Oval Definition:oval:org.opensuse.security:def:85091
Revision Date:2018-03-26Version:1
Title:Security update for clamav (Important)
Description:

This update for clamav fixes the following issues:

Security issues fixed:

- CVE-2012-6706: VMSF_DELTA filter inside the unrar implementation allows an arbitrary memory write (bsc#1045315). - CVE-2017-6419: A heap-based buffer overflow that can lead to a denial of service in libmspack via a crafted CHM file (bsc#1052449). - CVE-2017-11423: A stack-based buffer over-read that can lead to a denial of service in mspack via a crafted CAB file (bsc#1049423). - CVE-2018-1000085: An out-of-bounds heap read vulnerability was found in XAR parser that can lead to a denial of service (bsc#1082858). - CVE-2018-0202: Fixed two vulnerabilities in the PDF parsing code (bsc#1083915).
Family:unixClass:patch
Status:Reference(s):1045315
1049423
1052449
1082858
1083915
CVE-2012-6706
CVE-2017-11423
CVE-2017-6419
CVE-2018-0202
CVE-2018-1000085
SUSE-SU-2018:0809-1
Platform(s):SUSE Linux Enterprise Server 12 SP3
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND clamav-0.99.4-33.9.1 is installed
  • BACK