Overview
Request 728340 accepted
- update to 0.101.4:
* CVE-2019-12900: An out of bounds write in the NSIS bzip2
(boo#1149458)
* CVE-2019-12625: Introduce a configurable time limit to mitigate
zip bomb vulnerability completely. Default is 2 minutes,
configurable useing the clamscan --max-scantime and for clamd
using the MaxScanTime` config option (boo#1144504)
- Created by AndreasStieger
- In state accepted
- Package maintainers: rmax and toganm
- Supersedes 728339
Request History
AndreasStieger created request
- update to 0.101.4:
* CVE-2019-12900: An out of bounds write in the NSIS bzip2
(boo#1149458)
* CVE-2019-12625: Introduce a configurable time limit to mitigate
zip bomb vulnerability completely. Default is 2 minutes,
configurable useing the clamscan --max-scantime and for clamd
using the MaxScanTime` config option (boo#1144504)
msmeissn accepted request
ok
@rmax, @toganm: review reminder