896f44d06a
- New version 1.3.2: * CVE-2024-20506: Changed the logging module to disable following symlinks on Linux and Unix systems so as to prevent an attacker with existing access to the 'clamd' or 'freshclam' services from using a symlink to corrupt system files. * CVE-2024-20505: Fixed a possible out-of-bounds read bug in the PDF file parser that could cause a denial-of-service condition. * Removed unused Python modules from freshclam tests including deprecated 'cgi' module that is expected to cause test failures in Python 3.13. * Fix unit test caused by expiring signing certificate. * Fixed a build issue on Windows with newer versions of Rust. Also upgraded GitHub Actions imports to fix CI failures. * Fixed an unaligned pointer dereference issue on select architectures. * Fixes to Jenkins CI pipeline. - Remove upstreamed 1305.patch OBS-URL: https://build.opensuse.org/request/show/1198813 OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=263
17 lines
801 B
Standard ML
17 lines
801 B
Standard ML
-----BEGIN PGP SIGNATURE-----
|
|
|
|
iQIcBAABAgAGBQJm12H9AAoJEMzg39Iewam/FnEP/0u1MpQAPPJItOdzWHSyIDDJ
|
|
Qh4eR9QTajod/fCpdKiNRUFyFRyCcG0K9OWiHaAawcYvDzF+iPYpNsHpzX+JtxCn
|
|
ZT/FwCx8sZK1DkcEXN30/Lv1a8qUd1QfPIvxihblpjJNGqTdNc7sGQyXoO6SUFvh
|
|
TBp8PCIfvzJMrl+mOacrXNvAMs0cPXFbdLJKFEwShuVRO0iCh9VKckezoX7Th6ok
|
|
tcS6gmqiik35/vZbc+b4VklLx6WiB9WcYoix1/bJIZeVdiUH98AjYS4Vm1ko8ogL
|
|
kK2BvIPSgvZBe4eoFezk8hB+Rsu7JeMHXT053XK0VvrnCm6N7CKrC0ErWMxwjnqZ
|
|
yRNUv/PEc4Rk/XGuEOuC8eCFxnIlERpXwNyR0m9rafbVIy3B+BwibbcLccR+BAx5
|
|
zEEVP5WsgrISSyOFGiCk9iwCm12eclFuTq+bhIldrchSe5VTjaVGrUe5DUE4QO1s
|
|
yDyF2/SrCml+rcwTO1meLG716ouxFbidt+AWOto6tRP3uDGOwRFm07cURJVRGws7
|
|
cyBmgZjJ7Xjl2oqahb1Tzc8a5VxsYRIiZdUQ7mf/X0o2aiWIghzv15q3RoFGTTIu
|
|
hrayzHnFQNUoMKOhaDldt8SlADBnz3KO3JJ6i6C0Nd5qyVciNqrBPTaxCd3X9WXi
|
|
bWmxqjxlXjvWdnnQoi6L
|
|
=jl1R
|
|
-----END PGP SIGNATURE-----
|