4be77ca9be
* [CVE-2024-20506, bsc#1230162]: Changed the logging module to disable following symlinks on Linux and Unix systems so as to prevent an attacker with existing access to the 'clamd' or 'freshclam' services from using a symlink to corrupt system files. * [CVE-2024-20505, bsc#1230161]: Fixed a possible out-of-bounds read bug in the PDF file parser that could cause a denial-of-service (DoS) condition. * https://blog.clamav.net/2024/09/clamav-141-132-107-and-010312-security.html - New version 1.4.0: * Added support for extracting ALZ archives. * Added support for extracting LHA/LZH archives. * Added the ability to disable image fuzzy hashing, if needed. For context, image fuzzy hashing is a detection mechanism useful for identifying malware by matching images included with the malware or phishing email/document. * https://blog.clamav.net/2024/08/clamav-140-feature-release-and-clamav.html OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=264 |
||
---|---|---|
_constraints | ||
.gitattributes | ||
.gitignore | ||
1305.patch | ||
clam.tcl | ||
clamav-1.3.1.tar.gz | ||
clamav-1.3.1.tar.gz.sig | ||
clamav-1.3.2.tar.gz | ||
clamav-1.3.2.tar.gz.sig | ||
clamav-1.4.1.tar.gz | ||
clamav-1.4.1.tar.gz.sig | ||
clamav-conf.patch | ||
clamav-document-maxsize.patch | ||
clamav-fips.patch | ||
clamav-format.patch | ||
clamav-obsolete-config.patch | ||
clamav-rpmlintrc | ||
clamav-tmpfiles.conf | ||
clamav.changes | ||
clamav.keyring | ||
clamav.spec | ||
clamscan.log | ||
service.clamav-milter | ||
service.clamd | ||
service.clamonacc | ||
service.freshclam | ||
system-user-vscan.conf | ||
timer.freshclam |