[Git][security-tracker-team/security-tracker][master] new clamav issues

Moritz Muehlenhoff (@jmm) jmm at debian.org
Thu Jul 2 11:26:19 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
909862aa by Moritz Muehlenhoff at 2026-07-02T12:25:47+02:00
new clamav issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -543,19 +543,33 @@ CVE-2026-24242 (NVIDIA Megatron Bridge for Linux contains a vulnerability where
 CVE-2026-24240 (NVIDIA Megatron Bridge for Linux contains a vulnerability where an att ...)
 	NOT-FOR-US: NVIDIA
 CVE-2026-20244 (A vulnerability in the DMG file format parser of ClamAV could allow an ...)
-	TODO: check
+	- clamav <unfixed>
+	[trixie] - clamav <no-dsa> (clamav is updated via -updates)
+	NOTE: https://blog.clamav.net/2026/07/clamav-153-and-145-security-patch.html
 CVE-2026-20243 (A vulnerability in the ALZ file format parser of ClamAV could allow an ...)
-	TODO: check
+	- clamav <unfixed>
+	[trixie] - clamav <no-dsa> (clamav is updated via -updates)
+	NOTE: https://blog.clamav.net/2026/07/clamav-153-and-145-security-patch.html
 CVE-2026-20217 (A vulnerability in the PESpin file format parser of ClamAV could allow ...)
-	TODO: check
+	- clamav <unfixed>
+	[trixie] - clamav <no-dsa> (clamav is updated via -updates)
+	NOTE: https://blog.clamav.net/2026/07/clamav-153-and-145-security-patch.html
 CVE-2026-20216 (A vulnerability in the InstallShield file format parser of ClamAV coul ...)
-	TODO: check
+	- clamav <unfixed>
+	[trixie] - clamav <no-dsa> (clamav is updated via -updates)
+	NOTE: https://blog.clamav.net/2026/07/clamav-153-and-145-security-patch.html
 CVE-2026-20215 (A vulnerability in the 7z file format parser of ClamAV could allow an  ...)
-	TODO: check
+	- clamav <unfixed>
+	[trixie] - clamav <no-dsa> (clamav is updated via -updates)
+	NOTE: https://blog.clamav.net/2026/07/clamav-153-and-145-security-patch.html
 CVE-2026-20214 (A vulnerability in the FSG file format parser of ClamAV could allow an ...)
-	TODO: check
+	- clamav <unfixed>
+	[trixie] - clamav <no-dsa> (clamav is updated via -updates)
+	NOTE: https://blog.clamav.net/2026/07/clamav-153-and-145-security-patch.html
 CVE-2026-20213 (A vulnerability in the PE file format parser of ClamAV could allow an  ...)
-	TODO: check
+	- clamav <unfixed>
+	[trixie] - clamav <no-dsa> (clamav is updated via -updates)
+	NOTE: https://blog.clamav.net/2026/07/clamav-153-and-145-security-patch.html
 CVE-2026-20191 (A vulnerability in Cisco Catalyst Center could allow an unauthenticate ...)
 	TODO: check
 CVE-2026-14358 (Improper neutralization of input during web page generation ('cross-si ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/909862aaa00caa4551c9eb6bc77f5f92662f7c4e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/909862aaa00caa4551c9eb6bc77f5f92662f7c4e
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260702/1014212b/attachment.htm>


More information about the debian-security-tracker-commits mailing list