First published: Mon Aug 21 2023(Updated: )
USN-6303-1 fixed a vulnerability in ClamAV. This update provides the corresponding update for Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 18.04 LTS. Original advisory details: It was discovered that ClamAV incorrectly handled parsing HFS+ files. A remote attacker could possibly use this issue to cause ClamAV to crash, resulting in a denial of service.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/clamav | <0.103.9+dfsg-0ubuntu0.18.04.1+esm1 | 0.103.9+dfsg-0ubuntu0.18.04.1+esm1 |
=18.04 | ||
All of | ||
ubuntu/clamav | <0.103.9+dfsg-0ubuntu0.16.04.1+esm1 | 0.103.9+dfsg-0ubuntu0.16.04.1+esm1 |
=16.04 | ||
All of | ||
ubuntu/clamav | <0.103.9+dfsg-0ubuntu0.14.04.1+esm1 | 0.103.9+dfsg-0ubuntu0.14.04.1+esm1 |
=14.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this ClamAV vulnerability is USN-6303-2.
The severity of USN-6303-2 is not specified in the provided information.
USN-6303-2 affects the following versions of ClamAV: 0.103.9+dfsg-0ubuntu0.18.04.1+esm1, 0.103.9+dfsg-0ubuntu0.16.04.1+esm1, and 0.103.9+dfsg-0ubuntu0.14.04.1+esm1.
To fix USN-6303-2, update ClamAV to version 0.103.9+dfsg-0ubuntu0.18.04.1+esm1 for Ubuntu 18.04 LTS, version 0.103.9+dfsg-0ubuntu0.16.04.1+esm1 for Ubuntu 16.04 LTS, and version 0.103.9+dfsg-0ubuntu0.14.04.1+esm1 for Ubuntu 14.04 LTS.
You can find more information about USN-6303-2 at the following references: [USN-6303-1](https://ubuntu.com/security/notices/USN-6303-1) and [USN-6303-2](https://ubuntu.com/security/notices/USN-6303-2).