oss-sec mailing list archives

Re: CVE id request: Clamav


From: Tomas Hoger <thoger () redhat com>
Date: Mon, 16 Jun 2008 16:41:27 +0200

On Sun, 15 Jun 2008 21:21:30 +1000 Steffen Joeris
<steffen.joeris () skolelinux de> wrote:

The upstream changelog says:
* libclamav/petite.c: fix possible invalid memory access (bb#1000)
                              Reported by Damian Put

For the sake of CVE description completeness, I'm adding that it's from
the clamav 0.93.1 changelog.

Applied patch:

http://svn.clamav.net/websvn/diff.php?repname=clamav-devel&path=/branches/0.93/libclamav/petite.c&rev=3886

-- 
Tomas Hoger / Red Hat Security Response Team


Current thread: