Go to file
Robert Frohl a2ea93b424 Accepting request 975241 from home:adkorte:branches:security
- Update to 0.103.6
  * CVE-2022-20770: Fixed a possible infinite loop vulnerability in the CHM
    file parser. Issue affects versions 0.104.0 through 0.104.2 and LTS
    version 0.103.5 and prior versions.
  * CVE-2022-20796: Fixed a possible NULL-pointer dereference crash in the
    scan verdict cache check. Issue affects versions 0.103.4, 0.103.5,
    0.104.1, and 0.104.2.
  * CVE-2022-20771: Fixed a possible infinite loop vulnerability in the
    TIFF file parser. Issue affects versions 0.104.0 through 0.104.2 and
    LTS version 0.103.5 and prior versions. The issue only occurs if the
    "--alert-broken-media" ClamScan option is enabled. For ClamD, the
    affected option is "AlertBrokenMedia yes", and for libclamav it is the
    "CL_SCAN_HEURISTIC_BROKEN_MEDIA" scan option.
  * CVE-2022-20785: Fixed a possible memory leak in the HTML file parser /
    Javascript normalizer. Issue affects versions 0.104.0 through 0.104.2
    and LTS version 0.103.5 and prior versions.
  * CVE-2022-20792: Fixed a possible multi-byte heap buffer overflow write
    vulnerability in the signature database load module. The fix was to
    update the vendored regex library to the latest version. Issue affects
    versions 0.104.0 through 0.104.2 and LTS version 0.103.5 and prior
    versions.
  * ClamOnAcc: Fixed a number of assorted stability issues and added
    niceties for debugging ClamOnAcc.
  * Fixed an issue causing byte-compare subsignatures to cause an alert
    when they match even if other conditions of the given logical
    signatures were not met.
  * Fix memleak when using multiple byte-compare subsignatures. This fix
    was backported from 0.104.0.
  * Assorted bug fixes and improvements.
- Remove upstreamed clamav-ck_assert_msg.patch

OBS-URL: https://build.opensuse.org/request/show/975241
OBS-URL: https://build.opensuse.org/package/show/security/clamav?expand=0&rev=232
2022-05-06 09:28:32 +00:00
.gitattributes Package cleanup 2013-01-07 13:42:33 +00:00
.gitignore OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/clamav?expand=0&rev=1 2007-01-15 23:07:16 +00:00
clamav-0.103.6.tar.gz Accepting request 975241 from home:adkorte:branches:security 2022-05-06 09:28:32 +00:00
clamav-0.103.6.tar.gz.sig Accepting request 975241 from home:adkorte:branches:security 2022-05-06 09:28:32 +00:00
clamav-conf.patch Accepting request 883689 from home:adkorte 2021-04-08 08:27:46 +00:00
clamav-disable-yara.patch - Update to version 0.101.1: 2019-01-21 17:35:52 +00:00
clamav-document-maxsize.patch - clamav-document-maxsize.patch: in the "clamscan" and "clamdscan" manpages, 2021-11-04 13:53:57 +00:00
clamav-fips.patch - bsc#1119353, clamav-fips.patch: Fix freshclam crash in FIPS mode. 2020-11-10 16:48:44 +00:00
clamav-obsolete-config.patch Accepting request 750749 from home:adkorte:branches:security 2019-11-25 23:01:55 +00:00
clamav-rpmlintrc Accepting request 871162 from home:adkorte 2021-02-22 18:54:31 +00:00
clamav-tmpfiles.conf Accepting request 412543 from home:faweiss:branches:security 2016-07-21 14:03:06 +00:00
clamav.changes Accepting request 975241 from home:adkorte:branches:security 2022-05-06 09:28:32 +00:00
clamav.keyring Accepting request 883689 from home:adkorte 2021-04-08 08:27:46 +00:00
clamav.spec Accepting request 975241 from home:adkorte:branches:security 2022-05-06 09:28:32 +00:00
service.clamav-milter Accepting request 834369 from home:adkorte:branches:security 2020-09-18 14:19:44 +00:00
service.clamd Accepting request 883689 from home:adkorte 2021-04-08 08:27:46 +00:00
service.freshclam Accepting request 883689 from home:adkorte 2021-04-08 08:27:46 +00:00
system-user-vscan.conf Accepting request 871162 from home:adkorte 2021-02-22 18:54:31 +00:00
timer.freshclam Accepting request 883689 from home:adkorte 2021-04-08 08:27:46 +00:00