]> git.ipfire.org Git - ipfire-2.x.git/commit
clamav: Update to 1.0.1
authorMatthias Fischer <matthias.fischer@ipfire.org>
Fri, 17 Feb 2023 18:00:48 +0000 (19:00 +0100)
committerMichael Tremer <michael.tremer@ipfire.org>
Mon, 20 Feb 2023 15:47:24 +0000 (15:47 +0000)
commitd08fb579282307f4db936996c6e6110d442d79f4
treef875b25d232b675f788c4704a936bd6b80aac0a6
parent341415bc38c2123a274c7474a382c85fb2b15b35
clamav: Update to 1.0.1

For details see:
https://blog.clamav.net/2023/02/clamav-01038-01052-and-101-patch.html

"ClamAV 1.0.1 is a critical patch release with the following fixes:

    CVE-2023-20032: Fixed a possible remote code execution
    vulnerability in the HFS+ file parser. The issue affects versions
    1.0.0 and earlier, 0.105.1 and earlier, and 0.103.7 and earlier.
    Thank you to Simon Scannell for reporting this issue.

    CVE-2023-20052: Fixed a possible remote information leak
    vulnerability in the DMG file parser. The issue affects versions
    1.0.0 and earlier, 0.105.1 and earlier, and 0.103.7 and earlier.
    Thank you to Simon Scannell for reporting this issue.

    Fix an allmatch detection issue with the preclass bytecode hook."

Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
lfs/clamav