[Bug 271546] Re: [hardy] Multiple unfixed CVEs

Launchpad Bug Tracker 271546 at bugs.launchpad.net
Thu Dec 4 22:13:27 UTC 2008


This bug was fixed in the package clamav - 0.92.1~dfsg2-1.1ubuntu0.4

---------------
clamav (0.92.1~dfsg2-1.1ubuntu0.4) hardy-security; urgency=low

  * SECURITY UPDATE: denial of service via out-of-memory null dereferences,
    memory leaks, and file descriptor leaks:
    - 29_CVE-2008-3912.dpatch: backported upstream fixes.
    - 30_CVE-2008-3913.dpatch: backported upstream fixes.
    - 31_CVE-2008-3914.dpatch: backported upstream fixes.
    - LP: #271546
  * SECURITY UPDATE: denial of service via crafted JPEG file
    - 32_cli_check_jpeg_exploit.dpatch: backported upstream fixes.
    - CVE-2008-5314, LP: #304017

 -- Leonel Nunez <leonel at enelserver.com>   Thu, 04 Dec 2008 10:47:40
-0700

** Changed in: clamav (Ubuntu Hardy)
       Status: New => Fix Released

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2008-3912

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2008-3913

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2008-3914

-- 
[hardy] Multiple unfixed CVEs
https://bugs.launchpad.net/bugs/271546
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs at lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs




More information about the universe-bugs mailing list