The update was to fix CVE-2014-3537 (as mentioned above).
But that fix is incomplete: CVE-2014-5029 (not fixed in Ubuntu yet: 
http://people.canonical.com/~ubuntu-security/cve/2014/CVE-2014-5029.html)

CUPS developers know of this regression: https://cups.org/str.php?L4461
There's also a fix in that bug report, already shipped for Debian, and another 
patch which was just added.
So this will be fixed, eventually.

@Marc Deslauriers, I subscribed you so that you are aware of this bug
report in Launchpad (even though you already are aware of the
regression).

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2014-5029

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1349387

Title:
  server settings are inaccessible

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/cups/+bug/1349387/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to