[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: ClamAV vulnerability

On Mon, Sep 26, 2005 at 05:36:27AM -0700, P PRABHU wrote:

> Any fix for the latest ClamAV buffer overflow in the
> file "upx.c" vulnerability. Currently .deb based
> version is 0.84-2.sarge.2 . Is this version subject to
> this vulnerability ?? If so any fix will be released

  A DSA is pending, and should be available shortly.

# The Debian Security Audit Project.

Reply to: