Hi all,

(Seems like I'll sometimes have net access here ... :-) )

A few days ago I had already added a lenny-security branch in our git repo that
includes patches supplied by Scott to fix the non-rar issues. Anyone with a bit
of time left is invited to ping [email protected] with the suggested
changes.

Best,
Michael

----- Forwarded message from Aiko Barz <[email protected]> -----

Date: Mon, 06 Apr 2009 10:32:20 +0200
From: Aiko Barz <[email protected]>
To: Debian Bug Tracking System <[email protected]>
Subject: [Pkg-clamav-devel] Bug#522744: clamav: DOS and filter bypass
X-Mailer: reportbug 3.48
Reply-To: Aiko Barz <[email protected]>, [email protected]

Package: clamav
Version: 0.94.dfsg.2-1
Severity: important


DOS against clamav with prepared tar archives:
https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1462
(Fixed in 0.95)

Filter bypass with prepared rar archives:
https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1467
(Fixed in 0.95. Alright, doesn't matter on Debian...)

detect-broken is broken: Floating point exception
https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1335
(Fixed in 0.95)

-- Package-specific info:
[...]



_______________________________________________
Pkg-clamav-devel mailing list
[email protected]
http://lists.alioth.debian.org/mailman/listinfo/pkg-clamav-devel


----- End forwarded message -----

Attachment: pgpWiuILEZ18A.pgp
Description: PGP signature

_______________________________________________
Pkg-clamav-devel mailing list
[email protected]
http://lists.alioth.debian.org/mailman/listinfo/pkg-clamav-devel

Reply via email to