119 Commits

Author SHA256 Message Date
Stephan Kulow
5948c0a431 Accepting request 239485 from security
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/239485
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=69
2014-07-04 07:34:55 +00:00
Reinhard Max
9354c3737c Preliminary checkin fixing various security holes.
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=103
2014-06-26 15:35:06 +00:00
Stephan Kulow
27a2f3123a Accepting request 238066 from security
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/238066
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=68
2014-06-23 07:23:52 +00:00
Reinhard Max
9eebf39f01 - Fix dangling symlink in documentation (bnc#872682).
- Remove init scripts and complete systemd integration.
- Remove %ghost entry for /var/run/clamav.

OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=101
2014-06-12 13:36:29 +00:00
Stephan Kulow
8c93e5fff5 Accepting request 233239 from security
- Version 0.98.3

OBS-URL: https://build.opensuse.org/request/show/233239
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=67
2014-05-09 18:30:13 +00:00
Reinhard Max
019b469993 - Version 0.98.3
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=99
2014-05-08 15:21:16 +00:00
Stephan Kulow
cec2b505ec Accepting request 231146 from security
- do not disable security checks in configure. That would be
  insecure
- use DFP_64bit also for aarch64 (forwarded request 231142 from dirkmueller)

OBS-URL: https://build.opensuse.org/request/show/231146
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=66
2014-05-02 07:51:38 +00:00
Reinhard Max
ab126c170e Accepting request 231142 from devel:ARM:Factory
- do not disable security checks in configure. That would be
  insecure
- use DFP_64bit also for aarch64

OBS-URL: https://build.opensuse.org/request/show/231142
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=97
2014-04-23 11:33:39 +00:00
Stephan Kulow
5fc69a483a Accepting request 228125 from security
- initial systemd support unit files (forwarded request 226920 from bmanojlovic)

OBS-URL: https://build.opensuse.org/request/show/228125
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=65
2014-03-30 05:58:39 +00:00
e543ab3c80 Accepting request 226920 from home:bmanojlovic:branches:security
- initial systemd support unit files

OBS-URL: https://build.opensuse.org/request/show/226920
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=95
2014-03-28 16:04:21 +00:00
Stephan Kulow
a9e6ba286c Accepting request 223389 from security
- add fanotify systemcalls for power, s390 and arm (forwarded request 223009 from msmeissn)

OBS-URL: https://build.opensuse.org/request/show/223389
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=64
2014-02-22 17:07:14 +00:00
Reinhard Max
a8582c8355 Accepting request 223009 from home:msmeissn:branches:security
- add fanotify systemcalls for power, s390 and arm

OBS-URL: https://build.opensuse.org/request/show/223009
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=93
2014-02-21 14:43:48 +00:00
Reinhard Max
aaf08ee937 Improve changes entry for 0.98.1
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=92
2014-02-17 12:55:24 +00:00
Stephan Kulow
023acaa87c Accepting request 220894 from security
- Improve handling of /var/run/clamav.

OBS-URL: https://build.opensuse.org/request/show/220894
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=63
2014-02-06 05:47:14 +00:00
Reinhard Max
2e3ac5bbfe Add missing separator lines to .changes.
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=90
2014-02-04 18:24:39 +00:00
Reinhard Max
bc9c8634ed - Improve handling of /var/run/clamav.
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=89
2014-02-04 14:37:44 +00:00
Stephan Kulow
9e4f65d940 Accepting request 220513 from security
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/220513
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=62
2014-02-01 07:43:18 +00:00
Reinhard Max
409168917e - Version 0.98.1:
* remove copy of wxWidgets (halves the size of the tarball).
  * Decompression and scanning of files in "Xz" compression
    format.
  * Extraction, decompression, and scanning of files within Apple
    Disk Image (DMG) format.
  * Extraction, decompression, and scanning of files within
    Extensible Archive (XAR) format.  XAR format is commonly used
    for software packaging, such as PKG and RPM, as well as
    general archival.
  * Improvements and fixes to extraction and scanning of ole
    formats.
  * Option to force all scanned data to disk.
  * Various improvements to ClamAV configuration, support of third
    party libraries, and unit tests.

OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=87
2014-01-24 15:48:31 +00:00
Stephan Kulow
3efa592759 Accepting request 212242 from security
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/212242
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=61
2013-12-30 08:49:51 +00:00
Reinhard Max
fddb1b1ad5 Accepting request 211259 from openSUSE:Factory:PowerLE
- fix build failures on ppc64le:
  * fanotify is only supported on x86 platforms
  * building tomsfastmath on (non-x86) 64-bit platforms requires -DFP_64BIT

OBS-URL: https://build.opensuse.org/request/show/211259
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=85
2013-12-18 08:10:11 +00:00
Tomáš Chvátal
a865820f45 Accepting request 201270 from security
- Version 0.98 (bnc#841815)
 * code quality fixes on libclamav, clamd, sigtool, clamav-milter, clamconf and clamdtop
 * code quality fixes on libclamav, libclamunrar and freshclam
 * valgrind suppression rules for dl_catch_error complaints
 * bb #8385: PDF ASCII85Decode zero-length fix
 * libclamav: SCAN_ALL mode fixes
 * bb #7436: elf64 header early exit
 * iso9660: iso_scan_file rewrite
- use source urls, add gpg signature retrieval.

OBS-URL: https://build.opensuse.org/request/show/201270
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=60
2013-09-30 15:51:28 +00:00
9715995115 OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=83 2013-09-28 07:50:07 +00:00
43c9963191 - Version 0.98 (bnc#841815)
* code quality fixes on libclamav, clamd, sigtool, clamav-milter, clamconf and clamdtop
 * code quality fixes on libclamav, libclamunrar and freshclam
 * valgrind suppression rules for dl_catch_error complaints
 * bb #8385: PDF ASCII85Decode zero-length fix
 * libclamav: SCAN_ALL mode fixes
 * bb #7436: elf64 header early exit
 * iso9660: iso_scan_file rewrite
- use source urls, add gpg signature retrieval.

OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=82
2013-09-28 07:41:14 +00:00
4b519d3c75 Accepting request 201239 from home:lemmy04
OBS-URL: https://build.opensuse.org/request/show/201239
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=81
2013-09-28 07:38:07 +00:00
Stephan Kulow
0edb5cac9e Accepting request 173882 from security
- mirror the amavisd-new change of /var/spool/amavis bnc#663726

- Version 0.97.8 (bnc#816865)
  * libclamav: Bugs reported by Felix Groebert of the Google Security Team

OBS-URL: https://build.opensuse.org/request/show/173882
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=58
2013-05-02 10:34:00 +00:00
7f2aa965eb - mirror the amavisd-new change of /var/spool/amavis bnc#663726
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=79
2013-04-29 14:32:27 +00:00
42563f5417 - Version 0.97.8 (bnc#816865)
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=78
2013-04-29 09:50:53 +00:00
b9426dfc54 Accepting request 173623 from home:ecsos
update to 0.97.8

OBS-URL: https://build.opensuse.org/request/show/173623
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=77
2013-04-29 09:38:54 +00:00
Stephan Kulow
7eafa37df0 Accepting request 160305 from security
- Version 0.97.7 (bnc#809945)
  * several hardening fixes.

OBS-URL: https://build.opensuse.org/request/show/160305
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=57
2013-03-21 09:37:11 +00:00
Reinhard Max
2758bfd427 - Version 0.97.7 (bnc#809945)
* several hardening fixes.

OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=75
2013-03-20 17:47:08 +00:00
Stephan Kulow
9b1f342df8 Accepting request 148454 from security
- pids and sockets of clamd and freshclam now reside in /var/run
  instead of /var/lib (bnc#770395)
- modified pid path in clamd's, freshclam's and clamav-milter's
  init scripts (forwarded request 148449 from m_meister)

OBS-URL: https://build.opensuse.org/request/show/148454
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=55
2013-01-17 08:37:23 +00:00
Reinhard Max
a7d93681e5 Accepting request 148449 from home:m_meister:branches:security
- pids and sockets of clamd and freshclam now reside in /var/run
  instead of /var/lib (bnc#770395)
- modified pid path in clamd's, freshclam's and clamav-milter's
  init scripts

