CVSROOT:        /cvs
Module name:    ports
Changes by:     st...@cvs.openbsd.org   2021/04/07 13:17:21

Modified files:
        security/clamav: Makefile distinfo 
        security/clamav/patches: patch-etc_clamd_conf_sample 
                                 patch-etc_freshclam_conf_sample 
        security/clamav/pkg: PLIST 

Log message:
update to clamav-0.103.2, 
https://blog.clamav.net/2021/04/clamav-01032-security-patch-release.html

CVE-2021-1252 <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-1252>:
Fix for Excel XLM parser infinite loop. Affects 0.103.0 and 0.103.1 only.

CVE-2021-1404 <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-1404>:
Fix for PDF parser buffer over-read; possible crash. Affects 0.103.0 and 
0.103.1 only.

CVE-2021-1405 <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-1405>:
Fix for mail parser NULL-dereference crash. Affects 0.103.1 and prior.

Fix possible memory leak in PNG parser.

FreshClam: Deprecate the SafeBrowsing config option. The SafeBrowsing
option will no longer do anything.

FreshClam: Improved HTTP 304, 403, & 429 handling.

Fix the FreshClam mirror-sync issue where a downloaded database is
"older than the version advertised."

Reply via email to