[clamav/f17] updated to 0.97.5

ensc ensc at fedoraproject.org
Sat Jun 16 10:28:23 UTC 2012


commit 85ab500a505b89cd3acf71cc52e26dd65e4e6089
Author: Enrico Scholz <enrico.scholz at informatik.tu-chemnitz.de>
Date:   Sat Jun 16 12:19:48 2012 +0200

    updated to 0.97.5

 .gitignore  |    4 +++-
 clamav.spec |   12 +++++++++++-
 lastver     |    2 +-
 sources     |    2 +-
 4 files changed, 16 insertions(+), 4 deletions(-)
---
diff --git a/.gitignore b/.gitignore
index 8e9b4db..61d0e64 100644
--- a/.gitignore
+++ b/.gitignore
@@ -1 +1,3 @@
-/clamav-0.97.4-norar.tar.xz
+/clamav-0.97.5-norar.tar.xz
+/daily-15050.cvd
+/main-54.cvd
diff --git a/clamav.spec b/clamav.spec
index 68ec142..e73e5fa 100644
--- a/clamav.spec
+++ b/clamav.spec
@@ -54,7 +54,7 @@ test "$1" = "0" || /bin/systemctl try-restart %2 >/dev/null 2>&1 || :\
 
 Summary:	End-user tools for the Clam Antivirus scanner
 Name:		clamav
-Version:	0.97.4
+Version:	0.97.5
 Release:	%release_func 1700
 License:	%{?with_unrar:proprietary}%{!?with_unrar:GPLv2}
 Group:		Applications/File
@@ -867,6 +867,16 @@ test "$1" != "0" || /sbin/initctl -q stop clamav-milter || :
 
 
 %changelog
+* Sat Jun 16 2012 Enrico Scholz <enrico.scholz at informatik.tu-chemnitz.de> - 0.97.5-1700
+- updated to 0.97.5
+- CVE-2012-1457: allows to bypass malware detection via a TAR archive
+  entry with a length field that exceeds the total TAR file size
+- CVE-2012-1458: allows to bypass malware detection via a crafted
+  reset interval in the LZXC header of a CHM file
+- CVE-2012-1459: allows to bypass malware detection via a TAR archive
+  entry with a length field corresponding to that entire entry, plus
+  part of the header of the next entry
+
 * Fri Apr 13 2012 Enrico Scholz <enrico.scholz at informatik.tu-chemnitz.de> - 0.97.4-1700
 - updated to 0.97.4
 - build with -fPIE
diff --git a/lastver b/lastver
index 7245ec2..2d92d4a 100644
--- a/lastver
+++ b/lastver
@@ -1 +1 @@
-0.97.4
+0.97.5
diff --git a/sources b/sources
index 37d43b1..94f05dd 100644
--- a/sources
+++ b/sources
@@ -1 +1 @@
-3261d6e7c6542ea679075b8c53bd211d  clamav-0.97.4-norar.tar.xz
+f8e88e6adc82349e5babfa6ee7bb98fa  clamav-0.97.5-norar.tar.xz


More information about the scm-commits mailing list