Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 79194

Summary: app-antivirus/clamav: DoS by corrupt ZIP archive (CAN-2005-0133)
Product: Gentoo Security Reporter: Thierry Carrez (RETIRED) <koon>
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Status: RESOLVED FIXED    
Severity: minor CC: ticho
Priority: High    
Version: unspecified   
Hardware: All   
OS: All   
URL: http://sourceforge.net/project/shownotes.php?release_id=300116
Whiteboard: B3 [glsa] jaervosz
Package list:
Runtime testing required: ---

Description Thierry Carrez (RETIRED) gentoo-dev 2005-01-23 04:34:01 UTC
SuSE clamav package maintainer found a bug that makes clamav crash when scanning certain zip files.
Comment 1 Thierry Carrez (RETIRED) gentoo-dev 2005-01-23 04:36:04 UTC
Semi-public, patch at :
http://cvs.sourceforge.net/viewcvs.py/clamav/clamav-devel/libclamav/scanners.c?r1=1.124&r2=1.125

Release 0.81 should be out on Jan 26, maybe better to wait for this.
Comment 2 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2005-01-31 11:54:56 UTC
GLSA 200501-46