Lucene search

K
debianDebianDEBIAN:DSA-1320-1:C56F5
HistoryJun 23, 2007 - 10:57 a.m.

[SECURITY] [DSA 1320-1] New clamav packages fix several vulnerabilities

2007-06-2310:57:02
lists.debian.org
12

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

6.9 Medium

AI Score

Confidence

Low

0.531 Medium

EPSS

Percentile

97.6%


Debian Security Advisory DSA 1320-1 [email protected]
http://www.debian.org/security/ Moritz Muehlenhoff
June 23th, 2007 http://www.debian.org/security/faq


Package : clamav
Vulnerability : several
Problem-Type : remote
Debian-specific: no
CVE ID : CVE-2007-2650 CVE-2007-3023 CVE-2007-3024 CVE-2007-3122 CVE-2007-3123

Several remote vulnerabilities have been discovered in the Clam anti-virus
toolkit. The Common Vulnerabilities and Exposures project identifies the
following problems:

CVE-2007-2650

It was discovered that the OLE2 parser can be tricked into an infinite
loop and memory exhaustion.

CVE-2007-3023

It was discovered that the NsPack decompression code performed
insufficient sanitising on an internal length variable, resulting in
a potential buffer overflow.

CVE-2007-3024

It was discovered that temporary files were created with insecure
permissions, resulting in information disclosure.

CVE-2007-3122

It was discovered that the decompression code for RAR archives allows
bypassing a scan of a RAR archive due to insufficient validity checks.

CVE-2007-3123

It was discovered that the decompression code for RAR archives performs
insufficient validation of header values, resulting in a buffer overflow.

For the oldstable distribution (sarge) these problems have been fixed in
version 0.84-2.sarge.17. Please note that the fix for CVE-2007-3024 hasn't
been backported to oldstable.

For the stable distribution (etch) these problems have been fixed
in version 0.90.1-3etch1.

For the unstable distribution (sid) these problems have been fixed in
version 0.90.2-1.

We recommend that you upgrade your clamav packages. An updated package
for oldstable/powerpc is not yet available. It will be provided later.

Upgrade Instructions


wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.

Debian GNU/Linux 3.1 alias sarge


Source archives:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.17.dsc
  Size/MD5 checksum:      874 334efba90e36f3b1cc1e7d88ca0990bb
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.17.diff.gz
  Size/MD5 checksum:   181825 ce287c93cc5080aefcf5d37d1ee4b261
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84.orig.tar.gz
  Size/MD5 checksum:  4006624 c43213da01d510faf117daa9a4d5326c

Architecture independent components:

http://security.debian.org/pool/updates/main/c/clamav/clamav-base_0.84-2.sarge.17_all.deb
  Size/MD5 checksum:   155334 915b8f9d1fa7eb390dd0b11fa894eb26
http://security.debian.org/pool/updates/main/c/clamav/clamav-docs_0.84-2.sarge.17_all.deb
  Size/MD5 checksum:   690966 a6411bca9fcc48905421f54bdc71c565
http://security.debian.org/pool/updates/main/c/clamav/clamav-testfiles_0.84-2.sarge.17_all.deb
  Size/MD5 checksum:   124326 6e75aa8d619f42642f74effb1c8f5bbc

Alpha architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.17_alpha.deb
  Size/MD5 checksum:    74772 551be2a5e31f847c0cfd85c62741b20d
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.17_alpha.deb
  Size/MD5 checksum:    48694 c6be8dca1533ea57b860129e8ca2d9eb
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.17_alpha.deb
  Size/MD5 checksum:  2175742 f2aadf9f40b450700336016f04d1d8b5
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.17_alpha.deb
  Size/MD5 checksum:    41726 b9321ac5b1abcc9a89ea1bc5d18b28f2
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.17_alpha.deb
  Size/MD5 checksum:   256230 de4e35581860c20ee5c2054f64c085d0
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.17_alpha.deb
  Size/MD5 checksum:   286640 3a783db1e37ab05a1a3cfdcecf06a1da

AMD64 architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.17_amd64.deb
  Size/MD5 checksum:    69012 667f196a7a32aab096c367f7bf26282d
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.17_amd64.deb
  Size/MD5 checksum:    44292 0120d71543d4ef2c8e9efae415adfd91
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.17_amd64.deb
  Size/MD5 checksum:  2173286 2a0fa1500ffbcf558ef9a6457194ee08
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.17_amd64.deb
  Size/MD5 checksum:    40038 a74bb9d6ba3e89c30e43922057eb1e39
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.17_amd64.deb
  Size/MD5 checksum:   176930 e9cfce45a46c64cd3c4eebe15ac982aa
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.17_amd64.deb
  Size/MD5 checksum:   260556 7168bf2f028f3c4a1007f5ee2d695124

ARM architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.17_arm.deb
  Size/MD5 checksum:    63972 dce54c07353f72e1b0b7150fdae56c26
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.17_arm.deb
  Size/MD5 checksum:    39636 355c3d6339ad504eb50b6fdc691960e3
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.17_arm.deb
  Size/MD5 checksum:  2171310 5f3df00980a65a26623f860163a76934
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.17_arm.deb
  Size/MD5 checksum:    37318 9795238d043311232cb796607a163986
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.17_arm.deb
  Size/MD5 checksum:   175254 46ffe53ba82fa982b12fd58340a4e845
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.17_arm.deb
  Size/MD5 checksum:   250442 ef577a1c45a34e5ee4a4a650b6ee8056

HP Precision architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.17_hppa.deb
  Size/MD5 checksum:    68468 fbbe7ffbeda0c23e83916ce911a9b8aa
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.17_hppa.deb
  Size/MD5 checksum:    43286 e033de01f5f304423f95259e968cd9c7
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.17_hppa.deb
  Size/MD5 checksum:  2173700 2963b40a0e7fec529d01f653ea8b45c6
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.17_hppa.deb
  Size/MD5 checksum:    39556 e105e6d02db4dc669d136190ab0f9d19
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.17_hppa.deb
  Size/MD5 checksum:   203110 a26e2516c431c5171fa7737263fee213
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.17_hppa.deb
  Size/MD5 checksum:   284170 aa01e8a08e7fdf276604b3b5c10d5458

Intel IA-32 architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.17_i386.deb
  Size/MD5 checksum:    65324 d3ebc3d3dab74b2eede76fa7f0b5ab6b
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.17_i386.deb
  Size/MD5 checksum:    40374 9fa94bc0c1850f2e4020d8ca551cfedc
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.17_i386.deb
  Size/MD5 checksum:  2171598 0b0a588584fd8e52167ead896aef0792
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.17_i386.deb
  Size/MD5 checksum:    38060 86f0149b4507cfabfca2d0c0a841bc52
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.17_i386.deb
  Size/MD5 checksum:   160054 9f99c158a814786c0634b5a64c5b40f3
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.17_i386.deb
  Size/MD5 checksum:   255306 8d0d54d680baba417375f3c08f472a3a

Intel IA-64 architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.17_ia64.deb
  Size/MD5 checksum:    81946 aed06c764e3c5a52725ad3f81af6586e
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.17_ia64.deb
  Size/MD5 checksum:    55318 b9eb769c4fbb35e2e094923cfc6c935f
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.17_ia64.deb
  Size/MD5 checksum:  2180250 ed24a0058f224652cfbd0bd9532de500
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.17_ia64.deb
  Size/MD5 checksum:    49240 30bfa6d4d326bb2690bd63e74a14020a
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.17_ia64.deb
  Size/MD5 checksum:   252718 9952f63de30e7c0fd214b0285982266a
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.17_ia64.deb
  Size/MD5 checksum:   318698 6ca97a0ea84f21994502eb56f6f001c3

Motorola 680x0 architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.17_m68k.deb
  Size/MD5 checksum:    62634 205d079dec10e898797716211cde3567
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.17_m68k.deb
  Size/MD5 checksum:    38238 0764a58668815304a6aba6be7adf89a6
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.17_m68k.deb
  Size/MD5 checksum:  2170534 ddbcc5718c3482b55572b3249afc6377
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.17_m68k.deb
  Size/MD5 checksum:    35118 c1c05d80c348d7a3eb0be1e7ade860d1
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.17_m68k.deb
  Size/MD5 checksum:   146584 1b294b02d8937183bb19f6fbd000cd40
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.17_m68k.deb
  Size/MD5 checksum:   251272 4b084a7a5359e9eac782e2a4568894a4

