USN-4230-1: ClamAV Vulnerability | Ubuntu Security Notices

Có thể bạn quan tâm

Your submission was sent successfully! Close

Thank you for contacting us. A member of our team will be in touch shortly. Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter! In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Your preferences have been successfully updated. Close notification

Please try again or file a bug report. Close

Security
  • Platform Security
  • ESM
  • Livepatch
  • Security standards
  • CVEs
  • Notices
  • Assurances
  1. Ubuntu Security Notices
  2. USN-4230-1
USN-4230-1: ClamAV vulnerability

Publication date

8 January 2020

Overview

ClamAV could be made to crash if it opened a specially crafted file.

Releases

19.10 19.04 18.04 LTS 16.04 LTS Open side navigation Close side navigation
  • Packages
  • Details
  • Update instructions
  • References
  • Related notices

Packages

  • clamav - Anti-virus utility for Unix

Details

It was discovered that ClamAV incorrectly handled certain MIME messages. A remote attacker could possibly use this issue to cause ClamAV to crash, resulting in a denial of service.

It was discovered that ClamAV incorrectly handled certain MIME messages. A remote attacker could possibly use this issue to cause ClamAV to crash, resulting in a denial of service.

Update instructions

This update uses a new upstream release, which includes additional bug fixes. In general, a standard system update will make all the necessary changes.

Learn more about how to get the fixes.

The problem can be corrected by updating your system to the following package versions:

Ubuntu Release Package Version
19.10 eoan clamav – 0.102.1+dfsg-0ubuntu0.19.10.2
19.04 disco clamav – 0.102.1+dfsg-0ubuntu0.19.04.2
18.04 LTS bionic clamav – 0.102.1+dfsg-0ubuntu0.18.04.2
16.04 LTS xenial clamav – 0.102.1+dfsg-0ubuntu0.16.04.2

Reduce your security exposure

Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines.

Get Ubuntu Pro

References

  • CVE-2019-15961
  • CVE-2019-15961
  • USN-4230-2
  • USN-4230-2

Have additional questions?

Talk to a member of the team ›

Từ khóa » Cm 4230