faf75216bb9c68ecb40955e9986515e24a6f3d1b143f5d421057467b16
cups-libs-1.4.2-67.el6.x86_64.rpm
    MD5: 1b3dfe582eef2d34fe919799e6feb7c3SHA-256: c7af2fd7e5c8a76de57c698f330b271c1962672cf58e2184cba8816ede8fac9d
cups-lpd-1.4.2-67.el6.x86_64.rpm
    MD5: 999681eb4b18258c5cf562397e02d15cSHA-256: 97baa971e8ac1d74e9914691f444118c832a684b49570712baf42c806020c6c1
cups-php-1.4.2-67.el6.x86_64.rpm
    MD5: d9deb461245576d5caf5e3331a1ad6edSHA-256: a56eee29b04c51a60f36ecea821c32c0de4703e612d9a6b4eb40ba59e7d2fb16
 
Red Hat Enterprise Linux HPC Node (v. 6)

SRPMS:
cups-1.4.2-67.el6.src.rpm
    MD5: 2722c1f24a8f1a81c1866627401885d2SHA-256: e71bd5dd38202eb02f5d0eb89b50c7b4796716a3aea21a63b7745c6349be93c4
 
x86_64:
cups-1.4.2-67.el6.x86_64.rpm
    MD5: f342f9aa4b4bb431ed60de22298f958cSHA-256: 357af7373d68681d346534f184bbf3db76cded79c34ecacfa5e67179d95d15cb
cups-debuginfo-1.4.2-67.el6.i686.rpm
    MD5: 07dc09b30b842d6d16682370cf48f91cSHA-256: 89df6cfade92d6188d8b692f71c22df4bdb6b3fdd6fc2e773b56f7732c1de3c2
cups-debuginfo-1.4.2-67.el6.x86_64.rpm
    MD5: bce04aa708e03d7daef695e979c8d860SHA-256: 96e022afe45b44f2c6d06c8d4e62eab66ac4941bef038c3134a35250f5e5ae57
cups-devel-1.4.2-67.el6.i686.rpm
    MD5: 208d82f7ddb7321921f3120f6ea3367aSHA-256: fd59c36edda36fd3b14079f24ad6d787dee76f0c8b2b31a8f75738bf73dbb120
cups-devel-1.4.2-67.el6.x86_64.rpm
    MD5: 481f1111f92688c76bca263302359f73SHA-256: d4561a318b8dab2345485258c6adcde83aece6a7ba7e36167e2b426b5ee7228f
cups-libs-1.4.2-67.el6.i686.rpm
    MD5: 4cfe3e5efa0a28680d6d8dcc530e4b12SHA-256: a82640faf75216bb9c68ecb40955e9986515e24a6f3d1b143f5d421057467b16
cups-libs-1.4.2-67.el6.x86_64.rpm
    MD5: 1b3dfe582eef2d34fe919799e6feb7c3SHA-256: c7af2fd7e5c8a76de57c698f330b271c1962672cf58e2184cba8816ede8fac9d
cups-lpd-1.4.2-67.el6.x86_64.rpm
    MD5: 999681eb4b18258c5cf562397e02d15cSHA-256: 97baa971e8ac1d74e9914691f444118c832a684b49570712baf42c806020c6c1
cups-php-1.4.2-67.el6.x86_64.rpm
    MD5: d9deb461245576d5caf5e3331a1ad6edSHA-256: a56eee29b04c51a60f36ecea821c32c0de4703e612d9a6b4eb40ba59e7d2fb16
 
Red Hat Enterprise Linux Server (v. 6)

SRPMS:
cups-1.4.2-67.el6.src.rpm
    MD5: 2722c1f24a8f1a81c1866627401885d2SHA-256: e71bd5dd38202eb02f5d0eb89b50c7b4796716a3aea21a63b7745c6349be93c4
 
IA-32:
cups-1.4.2-67.el6.i686.rpm
    MD5: 163f2d0ef714147739597956a88f3462SHA-256: 632fc6fbf632163249839b677d1afe14e8e60e08a70d02abaf95f376e24527ef
cups-debuginfo-1.4.2-67.el6.i686.rpm
    MD5: 07dc09b30b842d6d16682370cf48f91cSHA-256: 89df6cfade92d6188d8b692f71c22df4bdb6b3fdd6fc2e773b56f7732c1de3c2
cups-devel-1.4.2-67.el6.i686.rpm
    MD5: 208d82f7ddb7321921f3120f6ea3367aSHA-256: fd59c36edda36fd3b14079f24ad6d787dee76f0c8b2b31a8f75738bf73dbb120
cups-libs-1.4.2-67.el6.i686.rpm
    MD5: 4cfe3e5efa0a28680d6d8dcc530e4b12SHA-256: a82640faf75216bb9c68ecb40955e9986515e24a6f3d1b143f5d421057467b16
cups-lpd-1.4.2-67.el6.i686.rpm
    MD5: 1a10b26860aeaefc61a34336db106c06SHA-256: 854b57001e67a13af3c9c1c98c77b47df8eb54561e214e8fdd3a8705156a5bbc
cups-php-1.4.2-67.el6.i686.rpm
    MD5: 356010fee62b9fdcc759718e07b25676SHA-256: 4abaf04e93e832d0814251e809be37acc978e52d41c95dd6648c75486dd57061
 
PPC:
cups-1.4.2-67.el6.ppc64.rpm
    MD5: e82088164aca4afaf91c1032f2021a69SHA-256: 4948ef79ad63d57b8d25fa4836036452718fb3640bb9c9c2adc97f755f12e9d7
cups-debuginfo-1.4.2-67.el6.ppc.rpm
    MD5: aa535a48e64ae74985851731a04b3347SHA-256: 80f7dd8bbb7c5503b909191982a2fe4110eb6374055c3120a71e33701801a5fc
cups-debuginfo-1.4.2-67.el6.ppc64.rpm
    MD5: 52144e670fb99fd319f3f7d603eb22d2SHA-256: f2297b36dca2a49890819b45d9e187b58873d62ec299d7e5c5b7ee6fdc4a63d3
cups-devel-1.4.2-67.el6.ppc.rpm
    MD5: 4eaef6471ec3cd4a63ca31ba682099d0SHA-256: dd171393bf289f2d9cc56ee121150ed4866c6cd4fbc749115abd509b62e0da9e
cups-devel-1.4.2-67.el6.ppc64.rpm
    MD5: df99c5d58af2952c9ae660a993265856SHA-256: 3977fe7cfa47245f3ee3f6efa4601af283d7680b5913769843bfb3ed745baa39
cups-libs-1.4.2-67.el6.ppc.rpm
    MD5: 74807c2a97b80909f0960cb0d2c235c6SHA-256: 07c0dcca0b21b89ad22d95b9dc512ca74a21ba9b3e1b274b532b16eb57487cfd
cups-libs-1.4.2-67.el6.ppc64.rpm
    MD5: cafa667de3869ccb7acc8a5bba5012f7SHA-256: 69bcce270bc94fa63b705f818aff020bc8888ecda9b281f91c451fd40e233802
cups-lpd-1.4.2-67.el6.ppc64.rpm
    MD5: 36fa1ed46dc9c7c118bf9632f3e12af7SHA-256: 283e25a39936bc66db6eaa4387adf838baed7ce3a9352fdbd56cdf46f499586f
cups-php-1.4.2-67.el6.ppc64.rpm
    MD5: 7c3fc7b1ccac1ff82e11d1652db97f25SHA-256: d5d108542fabd48a25a2497b231780617be7c8cb0015c2f3294be6522f1ddc31
 
s390x:
cups-1.4.2-67.el6.s390x.rpm
    MD5: 0236c21d59a82beb6ecb96362ad5f9faSHA-256: e9bb4a1315eec29b284a43a674e027d425f804fbdb877da29ad32da0b87b0e97
cups-debuginfo-1.4.2-67.el6.s390.rpm
    MD5: c89d836256d081002aea916b1db86d0cSHA-256: 140b832ff4971d6528ffbc5b600935f838f3fcc70248f5c8ff815a8c20c8961a
cups-debuginfo-1.4.2-67.el6.s390x.rpm
    MD5: 28c76e214a217c419cd66609df7ab6e6SHA-256: 2a2bc2c42e642e21d98c3744f6ed9b6cde1e6dc12b6de6a2ac21307225256a74
cups-devel-1.4.2-67.el6.s390.rpm
    MD5: 7670da8c8268692260ef361a20263a96SHA-256: 9699270a523806ab24f54c6e6dd8bd80935ddcd667e51bd37773d0264d5413a2
cups-devel-1.4.2-67.el6.s390x.rpm
    MD5: 7b77a202eaf3665ab41cd545597e92daSHA-256: bc2ac27a5521b5218e2f65ff4b3fccfe92915fe629633ea2eacd44083647251a
cups-libs-1.4.2-67.el6.s390.rpm
    MD5: 46878d21478b101e0619affd8fd9247fSHA-256: a9608e58e73965c8ce8b42329a3d6a8433ffe1e279c3c930b90540c1592ab5eb
cups-libs-1.4.2-67.el6.s390x.rpm
    MD5: 14d72d97b537ce3664b5603e2aa8fac9SHA-256: 33fe707afa40039d4d120a1090cce0ef569c2e711530fb1b3284269da7917d6e
cups-lpd-1.4.2-67.el6.s390x.rpm
    MD5: 11977de2f6f4fa56807fa37bc004c6e7SHA-256: c0d706b9a3891039a908d787cbbb3872be4f480ee4e0223704ef4385c50302ef
cups-php-1.4.2-67.el6.s390x.rpm
    MD5: 7b1a96b334d8806443b31eb3e7c9fb2bSHA-256: 88fab93e020c9dca91a38d5ff68197060e8a5666b09e7b7fd5016bda3d0a33a7
 
x86_64:
cups-1.4.2-67.el6.x86_64.rpm
    MD5: f342f9aa4b4bb431ed60de22298f958cSHA-256: 357af7373d68681d346534f184bbf3db76cded79c34ecacfa5e67179d95d15cb
cups-debuginfo-1.4.2-67.el6.i686.rpm
    MD5: 07dc09b30b842d6d16682370cf48f91cSHA-256: 89df6cfade92d6188d8b692f71c22df4bdb6b3fdd6fc2e773b56f7732c1de3c2
cups-debuginfo-1.4.2-67.el6.x86_64.rpm
    MD5: bce04aa708e03d7daef695e979c8d860SHA-256: 96e022afe45b44f2c6d06c8d4e62eab66ac4941bef038c3134a35250f5e5ae57
cups-devel-1.4.2-67.el6.i686.rpm
    MD5: 208d82f7ddb7321921f3120f6ea3367aSHA-256: fd59c36edda36fd3b14079f24ad6d787dee76f0c8b2b31a8f75738bf73dbb120
cups-devel-1.4.2-67.el6.x86_64.rpm
    MD5: 481f1111f92688c76bca263302359f73SHA-256: d4561a318b8dab2345485258c6adcde83aece6a7ba7e36167e2b426b5ee7228f
cups-libs-1.4.2-67.el6.i686.rpm
    MD5: 4cfe3e5efa0a28680d6d8dcc530e4b12SHA-256: a82640faf75216bb9c68ecb40955e9986515e24a6f3d1b143f5d421057467b16
cups-libs-1.4.2-67.el6.x86_64.rpm
    MD5: 1b3dfe582eef2d34fe919799e6feb7c3SHA-256: c7af2fd7e5c8a76de57c698f330b271c1962672cf58e2184cba8816ede8fac9d
cups-lpd-1.4.2-67.el6.x86_64.rpm
    MD5: 999681eb4b18258c5cf562397e02d15cSHA-256: 97baa971e8ac1d74e9914691f444118c832a684b49570712baf42c806020c6c1
cups-php-1.4.2-67.el6.x86_64.rpm
    MD5: d9deb461245576d5caf5e3331a1ad6edSHA-256: a56eee29b04c51a60f36ecea821c32c0de4703e612d9a6b4eb40ba59e7d2fb16
 
Red Hat Enterprise Linux Workstation (v. 6)

SRPMS:
cups-1.4.2-67.el6.src.rpm
    MD5: 2722c1f24a8f1a81c1866627401885d2SHA-256: e71bd5dd38202eb02f5d0eb89b50c7b4796716a3aea21a63b7745c6349be93c4
 
IA-32:
cups-1.4.2-67.el6.i686.rpm
    MD5: 163f2d0ef714147739597956a88f3462SHA-256: 632fc6fbf632163249839b677d1afe14e8e60e08a70d02abaf95f376e24527ef
cups-debuginfo-1.4.2-67.el6.i686.rpm
    MD5: 07dc09b30b842d6d16682370cf48f91cSHA-256: 89df6cfade92d6188d8b692f71c22df4bdb6b3fdd6fc2e773b56f7732c1de3c2
cups-devel-1.4.2-67.el6.i686.rpm
    MD5: 208d82f7ddb7321921f3120f6ea3367aSHA-256: fd59c36edda36fd3b14079f24ad6d787dee76f0c8b2b31a8f75738bf73dbb120
cups-libs-1.4.2-67.el6.i686.rpm
    MD5: 4cfe3e5efa0a28680d6d8dcc530e4b12SHA-256: a82640faf75216bb9c68ecb40955e9986515e24a6f3d1b143f5d421057467b16
cups-lpd-1.4.2-67.el6.i686.rpm
    MD5: 1a10b26860aeaefc61a34336db106c06SHA-256: 854b57001e67a13af3c9c1c98c77b47df8eb54561e214e8fdd3a8705156a5bbc
cups-php-1.4.2-67.el6.i686.rpm
    MD5: 356010fee62b9fdcc759718e07b25676SHA-256: 4abaf04e93e832d0814251e809be37acc978e52d41c95dd6648c75486dd57061
 
x86_64:
cups-1.4.2-67.el6.x86_64.rpm
    MD5: f342f9aa4b4bb431ed60de22298f958cSHA-256: 357af7373d68681d346534f184bbf3db76cded79c34ecacfa5e67179d95d15cb
cups-debuginfo-1.4.2-67.el6.i686.rpm
    MD5: 07dc09b30b842d6d16682370cf48f91cSHA-256: 89df6cfade92d6188d8b692f71c22df4bdb6b3fdd6fc2e773b56f7732c1de3c2
cups-debuginfo-1.4.2-67.el6.x86_64.rpm
    MD5: bce04aa708e03d7daef695e979c8d860SHA-256: 96e022afe45b44f2c6d06c8d4e62eab66ac4941bef038c3134a35250f5e5ae57
cups-devel-1.4.2-67.el6.i686.rpm
    MD5: 208d82f7ddb7321921f3120f6ea3367aSHA-256: fd59c36edda36fd3b14079f24ad6d787dee76f0c8b2b31a8f75738bf73dbb120
cups-devel-1.4.2-67.el6.x86_64.rpm
    MD5: 481f1111f92688c76bca263302359f73SHA-256: d4561a318b8dab2345485258c6adcde83aece6a7ba7e36167e2b426b5ee7228f
cups-libs-1.4.2-67.el6.i686.rpm
    MD5: 4cfe3e5efa0a28680d6d8dcc530e4b12SHA-256: a82640faf75216bb9c68ecb40955e9986515e24a6f3d1b143f5d421057467b16
cups-libs-1.4.2-67.el6.x86_64.rpm
    MD5: 1b3dfe582eef2d34fe919799e6feb7c3SHA-256: c7af2fd7e5c8a76de57c698f330b271c1962672cf58e2184cba8816ede8fac9d
cups-lpd-1.4.2-67.el6.x86_64.rpm
    MD5: 999681eb4b18258c5cf562397e02d15cSHA-256: 97baa971e8ac1d74e9914691f444118c832a684b49570712baf42c806020c6c1
cups-php-1.4.2-67.el6.x86_64.rpm
    MD5: d9deb461245576d5caf5e3331a1ad6edSHA-256: a56eee29b04c51a60f36ecea821c32c0de4703e612d9a6b4eb40ba59e7d2fb16
 
(The unlinked packages above are only available from the Red Hat Network)
These packages are GPG signed by Red Hat for security. Our key and
details on how to verify the signature are available from:

Leave a Reply