Pop-Up Thingie

>>> Magnum BBS <<<
  • Home
  • Forum
  • Files
  • Log in

  1. Forum
  2. Usenet
  3. LINUX.DEBIAN.ANNOUNCE.SEC
  • [SECURITY] [DSA 1771-1] New clamav packages fix several vulnerabilities

    From Florian Weimer@1:229/2 to All on Wed Apr 15 22:00:16 2009
    From: [email protected]

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    - ------------------------------------------------------------------------ Debian Security Advisory DSA-1771-1 [email protected] http://www.debian.org/security/ Florian Weimer
    April 15, 2009 http://www.debian.org/security/faq
    - ------------------------------------------------------------------------

    Package : clamav
    Vulnerability : several
    Problem type : local (remote)
    Debian-specific: no
    CVE Id(s) : CVE-2008-6680 CVE-2009-1270

    Several vulnerabilities have been discovered in the ClamAV anti-virus
    toolkit:

    CVE-2008-6680

    Attackers can cayse a denial of service (crash) via a crafted EXE
    file that triggers a divide-by-zero error.

    CVE-2009-1270

    Attackers can cause a denial of service (infinite loop) via a
    crafted tar file that causes (1) clamd and (2) clamscan to hang.

    (no CVE Id yet)

    Attackers can cause a denial of service (crash) via a crafted EXE
    file that crashes the UPack unpacker.

    For the old stable distribution (etch), these problems have been fixed
    in version 0.90.1dfsg-4etch19.

    For the stable distribution (lenny), these problems have been fixed in
    version 0.94.dfsg.2-1lenny2.

    For the unstable distribution (sid), these problems have been fixed in
    version 0.95.1+dfsg-1.

    We recommend that you upgrade your clamav packages.

    Upgrade instructions
    - --------------------

    wget url
    will fetch the file for you
    dpkg -i file.deb
    will install the referenced file.

    If you are using the apt-get package manager, use the line for
    sources.list as given below:

    apt-get update
    will update the internal database
    apt-get upgrade
    will install corrected packages

    You may use an automated update by adding the resources from the
    footer to the proper configuration.


    Debian GNU/Linux 4.0 alias etch
    - -------------------------------

    Source archives:

    http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1dfsg-4etch19.dsc
    Size/MD5 checksum: 908 920abe65061e5eb169b87e32aa5d3b9b
    http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1dfsg-4etch19.diff.gz
    Size/MD5 checksum: 213157 382864e028d21fbbfe21d0f5a6fd6401
    http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1dfsg.orig.tar.gz
    Size/MD5 checksum: 11610428 6dc18602b0aa653924d47316f9411e49

    Architecture independent packages:

    http://security.debian.org/pool/updates/main/c/clamav/clamav-base_0.90.1dfsg-4etch19_all.deb
    Size/MD5 checksum: 201602 fd2011fb87ae44533d2eed4879fd2a73
    http://security.debian.org/pool/updates/main/c/clamav/clamav-docs_0.90.1dfsg-4etch19_all.deb
    Size/MD5 checksum: 1006730 bfe5a36e91f2838ad11a80840423b8a3
    http://security.debian.org/pool/updates/main/c/clamav/clamav-testfiles_0.90.1dfsg-4etch19_all.deb
    Size/MD5 checksum: 158850 b77255272475527f38c39f14b0bbb738

    alpha architecture (DEC Alpha)

    http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1dfsg-4etch19_alpha.deb
    Size/MD5 checksum: 862582 b1debf06af645e91da9d2a97ca0fb11e
    http://security.debian.org/pool/updates/main/c/clamav/clamav-dbg_0.90.1dfsg-4etch19_alpha.deb
    Size/MD5 checksum: 599142 4dfe7a77de3a280ed28c1d57ae3b39f9
    http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.90.1dfsg-4etch19_alpha.deb
    Size/MD5 checksum: 9305536 41ec86d8e2fb7874e15d2bdcde940d28
    http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.90.1dfsg-4etch19_alpha.deb
    Size/MD5 checksum: 181130 ae9c2d21b6eefbf08e653d2f44c7cd26
    http://security.debian.org/pool/updates/main/c/clamav/libclamav2_0.90.1dfsg-4etch19_alpha.deb
    Size/MD5 checksum: 374142 22a8392cffb3dea2077141fd76aa3f65
    http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.90.1dfsg-4etch19_alpha.deb
    Size/MD5 checksum: 466488 b9897cf698365105e82c929fa1bee6c0
    http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.90.1dfsg-4etch19_alpha.deb
    Size/MD5 checksum: 183018 a27520bc6236ce496439525c3e895283

