MGASA-2015-0056
Dashboard / Vulnerabilities / MGASA-2015-0056
Summary: Updated clamav packages fix security vulnerabilities
Details: ClamAV 0.98.6 is a maintenance release to fix some bugs, some of them being security bugs: Fix a heap out of bounds condition with crafted Yoda's crypter files. This issue was discovered by Felix Groebert of the Google Security Team. Fix a heap out of bounds condition with crafted mew packer files. This issue was discovered by Felix Groebert of the Google Security Team. Fix a heap out of bounds condition with crafted upx packer files. This issue was discovered by Kevin Szkudlapski of Quarkslab. Fix a heap out of bounds condition with crafted upack packer files. This issue was discovered by Sebastian Andrzej Siewior (CVE-2014-9328). Compensate a crash due to incorrect compiler optimization when handling crafted petite packer files. This issue was discovered by Sebastian Andrzej Siewior.
References: https://advisories.mageia.org/MGASA-2015-0056.html, https://bugs.mageia.org/show_bug.cgi?id=15155, http://blog.clamav.net/2015/01/clamav-0986-has-been-released.html
Affected packages
Package
Name: clamav
Purl: pkg:rpm/mageia/clamav?arch=source&distro=mageia-4
Affected ranges
Type: ECOSYSTEM
Events:
