Please upgrade Clamav to version 0.95.1 since there are two possibly
dangerous vulnerabilities in 0.95.0:

A denial of service (DoS):

Bugzilla Bug 1552
UPack crash with malformed file
https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1552


Another denial of service with a serious possibility of remote code
execution:

Bugzilla Bug 1553
cli_url_canon: stack smashing
https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1553


Both problems appear to be solved in 0.95.1


Thank you in advance!

---
David Sanchez Martin
Administrador de Sistemas
[email protected]
GPG Key ID: 0x37E7AC1F

E2000 Nuevas Tecnologías
Tel : +34 902 830500

Attachment: smime.p7s
Description: S/MIME cryptographic signature

Reply via email to