Hide Forgot
ClamAV 0.98.6 fixes a heap out of bounds condition with crafted upack packer files [1]. [1]: http://lurker.clamav.net/message/20150127.232443.27bcc068.en.html
Created clamav tracking bugs for this issue: Affects: fedora-all [bug 1187051] Affects: epel-all [bug 1187052]
ClamAV 0.98.6, which fixes this issue, has been released: http://blog.clamav.net/2015/01/clamav-0986-has-been-released.html
clamav-0.98.6-1.el7 has been pushed to the Fedora EPEL 7 stable repository. If problems still persist, please make note of it in this bug report.
clamav-0.98.6-1.fc20 has been pushed to the Fedora 20 stable repository. If problems still persist, please make note of it in this bug report.
clamav-0.98.6-1.fc21 has been pushed to the Fedora 21 stable repository. If problems still persist, please make note of it in this bug report.
clamav-0.98.6-1.el5 has been pushed to the Fedora EPEL 5 stable repository. If problems still persist, please make note of it in this bug report.
clamav-0.98.6-1.el6 has been pushed to the Fedora EPEL 6 stable repository. If problems still persist, please make note of it in this bug report.
Although version 0.98.6 is available in rhel6-x86_64-epel it does not get installed using yum --security. Did Red Hat forget to tag it with this CVE?
What is "rhel6-x86_64-epel"? Note that EPEL is not maintained by Red Hat, but by EPEL community contributors like me (and I did this update).
Indeed it seems I learned today that the yum security plugin is not supported for EPEL (and Centos). Still my Debian background haunting me.