    amd64 architecture (AMD x86_64 (AMD64))

    http://security.debian.org/pool/updates/main/c/clamav/libclamav2_0.90.1dfsg-4etch19_amd64.deb
    Size/MD5 checksum: 342926 bb28d32ec499f8eb543a26daef2de33c
    http://security.debian.org/pool/updates/main/c/clamav/clamav-dbg_0.90.1dfsg-4etch19_amd64.deb
    Size/MD5 checksum: 595648 f6e906a7c3944ccb52832e70e5b9f0c6
    http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1dfsg-4etch19_amd64.deb
    Size/MD5 checksum: 858800 ead6acb32a274b5041a49180bfb57a32
    http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.90.1dfsg-4etch19_amd64.deb
    Size/MD5 checksum: 9302006 8ea0743357d1e5db279b2c6c0b2bb2a2
    http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.90.1dfsg-4etch19_amd64.deb
    Size/MD5 checksum: 178258 8ec907c832c53d8524e01ba0b32db1ed
    http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.90.1dfsg-4etch19_amd64.deb
    Size/MD5 checksum: 178796 d785a45f29566abbcd5f8a36601daa7f
    http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.90.1dfsg-4etch19_amd64.deb
    Size/MD5 checksum: 357148 9084eeb829c490008e470e50ea78c364

    arm architecture (ARM)

    http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.90.1dfsg-4etch19_arm.deb
    Size/MD5 checksum: 172122 1b567437e42944a494757fd9b0e63063
    http://security.debian.org/pool/updates/main/c/clamav/libclamav2_0.90.1dfsg-4etch19_arm.deb
    Size/MD5 checksum: 336846 1d16c80c7e72e6b81605b51d128edee8
    http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.90.1dfsg-4etch19_arm.deb
    Size/MD5 checksum: 176222 26a06f2cb08628829564c625ac7c8e31
    http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.90.1dfsg-4etch19_arm.deb
    Size/MD5 checksum: 337568 f4271d3ab0d90bd986a929b0aac01cd2
    http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1dfsg-4etch19_arm.deb
    Size/MD5 checksum: 854158 4cde073f7ef6ccd17b5fd75ffd0be643
    http://security.debian.org/pool/updates/main/c/clamav/clamav-dbg_0.90.1dfsg-4etch19_arm.deb
    Size/MD5 checksum: 555522 963ad80e0800ab28ca90a8119b127a25

    [continued in next message]

    --- SoupGate-Win32 v1.05
    * Origin: you cannot sedate... all the things you hate (1:229/2)
  • Who's Online

  • Recent Visitors

    • Krenn
      Sun Jun 7 03:07:26 2026
      from Sydney, Nsw via Telnet
    • Krenn
      Sun Jun 7 01:30:12 2026
      from Sydney, Nsw via Telnet
    • Centurion
      Sat Jun 6 23:27:30 2026
      from Berea, Ohio via Telnet
    • Ab Cadd
      Sat Jun 6 15:42:53 2026
      from Sheboygan, Wi via Telnet
    • Centurion
      Sat Jun 6 15:32:28 2026
      from Berea, Ohio via Telnet
    • Krenn
      Sat Jun 6 11:38:56 2026
      from Sydney, Nsw via Telnet
    • Furryboy
      Sat Jun 6 10:56:29 2026
      from Romania, Galati via SSH
    • Centurion
      Fri Jun 5 22:28:01 2026
      from Berea, Ohio via Telnet
  • System Info

    Sysop: Keyop
    Location: Huddersfield, West Yorkshire, UK
    Users: 715
    Nodes: 16 (3 / 13)
    Uptime: 157:57:17
    Calls: 12,094
    Calls today: 2
    Files: 15,000
    Messages: 6,517,755

© >>> Magnum BBS <<<, 2026