[Pkg-clamav-devel] Bug#888553: jessie-pu: package clamav/0.99.2+dfsg-0+deb8u2
Sebastian Andrzej Siewior
sebastian at breakpoint.cc
Sat Jan 27 01:07:51 UTC 2018
Package: release.debian.org
User: release.debian.org at packages.debian.org
Usertags: pu
Tags: jessie
Severity: normal
Clamav released 0.99.3. Recently upstream decided to release 0.99.2.1 as
a security hostfix release only. However they then decided not to use a
four digit version but three as usually and so the security hotfix is
now 0.99.3.
In unstable we have 0.99.3~beta2 which was a pre-release of the upcomming
0.99.3 before they decided to release a security fix. So in unstable we
have a "beta2" which contains all the security fixes which are part of
their final 0.99.3 release.
Instead reverting all that stuff I prepared for the 0.99.3 I backported
the delta from 0.99.2..0.99.3 and prepared an incremental 0.99.2 release
for Jessie [0]. Clamav itself identifies as 0.99.3 because otherwise it
will complain about being too old.
I synced the queue with Stretch. One patch (which is new) the one
addressing upstream bug#11549 [1] which triggered today. Upstream forgot
to include it in their 0.99.3 release and I had it already in
0.99.2+dfsg-5 (as of Stretch). While upstream claims that this won't
happen again with *their* signatures, it might happen with
others/community and it *did* trigger earlier [2].
Please find attached a debdiff. The official announcement is at [3].
If you prefer another way of dealing with this please let me know.
[0] A second pair of eyes wouldn't hurt, after all it is 2am here.
[1] http://blog.clamav.net/2018/01/update-on-recent-file-descriptors-issue.html
[2] https://bugs.debian.org/824196
[3] http://blog.clamav.net/2018/01/clamav-0993-has-been-released.html
Sebastian
-------------- next part --------------
A non-text attachment was scrubbed...
Name: clamav_debu8u3.patch
Type: text/x-diff
Size: 40387 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-clamav-devel/attachments/20180127/57added4/attachment-0001.patch>
More information about the Pkg-clamav-devel
mailing list