clamav/clamav-1.3.2.tar.gz.sig
Reinhard Max 896f44d06a Accepting request 1198813 from home:adkorte:branches:security
- New version 1.3.2:
  * CVE-2024-20506: Changed the logging module to disable following
    symlinks on Linux and Unix systems so as to prevent an attacker
    with existing access to the 'clamd' or 'freshclam' services from
    using a symlink to corrupt system files.
  * CVE-2024-20505: Fixed a possible out-of-bounds read bug in the PDF
    file parser that could cause a denial-of-service condition.
  * Removed unused Python modules from freshclam tests including
    deprecated 'cgi' module that is expected to cause test failures in
    Python 3.13.
  * Fix unit test caused by expiring signing certificate.
  * Fixed a build issue on Windows with newer versions of Rust. Also
    upgraded GitHub Actions imports to fix CI failures.
  * Fixed an unaligned pointer dereference issue on select architectures.
  * Fixes to Jenkins CI pipeline.
- Remove upstreamed 1305.patch

OBS-URL: https://build.opensuse.org/request/show/1198813
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=263
2024-09-09 12:39:53 +00:00

17 lines
801 B
Standard ML

-----BEGIN PGP SIGNATURE-----
iQIcBAABAgAGBQJm12H9AAoJEMzg39Iewam/FnEP/0u1MpQAPPJItOdzWHSyIDDJ
Qh4eR9QTajod/fCpdKiNRUFyFRyCcG0K9OWiHaAawcYvDzF+iPYpNsHpzX+JtxCn
ZT/FwCx8sZK1DkcEXN30/Lv1a8qUd1QfPIvxihblpjJNGqTdNc7sGQyXoO6SUFvh
TBp8PCIfvzJMrl+mOacrXNvAMs0cPXFbdLJKFEwShuVRO0iCh9VKckezoX7Th6ok
tcS6gmqiik35/vZbc+b4VklLx6WiB9WcYoix1/bJIZeVdiUH98AjYS4Vm1ko8ogL
kK2BvIPSgvZBe4eoFezk8hB+Rsu7JeMHXT053XK0VvrnCm6N7CKrC0ErWMxwjnqZ
yRNUv/PEc4Rk/XGuEOuC8eCFxnIlERpXwNyR0m9rafbVIy3B+BwibbcLccR+BAx5
zEEVP5WsgrISSyOFGiCk9iwCm12eclFuTq+bhIldrchSe5VTjaVGrUe5DUE4QO1s
yDyF2/SrCml+rcwTO1meLG716ouxFbidt+AWOto6tRP3uDGOwRFm07cURJVRGws7
cyBmgZjJ7Xjl2oqahb1Tzc8a5VxsYRIiZdUQ7mf/X0o2aiWIghzv15q3RoFGTTIu
hrayzHnFQNUoMKOhaDldt8SlADBnz3KO3JJ6i6C0Nd5qyVciNqrBPTaxCd3X9WXi
bWmxqjxlXjvWdnnQoi6L
=jl1R
-----END PGP SIGNATURE-----