Secunia - Stay Secure
Gartner
Home Corporate Website Jobs Mailing Lists RSS Blog Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


SUSE update for clamav Advisory Available in Danish  Advisory Available in German 

Secunia Advisory: SA24946  
Release Date: 2007-04-20

Critical:
Moderately critical
Impact: Unknown
DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:openSUSE 10.2
SUSE Linux 10
SUSE Linux 10.1
SUSE Linux 9.3

Software:Novell Open Enterprise Server 1.x

CVE reference:CVE-2007-1745 (Secunia mirror)
CVE-2007-1997 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Description:
SUSE has issued an update for clamav. This fixes some vulnerabilities, one of which has an unknown impact, while the other can be exploited by malicious people to cause a DoS (Denial of Service) or to compromise a vulnerable system.

For more information:
SA24891

Solution:
Apply updated packages.

x86 Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/clamav-0.90.2-0.1.i586.rpm
665649e5d1b5f2e2ec072ff6e5acff96

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/clamav-0.90.2-0.2.i586.rpm
a3e3616c1dd19b09be4ae1be22279221

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/clamav-0.90.2-0.1.i586.rpm
3a1aefec54a30a216a46399d46c4dfa5

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/clamav-0.90.2-0.1.i586.rpm
31696e4e0837aab02429695bbb11093d

Power PC Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/clamav-0.90.2-0.1.ppc.rpm
1a497a6200da361e3799f4f2ab4091e7

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/clamav-0.90.2-0.2.ppc.rpm
12c6ed4e2cbb5405838deb2e22bced54

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/clamav-0.90.2-0.1.ppc.rpm
704a40de922c2eb8c5841c40fe19050c

x86-64 Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/clamav-0.90.2-0.1.x86_64.rpm
641d35e63c0ce45bb86099a4a26d4fe6

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/clamav-0.90.2-0.2.x86_64.rpm
14ee14fc3cbcf9f08937b97998441bef

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...m/x86_64/clamav-0.90.2-0.1.x86_64.rpm
ca599326fc97e05e41e6ac793ee63c21

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/upda...m/x86_64/clamav-0.90.2-0.1.x86_64.rpm
1a00a64d6b88ce2465b65d61cf2031ed

Sources:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/src/clamav-0.90.2-0.1.src.rpm
2d24ba99281475f4884dd706dea265c9

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/src/clamav-0.90.2-0.2.src.rpm
7bc311314710d124861172e485056ccd

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/src/clamav-0.90.2-0.1.src.rpm
99ac20be92f82f512d5f4a59feee6460

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/src/clamav-0.90.2-0.1.src.rpm
7cdb83cd4f29d4963cf4fa563b51d9fc

Our maintenance customers are notified individually. The packages are
offered for installation from the maintenance web:

Open Enterprise Server
http://support.novell.com/techcenter/psdb/50a5cb718f20761dd7e0b6b4e0935c52.html

Novell Linux POS 9
http://support.novell.com/techcenter/psdb/50a5cb718f20761dd7e0b6b4e0935c52.html

SUSE SLES 10
http://support.novell.com/techcenter/psdb/50a5cb718f20761dd7e0b6b4e0935c52.html

SUSE SLES 9
http://support.novell.com/techcenter/psdb/50a5cb718f20761dd7e0b6b4e0935c52.html

Original Advisory:
http://lists.suse.com/archive/suse-security-announce/2007-Apr/0003.html

Other References:
SA24891:
http://secunia.com/advisories/24891/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

295 Related Secunia Security Advisories, displaying 10

1. SUSE Update for Multiple Packages
2. SUSE Update for Multiple Packages
3. SUSE update for OpenOffice_org
4. SUSE update for IBM Java
5. SUSE update for clamav
6. SUSE update for flash-player
7. SUSE update for openssh and opera
8. SUSE update for cups
9. SUSE update for MozillaFirefox
10. SUSE update for apache and apache2

Show all related advisories


Send Feedback to Secunia

If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
Microsoft Windows WMF "SETABORTPROC" Arbitrary Code Execution
2.
Kostenloses Linkmanagements cript Multiple Vulnerabilities
3.
Blender Multiple Temporary File Security Issues
4.
GForge Insecure Temporary Files
5.
Drupal Site Documentation Module Information Disclosure
6.
Linux Kernel Multiple Vulnerabilities
7.
Symantec Altiris Deployment Solution Multiple Vulnerabilities
8.
68 Classifieds "cat" SQL Injection Vulnerability
9.
Model Search "cat" SQL Injection Vulnerability
10.
Interspire ActiveKB Admin Interface Cookie Security Bypass





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia