By the way, the monthly report for this September is published and is available at https://www.freexian.com/blog/debian-lts-report-2024-09/
Temporary remediation
While we prepare updates for the different Debian releases, this is a list of actions that remediate the exposure to the vulnerabilities:
Remove cups from BrowseRemoteProtocols in /etc/cups/cups-browsed.conf or disable cups-browsed if possible
Block any incoming traffic to the 631 UDP port
Thanks to the Debian Security Team for their collaboration on addressing these issues!
You may be aware of the OpenPrinting CUPS vulnerabilities disclosed yesterday by Simone Margaritelli.
Unfortunately, this disclosure happened without the planned coordination between the reporter, the developers and the different distributions, without waiting for proper and tested patches to be available. As a result, vulnerable machines are currently exposed.
The Debian LTS team is working on preparing updates for the different Debian releases
So, anyone who wants a Debian supplier can just jump on this and that's exactly what they get.
"Any contribution gives you the right to submit a list of packages that you rely on, and that should be prioritized in terms of security support."
"If your funding level is at least Bronze 1, Freexian will subscribe the person listed as technical contact to a private mailing list that all contributing companies can use to discuss their needs and share their experience."
"If your funding level is at least Silver 1, you can submit your queries and requests about Debian LTS in general and/or any security update in particular to us."
"If your funding level is Platinum, you can submit to us functional tests covering the set of packages that you care about, and we will run those tests on updated packages to detect undesired regressions"
The April issue has been released! This month we take a look at virtual memory in Linux. On the DVD: @elementary 7.1 and #Mageia 9 https://shop.linuxnewmedia.com/shop/eh30281-linux-magazine-281-print-issue-256#attr= #Linux #FOSS #VirtualMemory #OpenSource #DebianLTS #openSUSE #AlmaLinux #Python #firewall