Package: hplip Version: 1.6.10-3 Severity: grave Tags: security patch Hi, the following CVE (Common Vulnerabilities & Exposures) id was published for hplip.
CVE-2007-5208[0]: | hpssd in Hewlett-Packard Linux Imaging and Printing Project (hplip) | 1.x and 2.x before 2.7.10 allows context-dependent attackers to | execute arbitrary commands via shell metacharacters in a from address, | which is not properly handled when invoking sendmail. If you fix this vulnerability please also include the CVE id in your changelog entry. You can find a patch on: http://launchpadlibrarian.net/9737865/90_subprocess_replacement.dpatch For further information: [0] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5208 Kind regards Nico -- Nico Golde - http://ngolde.de - [EMAIL PROTECTED] - GPG: 0x73647CFF For security reasons, all text in this mail is double-rot13 encrypted.
pgpS5itXLAQiK.pgp
Description: PGP signature