UbuntuUpdates.org

Package "clamav"

Name: clamav

Description:

anti-virus utility for Unix - command-line interface

Latest version: 0.102.3+dfsg-0ubuntu0.16.04.1
Release: xenial (16.04)
Level: security
Repository: main
Homepage: https://www.clamav.net/

Links

Save this URL for the latest version of "clamav": https://www.ubuntuupdates.org/clamav


Download "clamav"


Other versions of "clamav" in Xenial

Repository Area Version
base main 0.99+dfsg-1ubuntu1
base universe 0.99+dfsg-1ubuntu1
security universe 0.102.3+dfsg-0ubuntu0.16.04.1
updates universe 0.102.3+dfsg-0ubuntu0.16.04.1
updates main 0.102.3+dfsg-0ubuntu0.16.04.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 0.102.3+dfsg-0ubuntu0.16.04.1 2020-05-21 18:06:30 UTC

  clamav (0.102.3+dfsg-0ubuntu0.16.04.1) xenial-security; urgency=medium

  * Updated to 0.102.2 to fix security issues
    - debian/libclamav9.symbols: updated for new version.
    - debian/rules: bumped CL_FLEVEL to 114.
    - CVE-2020-3327
    - CVE-2020-3341

 -- Marc Deslauriers <email address hidden> Tue, 19 May 2020 14:24:37 -0400

Source diff to previous version
CVE-2020-3341 A vulnerability in the PDF archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.101 - 0.102.2 could allow an unauthenticated, remote
CVE-2020-3327 A vulnerability in the ARJ archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.102.2 could allow an unauthenticated, remote attacke

Version: 0.102.2+dfsg-0ubuntu0.16.04.1 2020-02-18 14:07:39 UTC

  clamav (0.102.2+dfsg-0ubuntu0.16.04.1) xenial-security; urgency=medium

  * Updated to 0.102.2 to fix security issue (CVE-2020-3123)
    - debian/patches/*: synced patches with 0.102.2+dfsg-1.
    - debian/libclamav9.symbols: updated for new version.
    - debian/rules: bumped CL_FLEVEL to 113.

 -- Marc Deslauriers <email address hidden> Tue, 11 Feb 2020 08:45:45 -0500

Source diff to previous version
CVE-2020-3123 A vulnerability in the Data-Loss-Prevention (DLP) module in Clam AntiVirus (ClamAV) Software versions 0.102.1 and 0.102.0 could allow an unauthentica

Version: 0.102.1+dfsg-0ubuntu0.16.04.2 2020-01-08 15:06:18 UTC

  clamav (0.102.1+dfsg-0ubuntu0.16.04.2) xenial-security; urgency=medium

  * Updated to 0.102.1 to fix security issue (CVE-2019-15961)
    - debian/patches/*: synced patches with 0.102.1+dfsg-1ubuntu1.
    - debian/clamav-daemon.*.in,clamav-freshclam.*.in,
      clamav-daemon.templates: added new configuration options, dropped
      ClamOnAccess.
    - debian/clamav-deamon.install: install new clamonacc binary.
    - debian/clamav-docs.*: removed missing docs.
    - debian/libclamav9.install: added libfreshclam.so.2.
    - debian/libclamav9.symbols: updated for new version.
    - debian/rules: bumped CL_FLEVEL to 112.

 -- Marc Deslauriers <email address hidden> Tue, 07 Jan 2020 11:12:45 -0500

Source diff to previous version

Version: 0.101.4+dfsg-0ubuntu0.16.04.1 2019-10-03 00:06:55 UTC

  clamav (0.101.4+dfsg-0ubuntu0.16.04.1) xenial-security; urgency=medium

  * Updated to version 0.101.4 to fix security issues.
    - debian/patches/*: sync patches with 0.101.4+dfsg-1ubuntu1.
    - debian/clamav-daemon.postinst.in: removed DetectBrokenExecutables,
      added MaxScanTime, HeuristicAlerts, Alert*.
    - debian/*: updated for new library version.
    - debian/libclamav9.symbols: updated for new version.
    - debian/clamav-docs*, debian/rules: fix doc file locations.
    - debian/libclam-dev.install: include new header file.
    - debian/rules, debian/control: build with --with autoreconf.
    - CVE-2019-12625
    - CVE-2019-12900

 -- Marc Deslauriers <email address hidden> Tue, 24 Sep 2019 05:31:17 -0400

Source diff to previous version
CVE-2019-12625 clamav zip DoS
CVE-2019-12900 BZ2_decompress in decompress.c in bzip2 through 1.0.6 has an out-of-bounds write when there are many selectors.

Version: 0.100.3+dfsg-0ubuntu0.16.04.1 2019-04-08 14:07:04 UTC

  clamav (0.100.3+dfsg-0ubuntu0.16.04.1) xenial-security; urgency=medium

  * Updated to version 0.100.3 to fix security issues. (LP: #1822503)
    - debian/libclamav7.symbols: updated to new version.
    - CVE-2019-1787
    - CVE-2019-1788
    - CVE-2019-1789

 -- Marc Deslauriers <email address hidden> Thu, 04 Apr 2019 09:45:34 -0400

1822503 ClamAV needs updated to reflect security fixes
CVE-2019-1787 An out-of-bounds heap read condition when scanning PDF documents
CVE-2019-1788 An out-of-bounds heap write condition when scanning OLE2 files
CVE-2019-1789 An out-of-bounds heap read condition when scanning PE files



About   -   Send Feedback to @ubuntu_updates