Package: clamav Version: 0.88.3-0volatile1 Severity: critical Tags: security Justification: causes serious data loss
Looks like this has not been reported yet: http://www.overflow.pl/adv/clamav_upx_heap.txt http://www.heise.de/newsticker/meldung/76523 http://www.clamav.net/security/0.88.4.html -Benoit- -- System Information: Debian Release: 3.1 Architecture: i386 (i686) Kernel: Linux 2.6.14.3 Locale: LANG=de_CH, LC_CTYPE=de_CH (charmap=ISO-8859-1) Versions of packages clamav depends on: ii clamav-freshclam [cla 0.88.3-0volatile1 downloads clamav virus databases f ii libc6 2.3.2.ds1-22sarge3 GNU C Library: Shared libraries an ii libclamav1 0.88.3-0volatile1 virus scanner library ii zlib1g 1:1.2.2-4.sarge.2 compression library - runtime -- no debconf information -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]