[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Preparation of the next stable Debian GNU/Linux update (I)



This one time, at band camp, Martin Zobel-Helas said:
> Preparation of Debian GNU/Linux 3.1r5
> =====================================
> 
> An up-to-date version is at <http://release.debian.org/stable/3.1/3.1r5/>.
> 
> We are preparing the next revision of the current stable Debian
> distribution (sarge) and will frequently send reports so people can
> actually comment on it and intervene whenever this is required.

I would like to see clamav 0.84-2.sarge.13 go in, if possible,  It
fixes:

  * Unusual MIME Encoding Content Filter Bypass [ CVE-2006-6406 ]
  * nested multipart DoS  [ CVE-2006-6481 ] 
  * Fix null pointer dereference on base64 MIME attachments without 
    file names [ CVE-2006-5874 ]
  * libclamav/rebuildpe.c: fix possible heap overflow [IDEF1597]
  * libclamav/chmunpack.c: fix possible crash [IDEF1736]

Thanks for your consideration.
-- 
 -----------------------------------------------------------------
|   ,''`.                                            Stephen Gran |
|  : :' :                                        sgran@debian.org |
|  `. `'                        Debian user, admin, and developer |
|    `-                                     http://www.debian.org |
 -----------------------------------------------------------------

Attachment: signature.asc
Description: Digital signature


Reply to: