Mandrake Linux Security Advisory : cups (MDKSA-2000:070-1)

high Nessus Plugin ID 61856

Synopsis

The remote Mandrake Linux host is missing one or more security updates.

Description

A problem existed with previous versions of CUPS that made CUPS printers accessible from anywhere on the internet. A bug also existed where CUPS would broadcast to everywhere and thus keep open dial-on- demand lines. Both problems have been addressed in this update and by an automatic configuration script.

Update :

Due to a problem in packaging that is not easily resolved, users will have to manually edit the /etc/cups/cupsd.conf file and include in the beginning of the file the following line :

All Linux-Mandrake users using CUPS should edit this file and include that line to properly secure CUPS. This fix will only work with cups-1.1.4-5.1mdk and higher.

Solution

Update the affected cups and / or cups-devel packages.

Plugin Details

Severity: High

ID: 61856

File Name: mandrake_MDKSA-2000-070.nasl

Version: 1.6

Type: local

Published: 9/6/2012

Updated: 1/6/2021

Supported Sensors: Nessus

Vulnerability Information

CPE: p-cpe:/a:mandriva:linux:cups, p-cpe:/a:mandriva:linux:cups-devel, cpe:/o:mandrakesoft:mandrake_linux:7.2

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/Mandrake/release, Host/Mandrake/rpm-list

Patch Publication Date: 11/29/2000

Reference Information

MDKSA: 2000:070-1