Re: ***UNCHECKED*** clamav remote code injection

Andreas Stieger <[email protected]> Sat, 27 Jan 2018 13:50:23 +0100
Newsgroups gmane.linux.suse.security
Organization SUSE Linux GmbH
Message-ID <[email protected]>
Hello,

On 01/27/2018 11:48 AM, Florian Gleixner wrote:
> there are reports from email service providers, that there are attempts
> to exploit clamav using prepared pdf documents in mails. See (in german):
> 
> https://www.heise.de/security/meldung/Jetzt-patchen-Angriffe-auf-Viren-Scanner-ClamAV-3951801.html
> 
> I hope, the opensuse security team will release a update for clamav soon.

Yes, follow https://bugzilla.suse.com/show_bug.cgi?id=1077732

Andreas

-- 
Andreas Stieger <[email protected]>
Project Manager Security
SUSE Linux GmbH, GF: Felix Imendörffer, Jane Smithard, Graham Norton,
HRB 21284 (AG Nürnberg)
-- 
To unsubscribe, e-mail: [email protected]
To contact the owner, e-mail: [email protected]