

<div id="comment_title"><!--acac-->Daniel (<font color=#FF9966>usu&aacute;rio n&atilde;o registrado</font>) em <a href="#comment-28414" title="">16/10/2008 &agrave;s 5:17 pm</a> </div>
<p>Esta na hora de se criar um fork do cups&#8230; ou algo do tipo&#8230; a apple ja definiu como vai continuar mantendo o cups? Os updates demoraram desde a compra da maça!!!</p>


<div id="comment_title"><!--acac--><a href='http://br-linux.org/' rel='external nofollow' class='url'>Augusto Campos</a> em <a href="#comment-28415" title="">16/10/2008 &agrave;s 5:19 pm</a> </div>
<p>Não deixe de mandar o link, quando você o fizer!</p>


<div id="comment_title"><!--acac-->Daniel (<font color=#FF9966>usu&aacute;rio n&atilde;o registrado</font>) em <a href="#comment-28417" title="">16/10/2008 &agrave;s 5:19 pm</a> </div>
<p>Acabei de receber o alerta do RHN:</p>
<p>Description:<br />
The Common UNIX Printing System (CUPS) provides a portable printing layer<br />
for UNIX(R) operating systems.</p>
<p>A buffer overflow flaw was discovered in the SGI image format decoding<br />
routines used by the CUPS image converting filter &#8220;imagetops&#8221;. An attacker<br />
could create a malicious SGI image file that could, possibly, execute<br />
arbitrary code as the &#8220;lp&#8221; user if the file was printed. (CVE-2008-3639)</p>
<p>An integer overflow flaw leading to a heap buffer overflow was discovered<br />
in the Text-to-PostScript &#8220;texttops&#8221; filter. An attacker could create a<br />
malicious text file that could, possibly, execute arbitrary code as the<br />
&#8220;lp&#8221; user if the file was printed. (CVE-2008-3640)</p>
<p>An insufficient buffer bounds checking flaw was discovered in the<br />
HP-GL/2-to-PostScript &#8220;hpgltops&#8221; filter. An attacker could create a<br />
malicious HP-GL/2 file that could, possibly, execute arbitrary code as the<br />
&#8220;lp&#8221; user if the file was printed. (CVE-2008-3641)</p>


<div id="comment_title"><!--acac-->Eu (<font color=#FF9966>usu&aacute;rio n&atilde;o registrado</font>) em <a href="#comment-28424" title="">16/10/2008 &agrave;s 6:16 pm</a> </div>
<p>É.. mas ainda não saiu atualização nenhuma para meu Mac aqui&#8230;</p>


<div id="comment_title"><!--acac-->Thomas Fortes (<font color=#FF9966>usu&aacute;rio n&atilde;o registrado</font>) em <a href="#comment-28433" title="">16/10/2008 &agrave;s 7:11 pm</a> </div>
<p>É que a apple tem a &#8220;ótima&#8221; idéia de mandar pacotes de correções, e não correções individuais, mesmo que seja pra corrigir falhas criticas.</p>
<p>Na verdade, se for descoberto um bug que irá fritar seu processador no domingo, e o pack de correções estiver previsto pra segunda, pode se preparar pra comprar outro.</p>

