Secunia Logo
Netsikker nu! 2008
 
SUSE update for clamav
Secunia Advisory: SA25523
Release Date: 2007-06-06
Last Update: 2007-06-28
Popularity: 4,248 views

Critical:
Moderately critical
Impact: DoS
Where: From remote
Solution Status: Vendor Patch

OS:openSUSE 10.2
SUSE Linux 10
SUSE Linux 10.1
SUSE Linux Enterprise Server 10
SUSE Linux Enterprise Server 9

Software:Novell Open Enterprise Server 1.x

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2007-2650
CVE-2007-3023


Description:
SUSE has issued an update for clamav. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service).

For more information:
SA25244

Solution:
Apply updated packages.

x86 Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/clamav-0.90.3-2.1.i586.rpm
a8a37e2d3ccd914f91597f8f48cca99f
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/clamav-db-0.90.3-2.1.i586.rpm
fc9519bd40748e2d30037596375b5cca

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/clamav-0.90.3-3.1.i586.rpm
31d196d6eaf5c0c8f29dc4c21e4ff78d

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/clamav-0.90.3-2.1.i586.rpm
02e6bdaef4c68c484179275b0bee985f
ftp://ftp.suse.com/pub/suse/i386/upda...pm/i586/clamav-db-0.90.3-2.1.i586.rpm
3191c5e50ffa62bdf817b65368786c8b

Power PC Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/clamav-0.90.3-2.1.ppc.rpm
583fdbffc1e5069973eacc34c4de2947
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/clamav-db-0.90.3-2.1.ppc.rpm
29c2788eb45087ee974fad983f1b4964

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/clamav-0.90.3-3.1.ppc.rpm
320d1bcc7a5e6718b95c368f7b1d4d7d

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/clamav-0.90.3-2.1.ppc.rpm
2b43aa34e2d3c302da79759f242cf91e
ftp://ftp.suse.com/pub/suse/i386/upda.../rpm/ppc/clamav-db-0.90.3-2.1.ppc.rpm
ec1ae4d5d638bd223cf33e551bb382a7

x86-64 Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/clamav-0.90.3-2.1.x86_64.rpm
5a4b81479f025c99e304794b0c5b0c27
ftp://ftp.suse.com/pub/suse/update/10...86_64/clamav-db-0.90.3-2.1.x86_64.rpm
a81e693c4c371f6af4f98cfad4d615b5

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/clamav-0.90.3-3.1.x86_64.rpm
a42e875ca5f71ec7d7efab625d13b9e5

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...m/x86_64/clamav-0.90.3-2.1.x86_64.rpm
a75c1378b9a05f54a699996345e9b174
ftp://ftp.suse.com/pub/suse/i386/upda...86_64/clamav-db-0.90.3-2.1.x86_64.rpm
702683c41d6ab2dd17acd3fcb2f2d163

Sources:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/src/clamav-0.90.3-2.1.src.rpm
3a018d00982f611bc847fcdbf3be0545

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/src/clamav-0.90.3-3.1.src.rpm
2be2b9659f5bb2fe11e32fb98a409d37

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/src/clamav-0.90.3-2.1.src.rpm
2bd465210eed5eaa70fe16c1a64fed75

Open Enterprise Server
http://support.novell.com/techcenter/psdb/5a3e85703885a03d41664f02c24200e0.html

Novell Linux POS 9
http://support.novell.com/techcenter/psdb/5a3e85703885a03d41664f02c24200e0.html

SUSE SLES 9
http://support.novell.com/techcenter/psdb/5a3e85703885a03d41664f02c24200e0.html

SUSE Linux Enterprise Server 10 SP1 for AMD64 and Intel EM64T (x86_64)
http://download.novell.com/Download?buildid=cDqbub9TcFg~

SUSE Linux Enterprise Server 10 SP1 for IBM POWER (ppc)
http://download.novell.com/Download?buildid=cDqbub9TcFg~

SUSE Linux Enterprise Server 10 SP1 for IBM zSeries 64bit (s390x)
http://download.novell.com/Download?buildid=a8TIZE8z9Eg~

SUSE Linux Enterprise Server 10 SP1 for IPF (ia64)
http://download.novell.com/Download?buildid=cDqbub9TcFg~

SUSE Linux Enterprise Server 10 SP1 for x86 (i386)
http://download.novell.com/Download?buildid=cDqbub9TcFg~

Changelog:
2007-06-28: Updated "Solution" section. Added SUSE Linux Enterprise Server 10.

Original Advisory:
http://lists.suse.com/archive/suse-security-announce/2007-Jun/0002.html
http://support.novell.com/techcenter/psdb/59876b331e1717665e435a4207e00eaa.html

Other References:
SA25244:
http://secunia.com/advisories/25244/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Today
New advisories: 19
New vulnerabilities: 68
Updated advisories: 62

Moderately // 78 views
Debian update for php5
Moderately // 87 views
Atarone CMS Multiple Vulnerabilities
Moderately // 132 views
Debian update for squid
Less // 136 views
SUSE update for mercurial
Moderately // 161 views
SUSE update for openssh
Less // 133 views
Fedora update for mediawiki

Solutions | More...  


Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. MetaGauge Directory Traversal Vulnerability // 91 views
2. H-Sphere webshell4 Cross-Site Scripting and Request Forgery // 88 views
3. Atarone CMS Multiple Vulnerabilities // 77 views
4. Juniper Products Neighbor Discovery Protocol Neighbor Solicitation Vulnerability // 59 views
5. SUSE update for openssh // 58 views
6. Debian update for squid // 57 views
7. CMME Information Disclosure Security Issues // 56 views
8. Debian update for php5 // 55 views
9. HP-UX NFS/ONCplus Denial of Service Vulnerability // 51 views
10. SUSE update for mercurial // 50 views