ricoh-mp2014-gdi
maintainer NeroBlackstone
· 0 votes
· scanned 2026-08-03 00:08:14.047287
LOW
View on AUR ↗
Why flagged
Downloads a printer driver installer directly from Ricoh's official support domain (support.ricoh.com) with a matching SHA256 checksum; extracts a bundled .deb and installs its contents — normal proprietary driver packaging with no obfuscation or exfiltration.
Triggered rules
LOW
AI review downgraded a static finding
llm_review
The static rules flagged this MEDIUM, but an AI model (anthropic/claude-4.6-sonnet-20260217) reviewed the full PKGBUILD and judged it LOW (confidence 80%): Downloads a printer driver installer directly from Ricoh's official support domain (support.ricoh.com) with a matching SHA256 checksum; extracts a bundled .deb and installs its contents — normal proprietary driver packaging with no obfuscation or exfiltration.
1 higher static finding superseded - not the current verdict (shown for transparency)
MEDIUM
source=() URL on a non-standard host
source_untrusted_domain
One or more source=() URLs point to a host outside the trusted allowlist (github.com, gitlab.com, codeberg.org, pypi.org, …).
-
PKGBUILD:14
source=("https://support.ricoh.com/bb/pub_e/dr_ut_e/0001276/0001276935/V101/z71456en.exe")
PKGBUILD
1 offending line(s) highlighted
1
# Maintainer: Nero Blackstone <gf7600gs@gmail.com>
2
3
pkgname=ricoh-mp2014-gdi
4
pkgver=1.01
5
pkgrel=1
6
pkgdesc="Ricoh MP 2014 series printer driver (GDI)"
7
arch=('x86_64')
8
url="https://support.ricoh.com/bb/html/dr_ut_e/apc/model/mp2014/mp2014.htm?lang=en"
9
license=('custom:proprietary')
10
depends=('cups' 'lib32-libcups')
11
makedepends=('7zip')
12
provides=('ricoh-mp2014-gdi')
13
conflicts=('ricoh-mp2014-gdi')
14
source=("https://support.ricoh.com/bb/pub_e/dr_ut_e/0001276/0001276935/V101/z71456en.exe")
15
sha256sums=('3b827a2f9ced1d985b6f3928d951790fc54f509b425a8cdbdf383bb356c43562')
16
17
prepare() {
18
cd "$srcdir"
19
20
# Extract the exe file (it's a self-extracting archive)
21
7z x -y z71456en.exe -oexe_extracted
22
23
# Find and extract the deb file
24
find exe_extracted -name "*.deb" -exec ar x {} \;
25
}
26
27
package() {
28
cd "$srcdir"
29
30
# Extract data from deb
31
tar -xf data.tar.* -C "$pkgdir"
32
33
# Remove /tmp directory from package (not needed)
34
rm -rf "$pkgdir/tmp"
35
36
# Fix permissions and ownership (deb has wrong owner)
37
find "$pkgdir" -type d -exec chmod 755 {} \;
38
find "$pkgdir" -type f -exec chmod 755 {} \;
39
chown -R root:root "$pkgdir/usr"
40
}
41
Scan history
| Scanned at (UTC) | Severity | Rules |
|---|---|---|
| 2026-08-03 00:08:14 | LOW | 2 |
| 2026-08-02 00:16:08 | LOW | 2 |
| 2026-08-01 00:11:18 | LOW | 2 |
| 2026-07-31 00:14:10 | LOW | 2 |
| 2026-07-30 00:17:23 | LOW | 2 |
| 2026-07-29 00:25:53 | LOW | 2 |
| 2026-07-28 00:07:28 | LOW | 2 |
| 2026-07-27 00:24:32 | LOW | 2 |
| 2026-07-26 00:07:32 | LOW | 2 |
| 2026-07-25 00:13:44 | LOW | 2 |
| 2026-07-24 00:02:28 | LOW | 2 |
| 2026-07-23 00:14:47 | LOW | 2 |
| 2026-07-22 00:29:32 | LOW | 2 |
| 2026-07-21 00:24:15 | LOW | 3 |
| 2026-07-20 00:19:49 | LOW | 3 |
| 2026-07-19 00:17:08 | LOW | 3 |
| 2026-07-18 00:14:48 | LOW | 3 |
| 2026-07-17 00:06:16 | LOW | 3 |
| 2026-07-16 00:05:41 | LOW | 3 |
| 2026-07-15 00:09:25 | LOW | 3 |