[Pkg-clamav-devel] Etch backported security fixes

Stephen Gran sgran at debian.org
Tue Nov 11 08:47:07 UTC 2008


This one time, at band camp, aCaB said:
> Hi,
> Out of two security fixes in 0.94.1 only one applies (off by one in
> get_unicode_name) the other one affects the screnc handler which has
> been pretty much rewritten since 0.90.1.
> 
> Patch attached.

That seems pretty straight forward, really :)  Copying the security team
to get some feedback.

Security:
This is 505134.  No CVE as yet, but from the bugtraq message it seems
pretty clear it will have one.
-- 
 -----------------------------------------------------------------
|   ,''`.                                            Stephen Gran |
|  : :' :                                        sgran at debian.org |
|  `. `'                        Debian user, admin, and developer |
|    `-                                     http://www.debian.org |
 -----------------------------------------------------------------
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Digital signature
Url : http://lists.alioth.debian.org/pipermail/pkg-clamav-devel/attachments/20081111/63a703e4/attachment.pgp 


More information about the Pkg-clamav-devel mailing list