ELA-167-1 cups security update

session cookies with predictable seed

2019-09-21
Packagecups
Version1.5.3-5+deb7u11
Related CVE CVE-2018-4300

An issue was found in cups, the Common UNIX Printing System™. Linux session cookies used a predictable random number seed.

This CVE is sometimes referenced as CVE-2018-4700. Please only use CVE-2018-4300 for it.

For Debian 7 Wheezy, these problems have been fixed in version 1.5.3-5+deb7u11.

We recommend that you upgrade your cups packages.

Further information about Extended LTS security advisories can be found at: https://deb.freexian.com/extended-lts/