[Pkg-clamav-devel] Bug#867223: libclamunrar: CVE-2012-6706: arbitrary memory write

Felix Geyer fgeyer at debian.org
Tue Jul 4 21:27:39 UTC 2017


Source: libclamunrar
Version: 0.99-0+deb7u1
Severity: grave
Tags: security
Justification: user security hole

CVE-2012-6706 also affects libclamunrar. See #865461 for the original bug report against
unrar-nonfree.

Upstream fix:
https://github.com/vrtadmin/clamav-devel/commit/d4699442bce76574573dc564e7f2177d679b88bd

Felix



More information about the Pkg-clamav-devel mailing list