Bug#393445: Security: 0.88.5 fixes PE heap overflow and crash in chmunpack

2006-10-16 Thread Stephen Gran
close 0.88.5-1
kthxbye
This one time, at band camp, [EMAIL PROTECTED] said:
> The newly released version 0.88.5 of clamav fixes a crash induced via
> manipulated CHM help files and a buffer overflow in the PE handling code which
> may lead to remote code execution.
> 
> See official changelog at
> http://sourceforge.net/project/shownotes.php?release_id=455799

Already uploaded.  I am backporting the patches for sarge now.
-- 
 -
|   ,''`.Stephen Gran |
|  : :' :[EMAIL PROTECTED] |
|  `. `'Debian user, admin, and developer |
|`- http://www.debian.org |
 -


signature.asc
Description: Digital signature


Bug#393445: Security: 0.88.5 fixes PE heap overflow and crash in chmunpack

2006-10-16 Thread [EMAIL PROTECTED]
Package: clamav
Version: all
Severity: critical
Tags: security, fixed-upstream

The newly released version 0.88.5 of clamav fixes a crash induced via
manipulated CHM help files and a buffer overflow in the PE handling code which
may lead to remote code execution.

See official changelog at
http://sourceforge.net/project/shownotes.php?release_id=455799

Fixed upstream.