[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-12-10 Thread Launchpad Bug Tracker
This bug was fixed in the package cups-pk-helper - 0.2.1.2-1ubuntu1.1 --- cups-pk-helper (0.2.1.2-1ubuntu1.1) quantal-security; urgency=low * SECURITY UPDATE: CUPS function calls were wrapped insecurely, which could be used to upload sensitive data to a CUPS resource, or overwri

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-12-10 Thread Scott Kitterman
Also copied to precise-security, as requested. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1083416 Title: cups-pk-helper security vulnerability CVE-2012-4510 To manage notifications about this bu

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-12-10 Thread Launchpad Bug Tracker
This bug was fixed in the package cups-pk-helper - 0.1.2-1ubuntu0.1 --- cups-pk-helper (0.1.2-1ubuntu0.1) oneiric-security; urgency=low * SECURITY UPDATE: CUPS function calls were wrapped insecurely, which could be used to upload sensitive data to a CUPS resource, or overwrite

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-12-10 Thread Launchpad Bug Tracker
This bug was fixed in the package cups-pk-helper - 0.2.1.2-1ubuntu0.1 --- cups-pk-helper (0.2.1.2-1ubuntu0.1) precise-security; urgency=low * SECURITY UPDATE: CUPS function calls were wrapped insecurely, which could be used to upload sensitive data to a CUPS resource, or overwri

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-12-07 Thread Till Kamppeter
I have this package already installed for some weeks on my Quantal system as I have -proposed activated. system-config-printer works correctly for me, so there should be no regressions. ** Tags removed: verification-needed ** Tags added: verification-done -- You received this bug notification be

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-30 Thread Launchpad Bug Tracker
** Branch linked: lp:ubuntu/oneiric-proposed/cups-pk-helper ** Branch linked: lp:~ubuntu-branches/ubuntu/precise/cups-pk-helper /precise-proposed ** Branch linked: lp:ubuntu/quantal-proposed/cups-pk-helper -- You received this bug notification because you are a member of Ubuntu Bugs, which is s

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-30 Thread Jamie Strandboge
To ubuntu-sru: if this passes the verification process, please also pocket copy to security. Thanks! -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1083416 Title: cups-pk-helper security vulnerabilit

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-30 Thread Jamie Strandboge
Pocket copied cups-pk-helper to proposed. Please test and give feedback here. See https://wiki.ubuntu.com/Testing/EnableProposed for documentation on how to enable and use -proposed. Thank you in advance! ** Tags added: verification-needed ** Tags added: sru-verification -- You received this bu

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-30 Thread Jamie Strandboge
Incidentally, I am asking for this because the Fedora patch for Oneiric was against a different version and so was the upstream patches used for precise and quantal. I verified the patches against upstream and visually inspected them to make sure they were ok, but all of them applied with offsets.

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-30 Thread Jamie Strandboge
Jeremy, would you be able to at least install the packages and smoke test them? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1083416 Title: cups-pk-helper security vulnerability CVE-2012-4510 To m

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-30 Thread Jeremy Bicha
The only testing I've done is testing that it builds successfully. I don't have any test code to make sure that the patch fixes the vulnerability. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1083416

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-30 Thread Jamie Strandboge
Jeremy, can you comment on the testing performed? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1083416 Title: cups-pk-helper security vulnerability CVE-2012-4510 To manage notifications about this

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-30 Thread Jamie Strandboge
The oneiric patch should use 0.1.2-1ubuntu0.1 as the version per https://wiki.ubuntu.com/SecurityTeam/UpdatePreparation#Packaging. Otherwise it looks great. Once again, I'm fixing that and uploading to the security ppa now. ** Changed in: cups-pk-helper (Ubuntu Oneiric) Status: Triaged => F

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-30 Thread Jamie Strandboge
The precise patch should use 0.2.1.2-1ubuntu0.1 as the version per https://wiki.ubuntu.com/SecurityTeam/UpdatePreparation#Packaging. Otherwise it looks great. I'm also fixing that and uploading to the security ppa now. ** Changed in: cups-pk-helper (Ubuntu Precise) Status: Triaged => Fix Co

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-30 Thread Jamie Strandboge
Thanks for your debdiffs! The quantal patch should use 0.2.1.2-1ubuntu1.1 as the version per https://wiki.ubuntu.com/SecurityTeam/UpdatePreparation#Packaging. Otherwise it looks great. I'm fixing that and uploading to the security ppa now. ** Changed in: cups-pk-helper (Ubuntu Quantal) Sta

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-30 Thread Jamie Strandboge
** Also affects: cups-pk-helper (Ubuntu Oneiric) Importance: Undecided Status: New ** Changed in: cups-pk-helper (Ubuntu Oneiric) Status: New => Triaged ** Changed in: cups-pk-helper (Ubuntu Precise) Status: Confirmed => Triaged ** Changed in: cups-pk-helper (Ubuntu Quant

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-29 Thread Jeremy Bicha
** Changed in: cups-pk-helper (Ubuntu Precise) Status: New => Confirmed ** Changed in: cups-pk-helper (Ubuntu Quantal) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/b

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-26 Thread Jeremy Bicha
** Attachment added: "oneiric-buildlog" https://bugs.launchpad.net/ubuntu/+source/cups-pk-helper/+bug/1083416/+attachment/3444643/+files/cups-pk-helper_0.1.2-1ubuntu1_amd64-20121126-2259.build -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed t

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-26 Thread Jeremy Bicha
** Patch added: "lp1083416-oneiric.debdiff" https://bugs.launchpad.net/ubuntu/+source/cups-pk-helper/+bug/1083416/+attachment/3444642/+files/lp1083416-oneiric.debdiff -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.lau

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-26 Thread Jeremy Bicha
** Attachment added: "precise-buildlog" https://bugs.launchpad.net/ubuntu/+source/cups-pk-helper/+bug/1083416/+attachment/3444640/+files/cups-pk-helper_0.2.1.2-1ubuntu1_amd64-20121126-2245.build -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-26 Thread Jeremy Bicha
** Patch added: "lp1083416-precise.debdiff" https://bugs.launchpad.net/ubuntu/+source/cups-pk-helper/+bug/1083416/+attachment/3444641/+files/lp1083416-precise.debdiff -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.lau

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-26 Thread Jeremy Bicha
** Attachment added: "quantal-buildlog" https://bugs.launchpad.net/ubuntu/+source/cups-pk-helper/+bug/1083416/+attachment/3444615/+files/cups-pk-helper_0.2.1.2-1ubuntu2_amd64-20121126-2221.build -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed

[Bug 1083416] Re: cups-pk-helper security vulnerability CVE-2012-4510

2012-11-26 Thread Jeremy Bicha
** Patch added: "lp1083416-quantal.debdiff" https://bugs.launchpad.net/ubuntu/+source/cups-pk-helper/+bug/1083416/+attachment/3444614/+files/lp1083416-quantal.debdiff -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.lau