[Bug 360502] [NEW] Fix relevant security bugs from 0.95.1 in earlier releases

Scott Kitterman ubuntu at kitterman.com
Mon Apr 13 14:01:01 UTC 2009


*** This bug is a security vulnerability ***

Public security bug reported:

Binary package hint: clamav

clamav (0.94.dfsg.2-1ubuntu0.3) intrepid-security; urgency=high

  * SECURITY UPDATE:
  * References
  * libclamav/others.h: harden CLI_ISCONTAINED macro (bb#1552) (Denial of
    service)
  * Note: clamav-milter bugs such as 1499, 1522, 1524, and 1531 are not
    relevant to clamav 0.94.2 and earlier versions
  * Note: The code related to clamav bug 1553 was substantially rewritten in
    0.95, so it is also not relevant to clamav 0.94.2 and earlier versions
  * Bump CL_FLEVEL_DCONF to 0.95.1 level since relevant security patches are
    applied
  * Added CVE references for 0.94.dfsg.2-1ubuntu0.2 now that they've been
    assigned

 -- Scott Kitterman <scott at kitterman.com>  Mon, 13 Apr 2009 09:34:33
-0400

** Affects: clamav (Ubuntu)
     Importance: High
         Status: Fix Released

** Affects: clamav (Ubuntu Dapper)
     Importance: Undecided
         Status: New

** Affects: clamav (Ubuntu Gutsy)
     Importance: Undecided
         Status: New

** Affects: clamav (Ubuntu Hardy)
     Importance: Undecided
         Status: New

** Affects: clamav (Ubuntu Intrepid)
     Importance: High
     Assignee: Scott Kitterman (kitterman)
         Status: In Progress

** Visibility changed to: Public

** Also affects: clamav (Ubuntu Dapper)
   Importance: Undecided
       Status: New

** Also affects: clamav (Ubuntu Gutsy)
   Importance: Undecided
       Status: New

** Also affects: clamav (Ubuntu Hardy)
   Importance: Undecided
       Status: New

** Also affects: clamav (Ubuntu Intrepid)
   Importance: Undecided
       Status: New

-- 
Fix relevant security bugs from 0.95.1 in earlier releases
https://bugs.launchpad.net/bugs/360502
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs at lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs




More information about the universe-bugs mailing list