news 28 Posted February 6, 2009 This is a multi-part message in MIME format... ------------=_1233954311-6173-83 -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 _______________________________________________________________________ Mandriva Linux Advisory MDVA-2009:018 http://www.mandriva.com/security/ _______________________________________________________________________ Package : clamav Date : February 6, 2009 Affected: 2008.0, 2008.1, 2009.0, Corporate 3.0, Corporate 4.0 _______________________________________________________________________ Problem Description: This update fixes several issues with clamav: - update unexpectely changes location of clamd socket (#46459) - clamav-milter was not built (#46555) - Clamav-milter wanted to remove postfix (#46556) - Scanning mail with clamav leaves a big temporary folder (#46642) - Build fails if invoked with --with milter, in a configure stage (#46554) - Jpeg parsing denial-of-service crash in clamav 0.94-1 and earlier (#46199) _______________________________________________________________________ References: https://qa.mandriva.com/46459 https://qa.mandriva.com/46555 https://qa.mandriva.com/46556 https://qa.mandriva.com/46642 https://qa.mandriva.com/46554 https://qa.mandriva.com/46199 _______________________________________________________________________ Updated Packages: Mandriva Linux 2008.0: b644f88e0a6e0f29a349714ef9107f9d 2008.0/i586/clamav-0.94.2-4.1mdv2008.0.i586.rpm 231fd0e3123321f7899205093618952f 2008.0/i586/clamav-db-0.94.2-4.1mdv2008.0.i586.rpm cd61bb68698cc2f7e3b5df2dff8759de 2008.0/i586/clamav-milter-0.94.2-4.1mdv2008.0.i586.rpm e75674b23b5815851b8b3392b8b401b9 2008.0/i586/clamd-0.94.2-4.1mdv2008.0.i586.rpm 80028ddcdda3ff8ab6b538e397dd4856 2008.0/i586/libclamav5-0.94.2-4.1mdv2008.0.i586.rpm 790226108ac5016aa2258bcce736f083 2008.0/i586/libclamav-devel-0.94.2-4.1mdv2008.0.i586.rpm 6e5aa6f90caacd819780b1ad632d0d77 2008.0/SRPMS/clamav-0.94.2-4.1mdv2008.0.src.rpm Mandriva Linux 2008.0/X86_64: 0eb8e4f3e78cd078151d429de8e3ce9f 2008.0/x86_64/clamav-0.94.2-4.1mdv2008.0.x86_64.rpm 236e40301473055d768d6fcd445b7b26 2008.0/x86_64/clamav-db-0.94.2-4.1mdv2008.0.x86_64.rpm f8a8c2531ffaccfeba36cbd122ad1270 2008.0/x86_64/clamav-milter-0.94.2-4.1mdv2008.0.x86_64.rpm 23891de2b20f67687fbf2fe27bbf3c2f 2008.0/x86_64/clamd-0.94.2-4.1mdv2008.0.x86_64.rpm 53b2994b3909bd4ffc6b340ba6fcd010 2008.0/x86_64/lib64clamav5-0.94.2-4.1mdv2008.0.x86_64.rpm c3d1a052cd9c37fe2e993626c70b44fd 2008.0/x86_64/lib64clamav-devel-0.94.2-4.1mdv2008.0.x86_64.rpm 6e5aa6f90caacd819780b1ad632d0d77 2008.0/SRPMS/clamav-0.94.2-4.1mdv2008.0.src.rpm Mandriva Linux 2008.1: 793e3823b9d6806e763486a4efbe2129 2008.1/i586/clamav-0.94.2-4.1mdv2008.1.i586.rpm 32f238d7e9f92c4d575a4d315c1020d7 2008.1/i586/clamav-db-0.94.2-4.1mdv2008.1.i586.rpm 8a679602235f1c48bc2ffc697bcaab2b 2008.1/i586/clamav-milter-0.94.2-4.1mdv2008.1.i586.rpm a402957867ec21ab2def22ca71a4550e 2008.1/i586/clamd-0.94.2-4.1mdv2008.1.i586.rpm 166a01aa6bb240e55bbe7c923063ea1b 2008.1/i586/libclamav5-0.94.2-4.1mdv2008.1.i586.rpm 3524755ed9317d39813775593a1ea7ee 2008.1/i586/libclamav-devel-0.94.2-4.1mdv2008.1.i586.rpm 5fa4665f41de651bb400a2625972f5ac 2008.1/SRPMS/clamav-0.94.2-4.1mdv2008.1.src.rpm Mandriva Linux 2008.1/X86_64: 10d3df4a90ab1a4067562d8acdb1dc21 2008.1/x86_64/clamav-0.94.2-4.1mdv2008.1.x86_64.rpm 5932f8d0bc72c74a67b0824487e5c916 2008.1/x86_64/clamav-db-0.94.2-4.1mdv2008.1.x86_64.rpm fb5fc9c7a81153e677c0e17e223ff204 2008.1/x86_64/clamav-milter-0.94.2-4.1mdv2008.1.x86_64.rpm 5e57271a2a18c55d300b439fb07eb91d 2008.1/x86_64/clamd-0.94.2-4.1mdv2008.1.x86_64.rpm 6299ced3dc619f72a3b54f2c65e68aad 2008.1/x86_64/lib64clamav5-0.94.2-4.1mdv2008.1.x86_64.rpm 07ccb69112b9c63999bff5785a7b6d21 2008.1/x86_64/lib64clamav-devel-0.94.2-4.1mdv2008.1.x86_64.rpm 5fa4665f41de651bb400a2625972f5ac 2008.1/SRPMS/clamav-0.94.2-4.1mdv2008.1.src.rpm Mandriva Linux 2009.0: da3226583ec65f99e81089a16599bc04 2009.0/i586/clamav-0.94.2-4.1mdv2009.0.i586.rpm bae818b836e67ab16f6a208b025ef3be 2009.0/i586/clamav-db-0.94.2-4.1mdv2009.0.i586.rpm 4d1f6e26dc2eddcdaa9b9dda119ee834 2009.0/i586/clamav-milter-0.94.2-4.1mdv2009.0.i586.rpm bd3926f12f3d7435cf6ea2e4960bf812 2009.0/i586/clamd-0.94.2-4.1mdv2009.0.i586.rpm 0913b86da2a9aa6437ccc8544e501d61 2009.0/i586/libclamav5-0.94.2-4.1mdv2009.0.i586.rpm 15341dfe868336838e5b48cb04907537 2009.0/i586/libclamav-devel-0.94.2-4.1mdv2009.0.i586.rpm db92f302e355cb26308edaf2229328bc 2009.0/SRPMS/clamav-0.94.2-4.1mdv2009.0.src.rpm Mandriva Linux 2009.0/X86_64: 6ad8b611b9535b18d9b1ca07fad9ad72 2009.0/x86_64/clamav-0.94.2-4.1mdv2009.0.x86_64.rpm abde1ff0764ce0dd0d22b3ee99836e68 2009.0/x86_64/clamav-db-0.94.2-4.1mdv2009.0.x86_64.rpm 7fb0c6aa15905a47db1b832499e14232 2009.0/x86_64/clamav-milter-0.94.2-4.1mdv2009.0.x86_64.rpm 6591c5a85d2bff2e0aef1df6d1ec9a75 2009.0/x86_64/clamd-0.94.2-4.1mdv2009.0.x86_64.rpm 5916297e195c9f90047976c2c551c5aa 2009.0/x86_64/lib64clamav5-0.94.2-4.1mdv2009.0.x86_64.rpm 80d7bc7e3e9184976a71d907529f9128 2009.0/x86_64/lib64clamav-devel-0.94.2-4.1mdv2009.0.x86_64.rpm db92f302e355cb26308edaf2229328bc 2009.0/SRPMS/clamav-0.94.2-4.1mdv2009.0.src.rpm Corporate 3.0: e30acf190d1518d368dbba5f7738660c corporate/3.0/i586/clamav-0.94.2-3.1.C30mdk.i586.rpm 52bec6200dedf3a0faceea9e2e8c8627 corporate/3.0/i586/clamav-db-0.94.2-3.1.C30mdk.i586.rpm bd5066c486385818c10e34dc11874750 corporate/3.0/i586/clamav-milter-0.94.2-3.1.C30mdk.i586.rpm c7f1dcd83380af058069ea6ba337f25f corporate/3.0/i586/clamd-0.94.2-3.1.C30mdk.i586.rpm dcf56fd77a5006c4e5f97838418e7228 corporate/3.0/i586/libclamav5-0.94.2-3.1.C30mdk.i586.rpm 6ac673d3b6c46574135c7bdeedb72133 corporate/3.0/i586/libclamav-devel-0.94.2-3.1.C30mdk.i586.rpm 7b93cbaec9a7b17be58f15d90608851c corporate/3.0/SRPMS/clamav-0.94.2-3.1.C30mdk.src.rpm Corporate 3.0/X86_64: a708ea080b024530f76ad16bb0bedcb9 corporate/3.0/x86_64/clamav-0.94.2-3.1.C30mdk.x86_64.rpm eadbd2ef8b45d15516817d6670a6afa7 corporate/3.0/x86_64/clamav-db-0.94.2-3.1.C30mdk.x86_64.rpm c7fa3747f0bb1feb60c1120b4be51484 corporate/3.0/x86_64/clamav-milter-0.94.2-3.1.C30mdk.x86_64.rpm 4b29286369582b8226af16ae8ec13d4f corporate/3.0/x86_64/clamd-0.94.2-3.1.C30mdk.x86_64.rpm 7eedf22d2a2321d0f7560a4725b9b07d corporate/3.0/x86_64/lib64clamav5-0.94.2-3.1.C30mdk.x86_64.rpm 196ad0036ef15a257afa40d0448503fe corporate/3.0/x86_64/lib64clamav-devel-0.94.2-3.1.C30mdk.x86_64.rpm 7b93cbaec9a7b17be58f15d90608851c corporate/3.0/SRPMS/clamav-0.94.2-3.1.C30mdk.src.rpm Corporate 4.0: 399d03ea1ecaad1046e5063afdac260b corporate/4.0/i586/clamav-0.94.2-3.1.20060mlcs4.i586.rpm e7684104bfb160f46d4514341d47275d corporate/4.0/i586/clamav-db-0.94.2-3.1.20060mlcs4.i586.rpm 095c8549ae490091cf8ea0d850c01c71 corporate/4.0/i586/clamav-milter-0.94.2-3.1.20060mlcs4.i586.rpm 48c2c40cfbc9986b5fd2d38ddb17baff corporate/4.0/i586/clamd-0.94.2-3.1.20060mlcs4.i586.rpm a3a517acb1e384cb73dc58061e129d98 corporate/4.0/i586/libclamav5-0.94.2-3.1.20060mlcs4.i586.rpm b0e30584540f0f63274581059cef8a80 corporate/4.0/i586/libclamav-devel-0.94.2-3.1.20060mlcs4.i586.rpm c0006d32b5fc6d2108971c080a4b1e4d corporate/4.0/SRPMS/clamav-0.94.2-3.1.20060mlcs4.src.rpm Corporate 4.0/X86_64: 0d546785a9606b739a814ac73ad60039 corporate/4.0/x86_64/clamav-0.94.2-3.1.20060mlcs4.x86_64.rpm c7b510c2c085ee986d75abb2bda13626 corporate/4.0/x86_64/clamav-db-0.94.2-3.1.20060mlcs4.x86_64.rpm 4328af00e709b6af0a285ce5f6794d14 corporate/4.0/x86_64/clamav-milter-0.94.2-3.1.20060mlcs4.x86_64.rpm d362e652c3b636373a1d3a25a5c749c5 corporate/4.0/x86_64/clamd-0.94.2-3.1.20060mlcs4.x86_64.rpm 1c739200397d6b3737457445bd5aa312 corporate/4.0/x86_64/lib64clamav5-0.94.2-3.1.20060mlcs4.x86_64.rpm 0b579460fe8e6bde301a43e97e775b26 corporate/4.0/x86_64/lib64clamav-devel-0.94.2-3.1.20060mlcs4.x86_64.rpm c0006d32b5fc6d2108971c080a4b1e4d corporate/4.0/SRPMS/clamav-0.94.2-3.1.20060mlcs4.src.rpm _______________________________________________________________________ To upgrade automatically use MandrivaUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you. All packages are signed by Mandriva for security. You can obtain the GPG public key of the Mandriva Security Team by executing: gpg --recv-keys --keyserver pgp.mit.edu 0x22458A98 You can view other update advisories for Mandriva Linux at: http://www.mandriva.com/security/advisories If you want to report vulnerabilities, please contact security_(at)_mandriva.com _______________________________________________________________________ Type Bits/KeyID Date User ID pub 1024D/22458A98 2000-07-10 Mandriva Security Team -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iD8DBQFJjHeVmqjQ0CJFipgRAoFVAKDWjtsEt32TPdogPzk+VYnM01BB0wCgw0XX 7jLZ0wOJuw4oLqyhJ3UUby0= =ZNbQ -----END PGP SIGNATURE----- ------------=_1233954311-6173-83 Content-Type: text/plain; name="message-footer.txt" Content-Disposition: inline; filename="message-footer.txt" Content-Transfer-Encoding: 8bit To unsubscribe, send a email to sympa ( -at -) mandrivalinux.org with this subject : unsubscribe security-announce _______________________________________________________ Want to buy your Pack or Services from Mandriva? Go to http://www.mandrivastore.com Join the Club : http://www.mandrivaclub.com _______________________________________________________ ------------=_1233954311-6173-83-- Share this post Link to post