OBS-URL: https://build.opensuse.org/request/show/148449
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=73
2013-01-14 15:06:55 +00:00
Stephan Kulow
a19facfab0 Accepting request 147211 from security
- update daily.cvd to ver. 16364 
  released on 04 Jan 2013 20:37 :0500 (sig count: 492103)
- add cvd signature verification to %check section
- make Release field of clamav-db package contain cvd file versions (forwarded request 147180 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/147211
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=54
2013-01-07 14:01:33 +00:00
Reinhard Max
d8cb99a265 Package cleanup
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=71
2013-01-07 13:42:33 +00:00
a0b6eedea9 Accepting request 147180 from home:AndreasStieger:branches:security
- update daily.cvd to ver. 16364 
  released on 04 Jan 2013 20:37 :0500 (sig count: 492103)
- add cvd signature verification to %check section
- make Release field of clamav-db package contain cvd file versions

OBS-URL: https://build.opensuse.org/request/show/147180
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=70
2013-01-05 14:28:49 +00:00
Stephan Kulow
27f17f32ec Accepting request 137387 from security
Automatic submission by obs-autosubmit

OBS-URL: https://build.opensuse.org/request/show/137387
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=53
2012-10-07 16:54:33 +00:00
Reinhard Max
f3b0b3cf4b - 0.97.6 also fixes bnc#780181.
- The CVEs below correspont to: bnc#753611, bnc#753613, bnc#753610.

OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=68
2012-09-28 09:31:10 +00:00
Stephan Kulow
6a346fdd59 Accepting request 135021 from security
- update to 0.97.6
  * libclamav: bb#5751 - cl_scansis() may returan a file descriptor
    instead of a valid return code (forwarded request 135016 from toganm)

OBS-URL: https://build.opensuse.org/request/show/135021
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=52
2012-09-21 12:37:36 +00:00
Togan Muftuoglu
e99e46be20 Accepting request 135016 from home:toganm:branches:security
- update to 0.97.6
  * libclamav: bb#5751 - cl_scansis() may returan a file descriptor
    instead of a valid return code

OBS-URL: https://build.opensuse.org/request/show/135016
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=66
2012-09-19 11:40:29 +00:00
Ismail Dönmez
74cabe8a48 Accepting request 130840 from security
- avoid make check on qemu build (forwarded request 130817 from dirkmueller)

OBS-URL: https://build.opensuse.org/request/show/130840
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=51
2012-08-22 10:11:45 +00:00
cd3b51f9a6 Accepting request 130817 from openSUSE:Factory:ARM
- avoid make check on qemu build

OBS-URL: https://build.opensuse.org/request/show/130817
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=64
2012-08-15 06:41:23 +00:00
Stephan Kulow
959455440f Accepting request 125471 from security
- update to 0.95.5 [bnc#767574]
- addresses possible evasion cases in some archive formats
- CVE-2012-1457: allows to bypass malware detection via a TAR archive
  entry with a length field that exceeds the total TAR file size
- CVE-2012-1458: allows to bypass malware detection via a crafted
  reset interval in the LZXC header of a CHM file
- CVE-2012-1459: allows to bypass malware detection via a TAR archive
  entry with a length field corresponding to that entire entry, plus
  part of the header of the next entry
- also addresses stability issues in portions of the bytecode engine
- update clamav-conf.patch for moved lines
- add a definitions snapshot as {main,daily}.cvd no longer in tarball
- fix file-contains-date-and-time rpmlint warning (forwarded request 125380 from AndreasStieger)

OBS-URL: https://build.opensuse.org/request/show/125471
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=50
2012-06-25 10:22:39 +00:00
fb45a6895c Accepting request 125380 from home:AndreasStieger:branches:security
- update to 0.95.5 [bnc#767574]
- addresses possible evasion cases in some archive formats
- CVE-2012-1457: allows to bypass malware detection via a TAR archive
  entry with a length field that exceeds the total TAR file size
- CVE-2012-1458: allows to bypass malware detection via a crafted
  reset interval in the LZXC header of a CHM file
- CVE-2012-1459: allows to bypass malware detection via a TAR archive
  entry with a length field corresponding to that entire entry, plus
  part of the header of the next entry
- also addresses stability issues in portions of the bytecode engine
- update clamav-conf.patch for moved lines
- add a definitions snapshot as {main,daily}.cvd no longer in tarball
- fix file-contains-date-and-time rpmlint warning

