News for package clamav

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 3.0 (quilt)
Source: clamav
Binary: clamav-base, clamav-docs, clamav-dbg, clamav, libclamav-dev, libclamav6, clamav-daemon, clamdscan, clamav-testfiles, clamav-freshclam, clamav-milter
Architecture: any all
Version: 0.98.6+dfsg-1
Maintainer: ClamAV Team <[email protected]>
Uploaders: Stephen Gran <[email protected]>, Michael Meskes <[email protected]>, Michael Tautschnig <[email protected]>, Scott Kitterman <[email protected]>, Sebastian Andrzej Siewior <[email protected]>, Andreas Cadhalpun <[email protected]>
Homepage: http://www.clamav.net/
Standards-Version: 3.9.6
Vcs-Browser: https://anonscm.debian.org/cgit/pkg-clamav/clamav.git
Vcs-Git: git://anonscm.debian.org/pkg-clamav/clamav.git
Testsuite: autopkgtest
Build-Depends: automake, bc, check, debhelper (>= 8.9.7), dh-autoreconf, dh-systemd, electric-fence, faketime, libbz2-dev, libcurl4-openssl-dev, libjson-c-dev | libjson0-dev, libltdl-dev, libmilter-dev, libmspack-dev, libncurses5-dev, libssl-dev, libsystemd-daemon-dev [linux-any], libtommath-dev, libxml2-dev, llvm-dev [i386 amd64 powerpc kfreebsd-amd64 kfreebsd-i386], perl, pkg-config, po-debconf, python, zlib1g-dev
Package-List:
 clamav deb utils optional arch=any
 clamav-base deb utils optional arch=all
 clamav-daemon deb utils optional arch=any
 clamav-dbg deb debug extra arch=any
 clamav-docs deb doc optional arch=all
 clamav-freshclam deb utils optional arch=any
 clamav-milter deb utils extra arch=any
 clamav-testfiles deb utils optional arch=all
 clamdscan deb utils optional arch=any
 libclamav-dev deb libdevel optional arch=any
 libclamav6 deb libs optional arch=any
Checksums-Sha1:
 1ceb0814ecc8fb38800303da8ac75b09b9d7a16b 8240960 clamav_0.98.6+dfsg.orig.tar.xz
 7b7d151dd3748d40866c3d6c9c6b433b33960a74 541668 clamav_0.98.6+dfsg-1.debian.tar.xz
Checksums-Sha256:
 0140291a647fbb1a787901497b999794475530f3271e696e8b6da75a9a2607a7 8240960 clamav_0.98.6+dfsg.orig.tar.xz
 d37a8a78883fd5064d68dacd94c021d4048fddbb1844a35f8d6f335d9f1a0262 541668 clamav_0.98.6+dfsg-1.debian.tar.xz
Files:
 55b9c8651dfa8fb01520ebd00e57dcc1 8240960 clamav_0.98.6+dfsg.orig.tar.xz
 55b1c7c06e9b101f8b9baf968843017a 541668 clamav_0.98.6+dfsg-1.debian.tar.xz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=9NaE
-----END PGP SIGNATURE-----

Changes:
clamav (0.98.6+dfsg-1) unstable; urgency=high

  [ Sebastian Andrzej Siewior ]
  * update "fix-ssize_t-size_t-off_t-printf-modifier", include of misc.h was
    missing but was pulled in via the systemd patch.
  * Don't leak return codes from libmspack to clamav API. (Closes: #774686).

  [ Andreas Cadhalpun ]
  * Add patch to avoid emitting incremental progress messages when not
    outputting to a terminal. (Closes: #767350)
  * Update lintian-overrides for unused-file-paragraph-in-dep5-copyright.
  * clamav-base.postinst: always chown /var/log/clamav and /var/lib/clamav
    to clamav:clamav, not only on fresh installations. (Closes: #775400)
  * Adapt the clamav-daemon and clamav-freshclam logrotate scripts,
    so that they correctly work under systemd.
  * Move the PidFile variable from the clamd/freshclam configuration files
    to the init scripts. This makes the init scripts more robust against
    misconfiguration and avoids error messages with systemd. (Closes: #767353)
  * debian/copyright: drop files from Files-Excluded only present in github
    tarballs
  * Drop Workaround-a-bug-in-libc-on-Hurd.patch, because hurd got fixed.
    (see #752237)
  * debian/rules: Remove useless --with-system-tommath --without-included-ltdl
    configure options.

  [ Scott Kitterman ]
  * Stop stripping llvm when repacking the tarball as the system llvm on some
    releases is too old to use
  * New upstream bugfix release
    - Library shared object revisions.
    - Includes a patch from Sebastian Andrzej Siewior making ClamAV pid files
      compatible with systemd.
    - Fix a heap out of bounds condition with crafted Yoda's crypter files.
      This issue was discovered by Felix Groebert of the Google Security Team.
    - Fix a heap out of bounds condition with crafted mew packer files. This
      issue was discovered by Felix Groebert of the Google Security Team.
    - Fix a heap out of bounds condition with crafted upx packer files. This
      issue was discovered by Kevin Szkudlapski of Quarkslab.
    - Fix a heap out of bounds condition with crafted upack packer files. This
      issue was discovered by Sebastian Andrzej Siewior. CVE-2014-9328.
    - Compensate a crash due to incorrect compiler optimization when handling
      crafted petite packer files. This issue was discovered by Sebastian
      Andrzej Siewior.
  * Update lintian override for embedded zlib to match new so version

  [ Javier Fernández-Sanguino ]
  * Updated Spanish Debconf template translation (Closes: #773563)

 -- Scott Kitterman <[email protected]>  Wed, 28 Jan 2015 00:25:13 -0500