----------------------------------------------------------------------- Debian Stable Updates Announcement SUA 178-1 https://www.debian.org debian-release@lists.debian.org Sebastian Andrzej Siewior February 23rd, 2020 ----------------------------------------------------------------------- Package : clamav Version : 0.102.2+dfsg-0+deb10u1 [buster] 0.102.2+dfsg-0~deb9u1 [stretch] Importance : medium ClamAV is an AntiVirus toolkit for Unix. Upstream published version 0.102.2 This is a mostly a bug-fix release. The changes are not strictly required for operation. Changes since 0.102.1 currently in buster and stretch include fixes for a security issue. CVE-2020-3123 A vulnerability in the Data-Loss-Prevention (DLP) module could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. An attacker could exploit this vulnerability by sending a crafted email file to an affected device. If you use clamav, we recommend that you install this update. Upgrade Instructions -------------------- You can get the updated packages by adding the stable-updates archive for your distribution to your /etc/apt/sources.list: deb http://ftp.debian.org/debian buster-updates main deb-src http://ftp.debian.org/debian buster-updates main or deb http://ftp.debian.org/debian stretch-updates main deb-src http://ftp.debian.org/debian stretch-updates main You can also use any of the Debian archive mirrors. See https://www.debian.org/mirrors/list for the full list of mirrors. For further information about stable-updates, please refer to https://lists.debian.org/debian-devel-announce/2011/03/msg00010.html If you encounter any issues, please don't hesitate to get in touch with the Debian Release Team at debian-release@lists.debian.org
Attachment:
signature.asc
Description: This is a digitally signed message part