OBS-URL: https://build.opensuse.org/request/show/125380
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=62
2012-06-19 20:15:38 +00:00
Stephan Kulow
1813976a0b Accepting request 110126 from security
Fix build with gcc 4.7 - Please work with upstream to resolve it in upstream code base. There is also a chance that a newer version of the package might have this fixed already. (forwarded request 109835 from dimstar)

OBS-URL: https://build.opensuse.org/request/show/110126
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=48
2012-03-20 12:28:55 +00:00
Togan Muftuoglu
59675fea51 Accepting request 109835 from home:dimstar:gcc47
Fix build with gcc 4.7 - Please work with upstream to resolve it in upstream code base. There is also a chance that a newer version of the package might have this fixed already.

OBS-URL: https://build.opensuse.org/request/show/109835
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=60
2012-03-20 10:39:33 +00:00
Lars Vogdt
6ff038e226 Accepting request 109833 from security
- New version 0.97.4 
 * libclamav/bytecode.c: reset to BYTECODE_AUTO mode at db reload
   so that we don't fail to re-enable or re-disable it again
   (bb#3789)
 * misc: performance improvement for HP-UX PA-RISC - patch from 
   Michael Pelletier <michael.v.pelletier*raytheon.com>
   (bb#3926)
 * libclamav/pe.c: parse vinfo where varfileinfo occours before
   stringfileinfo (bb#3062)
 * clamd: add support for on-access scanning on OS X with ClamAuth
   (beta)
 * libclamav/bytecode_api*: Fix Sparc crash (bb #4324)
 * libclamav: fix bytecode whitelisting
 * libclamav: fix macro detection in OLE2BlockMacros (bb#4269)
 * libclamav/readdb.c: allow comments in all db files (bb#3930)
 * libclamav/scanners.c: use lsigs when scanning vba data (bb#3922)
 * libclamav/matcher-hash.c: Fix SIGBUS on PA-RISC (big-endian)
   architectures (bb #3894). (forwarded request 109812 from toganm)

OBS-URL: https://build.opensuse.org/request/show/109833
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=47
2012-03-20 00:58:51 +00:00
b63eec4739 Accepting request 109812 from home:toganm:branches:security
- New version 0.97.4 
 * libclamav/bytecode.c: reset to BYTECODE_AUTO mode at db reload
   so that we don't fail to re-enable or re-disable it again
   (bb#3789)
 * misc: performance improvement for HP-UX PA-RISC - patch from 
   Michael Pelletier <michael.v.pelletier*raytheon.com>
   (bb#3926)
 * libclamav/pe.c: parse vinfo where varfileinfo occours before
   stringfileinfo (bb#3062)
 * clamd: add support for on-access scanning on OS X with ClamAuth
   (beta)
 * libclamav/bytecode_api*: Fix Sparc crash (bb #4324)
 * libclamav: fix bytecode whitelisting
 * libclamav: fix macro detection in OLE2BlockMacros (bb#4269)
 * libclamav/readdb.c: allow comments in all db files (bb#3930)
 * libclamav/scanners.c: use lsigs when scanning vba data (bb#3922)
 * libclamav/matcher-hash.c: Fix SIGBUS on PA-RISC (big-endian)
   architectures (bb #3894).

OBS-URL: https://build.opensuse.org/request/show/109812
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=58
2012-03-17 20:40:58 +00:00
Stephan Kulow
6a7e1ea948 replace license with spdx.org variant
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=46
2011-12-06 17:03:07 +00:00
OBS User buildservice-autocommit
e58ae21fed Updating link to change in openSUSE:Factory/clamav revision 46.0
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=3b88d94d4b0503343d77bb0fe4695589
2011-12-06 17:03:07 +00:00
Stephan Kulow
bee123360b Accepting request 88724 from security
Version 0.97.3 (bnc#724856, CVE-2011-3627)

OBS-URL: https://build.opensuse.org/request/show/88724
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=45
2011-10-21 13:40:19 +00:00