Big endian MIPS architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.17_mips.deb
  Size/MD5 checksum:    68070 c3ff744aea76d3dc80669dc2acad8f0a
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.17_mips.deb
  Size/MD5 checksum:    43882 cb8f48d486dc1fccc08638f3539e212e
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.17_mips.deb
  Size/MD5 checksum:  2173078 627392c24a84f3b4d68dc65bbd99fc41
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.17_mips.deb
  Size/MD5 checksum:    37692 5e0d731df2b66e479b9140286be92b59
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.17_mips.deb
  Size/MD5 checksum:   196002 0ab7e54ed88908d9d2fe53fddf1238b1
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.17_mips.deb
  Size/MD5 checksum:   258354 eb3dc969715c79c5605e1e0261f4a359

Little endian MIPS architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.17_mipsel.deb
  Size/MD5 checksum:    67646 cb0e7e275d44d6ee74f7f374b7d0593d
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.17_mipsel.deb
  Size/MD5 checksum:    43692 e4c4c09ec23e0fc153eb9531d772f603
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.17_mipsel.deb
  Size/MD5 checksum:  2173012 4a77420ea3a8c9491226655ca554c335
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.17_mipsel.deb
  Size/MD5 checksum:    37992 ba4d529cff53a53f3e8c0e481445245e
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.17_mipsel.deb
  Size/MD5 checksum:   192346 3efb33afbda943e2fc18f00f9854791e
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.17_mipsel.deb
  Size/MD5 checksum:   255894 e4803f713862207780d20700392d0a3b

IBM S/390 architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.17_s390.deb
  Size/MD5 checksum:    67960 9a22fb1735203e2522fda02ec7f631df
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.17_s390.deb
  Size/MD5 checksum:    43622 d77427c07bbaab6e6d250f49ab6da9f8
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.17_s390.deb
  Size/MD5 checksum:  2172960 c7b4d0b532bdecd36ea8d07b4b40846f
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.17_s390.deb
  Size/MD5 checksum:    38960 ad48f244f636589324ffd77956d6b928
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.17_s390.deb
  Size/MD5 checksum:   182962 3131b231efa6e444ac27bd16b1952c57
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.17_s390.deb
  Size/MD5 checksum:   270310 376fe46b2ff67f863fd24624ef0fad28

Sun Sparc architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.17_sparc.deb
  Size/MD5 checksum:    64750 761391a4ee8b938cfd3b0b0161459e10
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.17_sparc.deb
  Size/MD5 checksum:    39528 a5ecc1dc408cbab69808b003fbd89deb
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.17_sparc.deb
  Size/MD5 checksum:  2171190 b8aa89fb0172f234c5d2f5d388d6ed27
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.17_sparc.deb
  Size/MD5 checksum:    36894 5bca9e702ef8a20c4f28783a0dce2da2
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.17_sparc.deb
  Size/MD5 checksum:   176238 2bc5c9acba694096fdfe69640a4030a4
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.17_sparc.deb
  Size/MD5 checksum:   265726 e0b9157ecaa78ffdcb5bf3caf10359e0

Debian GNU/Linux 4.0 alias etch


Source archives:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1-3etch3.dsc
  Size/MD5 checksum:      886 8e571f6c59475a847ef33e94c6232422
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1-3etch3.diff.gz
  Size/MD5 checksum:   207415 ed89ccfaeb47bb721d8889e12fc51882
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1.orig.tar.gz
  Size/MD5 checksum: 11643310 cd11c05b5476262eaea4fa3bd7dc25bf

Architecture independent components:

http://security.debian.org/pool/updates/main/c/clamav/clamav-base_0.90.1-3etch3_all.deb
  Size/MD5 checksum:   201368 791eaeb6e6ae6ec69c3f664142ace269
http://security.debian.org/pool/updates/main/c/clamav/clamav-docs_0.90.1-3etch3_all.deb
  Size/MD5 checksum:  1003156 468fb6594650d58e6d11a41640a96e68
http://security.debian.org/pool/updates/main/c/clamav/clamav-testfiles_0.90.1-3etch3_all.deb
  Size/MD5 checksum:   157548 150e351f3529ed1361bb0acfc1256dc1

Alpha architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1-3etch3_alpha.deb
  Size/MD5 checksum:   863204 9f3a5eedeeca0cbbe823894761e47dbb
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.90.1-3etch3_alpha.deb
  Size/MD5 checksum:   184404 2317044521b084bfdb52895aebd469b8
http://security.debian.org/pool/updates/main/c/clamav/clamav-dbg_0.90.1-3etch3_alpha.deb
  Size/MD5 checksum:   644118 a62fa0162634e2e7d23823abe5afe701
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.90.1-3etch3_alpha.deb
  Size/MD5 checksum:  9303466 b08dbdb92aa8c0c8bc1916bafaf51741
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.90.1-3etch3_alpha.deb
  Size/MD5 checksum:   179544 fc7cf1bc7333275872b38fc58713e1d0
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.90.1-3etch3_alpha.deb
  Size/MD5 checksum:   510748 16e227d33030c85bfd6758993c9984fe
http://security.debian.org/pool/updates/main/c/clamav/libclamav2_0.90.1-3etch3_alpha.deb
  Size/MD5 checksum:   406074 f40b64880f1fbd16ae2afa92fb141904

AMD64 architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1-3etch3_amd64.deb
  Size/MD5 checksum:   856208 4d7c9bcb2cdef22414d41d5fdab10260
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.90.1-3etch3_amd64.deb
  Size/MD5 checksum:   178156 f93ade54daafba7123dab1ace7029917
http://security.debian.org/pool/updates/main/c/clamav/clamav-dbg_0.90.1-3etch3_amd64.deb
  Size/MD5 checksum:   637822 331f135f32b5b6afffdbfb50850fa039
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.90.1-3etch3_amd64.deb
  Size/MD5 checksum:  9301588 125ba7d45e92714eef484d92336ad470
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.90.1-3etch3_amd64.deb
  Size/MD5 checksum:   176624 964d5360f7e50dd2e8bad20563d0d337
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.90.1-3etch3_amd64.deb
  Size/MD5 checksum:   386222 e1c9b40bcacf1c09f97f41afa5864c95
http://security.debian.org/pool/updates/main/c/clamav/libclamav2_0.90.1-3etch3_amd64.deb
  Size/MD5 checksum:   366974 21d972de8587b6a324bb0ba108a07e54

ARM architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1-3etch3_arm.deb
  Size/MD5 checksum:   851738 270a8b2b6d1a0a3c0dd8b1fc1510d7ab
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.90.1-3etch3_arm.deb
  Size/MD5 checksum:   173352 f93a539ad8607b0ca4b7e315869f3279
http://security.debian.org/pool/updates/main/c/clamav/clamav-dbg_0.90.1-3etch3_arm.deb
  Size/MD5 checksum:   597106 9f02acfa81a2dba1034b556eba291756
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.90.1-3etch3_arm.deb
  Size/MD5 checksum:  9299400 d101b2b2de65c4d56db2bd4e073e0290
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.90.1-3etch3_arm.deb
  Size/MD5 checksum:   174458 dd904c7c5391727b1420e8bf8aed3181
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.90.1-3etch3_arm.deb
  Size/MD5 checksum:   366594 ce6c879cba822f8c14ee0bbeb52e03d9
http://security.debian.org/pool/updates/main/c/clamav/libclamav2_0.90.1-3etch3_arm.deb
  Size/MD5 checksum:   362520 f4ffd0359d6756f833323c0ba2b8074c

HP Precision architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1-3etch3_hppa.deb
  Size/MD5 checksum:   856970 7bfd2a354e7c051b54a445bfd99ee48b
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.90.1-3etch3_hppa.deb
  Size/MD5 checksum:   177874 ff096956ffa206566f7a733c1e8cf64c
http://security.debian.org/pool/updates/main/c/clamav/clamav-dbg_0.90.1-3etch3_hppa.deb
  Size/MD5 checksum:   617846 a3e0db24a65add0f2d5ce6766888dd7e
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.90.1-3etch3_hppa.deb
  Size/MD5 checksum:  9302948 f43c013d82a9aacca5454f0e8e8cd917
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.90.1-3etch3_hppa.deb
  Size/MD5 checksum:   176702 4f377e83b09e76dc9df008963836f4ff
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.90.1-3etch3_hppa.deb
  Size/MD5 checksum:   432646 ace3831a840dd70b0910714896d982fb
http://security.debian.org/pool/updates/main/c/clamav/libclamav2_0.90.1-3etch3_hppa.deb
  Size/MD5 checksum:   404730 c8f7cff7eab68caabf2f389dfab4aac2

Intel IA-32 architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1-3etch3_i386.deb
  Size/MD5 checksum:   853644 10a784491395c8e30de5dc7c2de57527
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.90.1-3etch3_i386.deb
  Size/MD5 checksum:   174536 6ec0da9e34c65305427fa3a43938de19
http://security.debian.org/pool/updates/main/c/clamav/clamav-dbg_0.90.1-3etch3_i386.deb
  Size/MD5 checksum:   603678 c46b103d7c83a78d2777d2c736e32399
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.90.1-3etch3_i386.deb
  Size/MD5 checksum:  9299980 3d40e51e51b6acd0691084fa75405259
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.90.1-3etch3_i386.deb
  Size/MD5 checksum:   174658 dcbab610ecb55f61984b6337c50ca290
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.90.1-3etch3_i386.deb
  Size/MD5 checksum:   367576 6760dae2c6f2294ae4d3bb99b465eb42
http://security.debian.org/pool/updates/main/c/clamav/libclamav2_0.90.1-3etch3_i386.deb
  Size/MD5 checksum:   365550 90b1015e539f1b1d55c3bff1c9524746

Intel IA-64 architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1-3etch3_ia64.deb
  Size/MD5 checksum:   878196 e9e6857decc9ea06d2e3cee9fb191f4d
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.90.1-3etch3_ia64.deb
  Size/MD5 checksum:   201380 8822958231bc51a2f6153038a7a0fea7
http://security.debian.org/pool/updates/main/c/clamav/clamav-dbg_0.90.1-3etch3_ia64.deb
  Size/MD5 checksum:   656036 3acd444e0aa4ccbf0d94fa72bcc92bd3
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.90.1-3etch3_ia64.deb
  Size/MD5 checksum:  9314964 9f305c60fd469adf6211a9879b28224e
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.90.1-3etch3_ia64.deb
  Size/MD5 checksum:   191032 37448c1f784827e101105ab659b7b209
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.90.1-3etch3_ia64.deb
  Size/MD5 checksum:   521230 8bec17dbbfe24ee18125609444e18030
http://security.debian.org/pool/updates/main/c/clamav/libclamav2_0.90.1-3etch3_ia64.deb
  Size/MD5 checksum:   474692 a7accff450b3fdebb5496e097f1c7dc3

Big endian MIPS architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1-3etch3_mips.deb
  Size/MD5 checksum:   854382 b85f12591bc736890101dad5b3a99418
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.90.1-3etch3_mips.deb
  Size/MD5 checksum:   179590 afd78fa925546ec590c22344b3e5cf92
http://security.debian.org/pool/updates/main/c/clamav/clamav-dbg_0.90.1-3etch3_mips.deb
  Size/MD5 checksum:   646588 b381f3759019ab68221603a0a7dcec5c
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.90.1-3etch3_mips.deb
  Size/MD5 checksum:  9301362 d3a8311bbdb2f2f3ef4406b984cd5c4d
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.90.1-3etch3_mips.deb
  Size/MD5 checksum:   175030 51812588db839ca9f117bbcbe957dcc4
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.90.1-3etch3_mips.deb
  Size/MD5 checksum:   435262 645d6eced9e0fabd2f6d00510efe18a5
http://security.debian.org/pool/updates/main/c/clamav/libclamav2_0.90.1-3etch3_mips.deb
  Size/MD5 checksum:   372034 c7ea726f6e3485913f00eb24d06a625b

Little endian MIPS architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1-3etch3_mipsel.deb
  Size/MD5 checksum:   854300 cf6c09e6c37f701f8b1af2cd65e900c9
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.90.1-3etch3_mipsel.deb
  Size/MD5 checksum:   179712 0e97331f7c10b688beec9257dc4c4d31
http://security.debian.org/pool/updates/main/c/clamav/clamav-dbg_0.90.1-3etch3_mipsel.deb
  Size/MD5 checksum:   635534 f9e3cc241515b931e295658ff522e19a
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.90.1-3etch3_mipsel.deb
  Size/MD5 checksum:  9301516 bb124d0d6f3e0d86bd9f9f453969c70f
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.90.1-3etch3_mipsel.deb
  Size/MD5 checksum:   175236 69e03b468c51e67c41741e8c3c6e9f18
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.90.1-3etch3_mipsel.deb
  Size/MD5 checksum:   426604 f874f36d2299914ab18c782304f80e81
http://security.debian.org/pool/updates/main/c/clamav/libclamav2_0.90.1-3etch3_mipsel.deb
  Size/MD5 checksum:   365208 90739eff427710b3b6df4fb7bcaaeccd

PowerPC architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1-3etch3_powerpc.deb
  Size/MD5 checksum:   857016 e2965f3084717e658424cf57ce51537d
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.90.1-3etch3_powerpc.deb
  Size/MD5 checksum:   181600 9ebed7a3aeaa88b3b24fcc4456a18984
http://security.debian.org/pool/updates/main/c/clamav/clamav-dbg_0.90.1-3etch3_powerpc.deb
  Size/MD5 checksum:   636792 3bd733fc339f1088bd69a08716f727c3
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.90.1-3etch3_powerpc.deb
  Size/MD5 checksum:  9301942 270dd069074d3fdbf95cd04d7416b8a9
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.90.1-3etch3_powerpc.deb
  Size/MD5 checksum:   175738 2a1b3424150c6c3225aa5798b98536af
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.90.1-3etch3_powerpc.deb
  Size/MD5 checksum:   405536 36f207eed13c8f0644d7c9fc98d43995
http://security.debian.org/pool/updates/main/c/clamav/libclamav2_0.90.1-3etch3_powerpc.deb
  Size/MD5 checksum:   378064 0754528b321325a4d3cc120254869e85

IBM S/390 architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1-3etch3_s390.deb
  Size/MD5 checksum:   854964 030dbcdcb7596a29be7288b69a3dd2c5
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.90.1-3etch3_s390.deb
  Size/MD5 checksum:   176148 efcd01349b44a3bd30c7d6cd83779803
http://security.debian.org/pool/updates/main/c/clamav/clamav-dbg_0.90.1-3etch3_s390.deb
  Size/MD5 checksum:   627866 8dfe71b27523b1d569b3667f10a749b9
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.90.1-3etch3_s390.deb
  Size/MD5 checksum:  9300712 f62ea48fc7152fb0037672ca5f2a2dac
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.90.1-3etch3_s390.deb
  Size/MD5 checksum:   176310 82180df2f14b91b84cba9c36a1af8251
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.90.1-3etch3_s390.deb
  Size/MD5 checksum:   401544 aa447285ca773255a2026b39a81625e0
http://security.debian.org/pool/updates/main/c/clamav/libclamav2_0.90.1-3etch3_s390.deb
  Size/MD5 checksum:   391058 d2a1d0c01faf888351e7b49d515f33f0

Sun Sparc architecture:

http://security.debian.org/pool/updates/main/c/clamav/clamav_0.90.1-3etch3_sparc.deb
  Size/MD5 checksum:   851050 c3819921515e77870383807e34a310c6
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.90.1-3etch3_sparc.deb
  Size/MD5 checksum:   171788 8b42b801324e52b25a17ea40fa16bd0d
http://security.debian.org/pool/updates/main/c/clamav/clamav-dbg_0.90.1-3etch3_sparc.deb
  Size/MD5 checksum:   583976 f7e96cc3fc9b6b89a524d6ed4afa675a
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.90.1-3etch3_sparc.deb
  Size/MD5 checksum:  9298506 506d79d43e34f36988c9e5365f179805
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.90.1-3etch3_sparc.deb
  Size/MD5 checksum:   173410 7d8861485054b3469bfd3f303ba034ca
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.90.1-3etch3_sparc.deb
  Size/MD5 checksum:   388982 34548079d29aac01dec9b05d740b6f38
http://security.debian.org/pool/updates/main/c/clamav/libclamav2_0.90.1-3etch3_sparc.deb
  Size/MD5 checksum:   377174 4175cbe3cc45393ab619ad282b0824ef

These files will probably be moved into the stable distribution on
its next update.


For apt-get: deb http://security.debian.org/ stable/updates main
For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
Mailing list: [email protected]
Package info: `apt-cache show <pkg>' and http://packages.debian.org/&lt;pkg&gt;

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

6.9 Medium

AI Score

Confidence

Low

0.531 Medium

EPSS

Percentile

97.6%