Ukukhishwa kohlelo lokuphrinta lwe-CUPS 2.3 noshintsho kulayisensi yekhodi yephrojekthi

Cishe eminyakeni emithathu ngemva kokwakhiwa kwegatsha lokugcina elibalulekile, i-Apple kwethulwe ukukhululwa kwesistimu yokunyathelisa yamahhala IZINDEBE 2.3 (I-Common Unix Printing System), esetshenziswa kuma-macOS kanye nokusatshalaliswa okuningi kweLinux. Ukuthuthukiswa kwe-CUPS kulawulwa ngokuphelele yi-Apple, okwathi ngo-2007 amuncwa Easy Software Products, umdali CUPS.

Kusukela kulokhu kukhululwa, ilayisense yekhodi isishintshile isuka ku-GPLv2 ne-LGPLv2 yaya ku-Apache 2.0, ezovumela izinkampani zangaphandle ukuthi zisebenzise ikhodi ye-CUPS emikhiqizweni yazo ngaphandle kokuvula umthombo wezinguquko, futhi izovumela nokuhambisana kwelayisensi namanye amaphrojekthi omthombo ovulekile we-Apple. njenge-Swift, WebKit kanye ne-mDNSResponder. Ilayisensi ye-Apache 2.0 iphinde ichaze ngokusobala ukudluliselwa kwamalungelo kubuchwepheshe bobunikazi kanye nekhodi. Umphumela ongemuhle wokushintsha ilayisense isuka ku-GPL iye ku-Apache ukulahlekelwa ukuhambisana kwelayisensi namaphrojekthi ahlinzekwe ngaphansi kwelayisensi ye-GPLv2 kuphela (ilayisensi ye-Apache 2.0 iyahambisana ne-GPLv3, kodwa ayihambisani ne-GPLv2). Ukuze kuxazululwe le nkinga, okukhethekile kungeziwe esivumelwaneni selayisense yekhodi enelayisensi ngaphansi kwe-GPLv2/LGPLv2.

main shintsha ku-CUPS 2.3:

  • Kwengezwe ukusekelwa kokusethwa ngaphambilini kanye ne-"ukuqedaΒ»ezifanekiso zomsebenzi wokuphrinta wephrothokholi IPP Yonke indawo, ehlinzeka ngamathuluzi okukhetha ngokuguquguqukayo iphrinta etholakalayo kunethiwekhi, ikuvumela ukuthi unqume ukutholakala kwamaphrinta, uthumele izicelo futhi wenze imisebenzi yokuphrinta, kokubili ngokuqondile nangokusebenzisa ababungazi abaphakathi;
  • Isisetshenziswa esisha sifakiwe ipeveprinter ngokusebenzisa iseva elula ye-IPP Yonke indawo engasetshenziswa ukuhlola isofthiwe yeklayenti noma ukusebenzisa imiyalo yomsebenzi ngamunye wokuphrinta;
  • Umyalo we-lpstat manje ubonisa isimo sokumiswa kwemisebenzi emisha yokuphrinta;
  • Ukusekelwa kwe-HTTP Digest kanye nokuqinisekiswa kwe-SHA-256 kungeziwe kulabhulali ye-libcups;
  • Ekusebenziseni iphrothokholi yokwabelana ngephrinta Bonjour iqinisekise ukusetshenziswa kwamagama e-DNS-SD lapho kubhaliswa iphrinta kunethiwekhi;
  • Amandla okubhala amafayela esibaluli se-ippserver engeziwe kunsiza ye-ipptool;
  • Ukwesekwa okwengeziwe kwezinketho ze-MinTLS kanye ne-MaxTLS kumyalelo we-SSLOptions wokukhetha izinguqulo ze-TLS ozozisebenzisa;
  • Ukwesekwa okwengeziwe komyalelo we-UserAgentTokens ku-β€œclient.conf”;
  • Isevisi ye-systemd ebuyekeziwe ukuze usebenzise i-cupsd;
  • Umyalo we-lpoptions manje unamandla okusebenza namaphrinta we-IPP Yonke indawo angangezwe emigqeni yokuphrinta yendawo;
  • Kwengezwe ukusekelwa okulungile kwamaphrinta anemodi yokuphrinta yehlangothi langaphambili kumshayeli we-IPP Yonke indawo;
  • Imithetho eyengeziwe yokucabangela izici zamaphrinta e-USB i-Lexmark E120n, i-Lexmark Optra E310, iZebra, i-DYMO 450 Turbo, i-Canon MP280, i-Xerox ne-HP LaserJet P1102;
  • Ubungozi bulungisiwe I-CVE-2019-8696 ΠΈ I-CVE-2019-8675, okuholela ekuchichimeni kwebhafa eyabelwe isitaki lapho kucutshungulwa idatha engalungile emisebenzini ye-asn1_get_packed kanye ne-asn1_get_type esetshenziswa lapho kucutshungulwa izicelo ze-SNMP;
  • Izinsiza ze-cupsaddsmb ne-cupsestdsc zisusiwe.

Source: opennet.ru

Engeza amazwana