From bc8afe9799d0b226e7d1dd07eeffd314a94ecdf7 Mon Sep 17 00:00:00 2001 From: Neil McGovern Date: Thu, 22 Sep 2005 19:32:07 +0000 Subject: New clam vuns. Not much info in teh DTSA, as the CVEs are still reserved. git-svn-id: svn+ssh://svn.debian.org/svn/secure-testing@2099 e39458fd-73e7-0310-bf30-c45bca0a0e42 --- data/DTSA/advs/19-clamav.adv | 20 ++++++++++++++++++++ 1 file changed, 20 insertions(+) create mode 100644 data/DTSA/advs/19-clamav.adv (limited to 'data/DTSA/advs') diff --git a/data/DTSA/advs/19-clamav.adv b/data/DTSA/advs/19-clamav.adv new file mode 100644 index 0000000000..da039c347c --- /dev/null +++ b/data/DTSA/advs/19-clamav.adv @@ -0,0 +1,20 @@ +source: clamav +date: September 22nd, 2005 +author: Neil McGovern +vuln-type: buffer overflow and infinate loop problems +problem-scope: remote +debian-specific: no +cve: CAN-2005-2919 CAN-2005-2920 +testing-fix: 0.86.2-4etch2 +sid-fix: 0.87-1 +upgrade: apt-get upgrade + +Multiple security holes were found in clamav: + +CAN-2005-2919 + + A possible infinate loop has been discovered in libclamav/fsg.c + +CAN-2005-2920 + + A possible buffer overflow has been found in libclamav/upx.c -- cgit v1.2.3