Hide Forgot
An out-of-bounds heap read vulnerability was found in XAR parser that leads to clamscan crash when invoked on malicious XAR file. Upstream patch: https://github.com/Cisco-Talos/clamav-devel/commit/d96a6b8bcc7439fa7e3876207aa0a8e79c8451b6 Reference: http://www.openwall.com/lists/oss-security/2017/09/29/4
Created clamav tracking bugs for this issue: Affects: epel-all [bug 1549070] Affects: fedora-all [bug 1549071]