Secunia - Stay Secure
Home Corporate Website Jobs Updated Mailing Lists RSS Blog  Online Shop Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


SUSE update for clamav Advisory Available in German 

Secunia Advisory: SA29891  
Release Date: 2008-04-25

Critical:
Highly critical
Impact: Security Bypass
DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:openSUSE 10.2
openSUSE 10.3
SUSE Linux 10.1
SUSE Linux Enterprise Server 10
SUSE Linux Enterprise Server 9

Software:Novell Open Enterprise Server 1.x

CVE reference:CVE-2007-6595 (Secunia mirror)
CVE-2007-6596 (Secunia mirror)
CVE-2008-0314 (Secunia mirror)
CVE-2008-1100 (Secunia mirror)
CVE-2008-1387 (Secunia mirror)
CVE-2008-1833 (Secunia mirror)
CVE-2008-1835 (Secunia mirror)
CVE-2008-1836 (Secunia mirror)
CVE-2008-1837 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Description:
SUSE has issued an update for clamav. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, to cause a DoS (Denial of Service), or to compromise a vulnerable system.

For more information:
SA29000

Solution:
Apply updated packages.

x86 Platform:

openSUSE 10.3:
http://download.opensuse.org/pub/open.../rpm/i586/klamav-0.41.1-32.3.i586.rpm
5f062d237d2e2b467c04249d7ab4eaff

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/clamav-0.93-0.3.i586.rpm
5c1208a1568ce8406cffbad97c17d5cd
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/clamav-db-0.93-0.3.i586.rpm
cc3797fc934ca8a7d36e951aedfd1205
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/klamav-0.41.1-17.4.i586.rpm
2d4a630d9477ad647c5f043a2061eec9

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/clamav-0.93-0.6.i586.rpm
bae48419bbd6d98158b43a27d2e4ae26
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/clamav-db-0.93-0.6.i586.rpm
24c9cee54b8921b2c3896218ebf653fc

openSUSE 10.3:
http://download.opensuse.org/pub/open...0.3/rpm/i586/clamav-0.93-0.3.i586.rpm
cb1b5ad1c50971cd67a969641eb09b5b
http://download.opensuse.org/pub/open.../rpm/i586/clamav-db-0.93-0.3.i586.rpm
05c5ad3009b29ce730089376c4e94437

Power PC Platform:

openSUSE 10.3:
http://download.opensuse.org/pub/open.../10.3/rpm/ppc/clamav-0.93-0.3.ppc.rpm
0e6fd8ae2c47f5cf35671cf268c472a7
http://download.opensuse.org/pub/open....3/rpm/ppc/clamav-db-0.93-0.3.ppc.rpm
67bcdf76348f56ecf7e6e7f44551e58f
http://download.opensuse.org/pub/open....3/rpm/ppc/klamav-0.41.1-32.3.ppc.rpm
9d0be2b87217d54485717178877d0e27

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/clamav-0.93-0.3.ppc.rpm
feea77a7898ef22fee24db6990dfcd53
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/clamav-db-0.93-0.3.ppc.rpm
c557477dfa4437292b476064b9008ce5
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/klamav-0.41.1-17.4.ppc.rpm
465357407c32c4b3f2858923dcf1fa79

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/clamav-0.93-0.6.ppc.rpm
aefcb66e85016ea7ffac9ec90f07b941
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/clamav-db-0.93-0.6.ppc.rpm
c41dab747d0917115afca974dbf71f56

x86-64 Platform:

openSUSE 10.3:
http://download.opensuse.org/pub/open...rpm/x86_64/clamav-0.93-0.3.x86_64.rpm
b52b015df19d50ed90d59aaef2359695
http://download.opensuse.org/pub/open.../x86_64/clamav-db-0.93-0.3.x86_64.rpm
60450bcf1b6e77d9c401f39e53c80b80
http://download.opensuse.org/pub/open.../x86_64/klamav-0.41.1-32.3.x86_64.rpm
6889d3a67a917066a36a8f29dea43b60

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/clamav-0.93-0.3.x86_64.rpm
6ad977899b59f5dc29c3499b57794fe2
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/clamav-db-0.93-0.3.x86_64.rpm
b69ab97fc38e5156fd14997621070521
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/klamav-0.41.1-17.4.x86_64.rpm
dfa9b572d5e7756ee3f7c9f515430fcb

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/clamav-0.93-0.6.x86_64.rpm
d823bff9b6bd7a8363577d452cf32f85
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/clamav-db-0.93-0.6.x86_64.rpm
9fa30054ab60358dd34227fc1ba534c4

Sources:

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/src/clamav-0.93-0.6.src.rpm
46330515b9c6195b80df21260727c917

openSUSE 10.3:
http://download.opensuse.org/pub/open.../10.3/rpm/src/clamav-0.93-0.3.src.rpm
b69d60de1059e37b16f1b8f4b6fdbcb0
http://download.opensuse.org/pub/open....3/rpm/src/klamav-0.41.1-32.3.src.rpm
e6dc89b046f7cb3649b480d0979d67c4

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/src/clamav-0.93-0.3.src.rpm
4dfc2359d565c5584eed51fb0b6477cd
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/src/klamav-0.41.1-17.4.src.rpm
69b4f005d5e1910f817c9a6a2d9fc227

Original Advisory:
http://www.novell.com/linux/security/advisories/2008_24_clamav.html

Other References:
SA29000:
http://secunia.com/advisories/29000/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

349 Related Secunia Security Advisories, displaying 10

1. SUSE update for Sun Java
2. SUSE update for IBM Java
3. SUSE update for IBMJava2-JRE and IBMJava2-SDK
4. SUSE update for python
5. SUSE update for postfix
6. SUSE update for openwsman
7. SUSE Update for Multiple Packages
8. SUSE update for net-snmp
9. SUSE update for MozillaFirefox
10. SUSE Update for Multiple Packages

Show all related advisories


Send Feedback to Secunia

If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
phpJobScheduler "installed_conf ig_file" File Inclusion Vulnerabilities
2.
Novell eDirectory Multiple Vulnerabilities
3.
phpMyRealty "price_max" SQL Injection Vulnerability
4.
HP TCP/IP Services for OpenVMS Finger Format String Vulnerability
5.
IBM WebSphere Application Server for z/OS HTTP Server mod_proxy_ftp Vulnerability
6.
Sun Solaris Kernel Covert Channel Security Bypass
7.
dotProject SQL Injection and Cross-Site Scripting
8.
Blogn Cross-Site Scripting and Cross-Site Request Forgery
9.
Novell Forum TCL Command Injection Vulnerability
10.
Adium MSN SLP Message Integer Overflow Vulnerabilities





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia