USN-6303-2: ClamAV vulnerability
USN-6303-1 fixed a vulnerability in ClamAV. This update provides the corresponding update for Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 18.04 LTS. Original advisory details: It was discovered that ClamAV incorrectly handled parsing HFS+ files. A remote attacker could possibly use this issue to cause ClamAV to crash, resulting in a denial of service.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this ClamAV vulnerability?
The vulnerability ID of this ClamAV vulnerability is USN-6303-2.
What is the severity of USN-6303-2?
The severity of USN-6303-2 is not specified in the provided information.
What software versions are affected by USN-6303-2?
USN-6303-2 affects the following versions of ClamAV: 0.103.9+dfsg-0ubuntu0.18.04.1+esm1, 0.103.9+dfsg-0ubuntu0.16.04.1+esm1, and 0.103.9+dfsg-0ubuntu0.14.04.1+esm1.
How do I fix USN-6303-2?
To fix USN-6303-2, update ClamAV to version 0.103.9+dfsg-0ubuntu0.18.04.1+esm1 for Ubuntu 18.04 LTS, version 0.103.9+dfsg-0ubuntu0.16.04.1+esm1 for Ubuntu 16.04 LTS, and version 0.103.9+dfsg-0ubuntu0.14.04.1+esm1 for Ubuntu 14.04 LTS.
Where can I find more information about USN-6303-2?
You can find more information about USN-6303-2 at the following references: [USN-6303-1](https://ubuntu.com/security/notices/USN-6303-1) and [USN-6303-2](https://ubuntu.com/security/notices/USN-6303-2).