-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 3.0 (quilt) Source: clamav Binary: clamav-base, clamav-docs, clamav-dbg, clamav, libclamav-dev, libclamav6, clamav-daemon, clamdscan, clamav-testfiles, clamav-freshclam, clamav-milter Architecture: any all Version: 0.98.6+dfsg-1 Maintainer: ClamAV Team <[email protected]> Uploaders: Stephen Gran <[email protected]>, Michael Meskes <[email protected]>, Michael Tautschnig <[email protected]>, Scott Kitterman <[email protected]>, Sebastian Andrzej Siewior <[email protected]>, Andreas Cadhalpun <[email protected]> Homepage: http://www.clamav.net/ Standards-Version: 3.9.6 Vcs-Browser: https://anonscm.debian.org/cgit/pkg-clamav/clamav.git Vcs-Git: git://anonscm.debian.org/pkg-clamav/clamav.git Testsuite: autopkgtest Build-Depends: automake, bc, check, debhelper (>= 8.9.7), dh-autoreconf, dh-systemd, electric-fence, faketime, libbz2-dev, libcurl4-openssl-dev, libjson-c-dev | libjson0-dev, libltdl-dev, libmilter-dev, libmspack-dev, libncurses5-dev, libssl-dev, libsystemd-daemon-dev [linux-any], libtommath-dev, libxml2-dev, llvm-dev [i386 amd64 powerpc kfreebsd-amd64 kfreebsd-i386], perl, pkg-config, po-debconf, python, zlib1g-dev Package-List: clamav deb utils optional arch=any clamav-base deb utils optional arch=all clamav-daemon deb utils optional arch=any clamav-dbg deb debug extra arch=any clamav-docs deb doc optional arch=all clamav-freshclam deb utils optional arch=any clamav-milter deb utils extra arch=any clamav-testfiles deb utils optional arch=all clamdscan deb utils optional arch=any libclamav-dev deb libdevel optional arch=any libclamav6 deb libs optional arch=any Checksums-Sha1: 1ceb0814ecc8fb38800303da8ac75b09b9d7a16b 8240960 clamav_0.98.6+dfsg.orig.tar.xz 7b7d151dd3748d40866c3d6c9c6b433b33960a74 541668 clamav_0.98.6+dfsg-1.debian.tar.xz Checksums-Sha256: 0140291a647fbb1a787901497b999794475530f3271e696e8b6da75a9a2607a7 8240960 clamav_0.98.6+dfsg.orig.tar.xz d37a8a78883fd5064d68dacd94c021d4048fddbb1844a35f8d6f335d9f1a0262 541668 clamav_0.98.6+dfsg-1.debian.tar.xz Files: 55b9c8651dfa8fb01520ebd00e57dcc1 8240960 clamav_0.98.6+dfsg.orig.tar.xz 55b1c7c06e9b101f8b9baf968843017a 541668 clamav_0.98.6+dfsg-1.debian.tar.xz -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJUyeqLAAoJEHuW6BYqjPXRk1EP/j0YPhQbwev7AdRapZg9IcR6 UtIjEhPe9bcaHlpTw9ckVXtt+mKxsrQTEhwIn9e/tfupHY5jj10F+QNJcM/iChl5 Hq7OH6nkdHJF5aZGLOUOdv4JdS+Rq5RgthXHPe5j7PHNJ2mCsOko6h8DcHkxEm7d ry0HCyHyFGQPhlXTu87xHTLqHuSqhLqeAEEQ4UTyjPsmhPv7y71LXE2doa4CLJPq ASnJEIgxwP1YSqbdSdWwNv6RsFmOokQaPEaLzg9h4q5F+vCSuOYJShqhwapxDGVg H07QZr1aF4t7L6kNkJ7BRDE7Q2y/lN38STbb3NkqzYuM0Cxy08bHg6MgkmsEnn5M jSZY1vr2NDhpBwzRjOIvfe10FhKvFWu25jOu3Gafu+Hnhl10kWEaYTl2fFDTy592 iMc/61LdKapZusz0DEo5tFWPD2LsINlntKQxJxprSXt4NdG88JfC9pok7xFaJHgG Enb7uoHC5W9UAmm7ia5Tyj/5M5gEfaL0ojHUdxzfdepKSVygL7MZPZ6oIOnnk18K LlvU0InVxSYNoPvn/yraB/GyrWitMUGlqDW+rtJTV1QAueHXP8BmjSNlpovuglX0 Xq0t23VKTW3LZsN5peF4cFieHjbydRek0pzw5i5AMLY9s7cN9Dc3NdELJ9da6nGp QORmej03hCIZVf7/7PIx =9NaE -----END PGP SIGNATURE----- Changes: clamav (0.98.6+dfsg-1) unstable; urgency=high [ Sebastian Andrzej Siewior ] * update "fix-ssize_t-size_t-off_t-printf-modifier", include of misc.h was missing but was pulled in via the systemd patch. * Don't leak return codes from libmspack to clamav API. (Closes: #774686). [ Andreas Cadhalpun ] * Add patch to avoid emitting incremental progress messages when not outputting to a terminal. (Closes: #767350) * Update lintian-overrides for unused-file-paragraph-in-dep5-copyright. * clamav-base.postinst: always chown /var/log/clamav and /var/lib/clamav to clamav:clamav, not only on fresh installations. (Closes: #775400) * Adapt the clamav-daemon and clamav-freshclam logrotate scripts, so that they correctly work under systemd. * Move the PidFile variable from the clamd/freshclam configuration files to the init scripts. This makes the init scripts more robust against misconfiguration and avoids error messages with systemd. (Closes: #767353) * debian/copyright: drop files from Files-Excluded only present in github tarballs * Drop Workaround-a-bug-in-libc-on-Hurd.patch, because hurd got fixed. (see #752237) * debian/rules: Remove useless --with-system-tommath --without-included-ltdl configure options. [ Scott Kitterman ] * Stop stripping llvm when repacking the tarball as the system llvm on some releases is too old to use * New upstream bugfix release - Library shared object revisions. - Includes a patch from Sebastian Andrzej Siewior making ClamAV pid files compatible with systemd. - Fix a heap out of bounds condition with crafted Yoda's crypter files. This issue was discovered by Felix Groebert of the Google Security Team. - Fix a heap out of bounds condition with crafted mew packer files. This issue was discovered by Felix Groebert of the Google Security Team. - Fix a heap out of bounds condition with crafted upx packer files. This issue was discovered by Kevin Szkudlapski of Quarkslab. - Fix a heap out of bounds condition with crafted upack packer files. This issue was discovered by Sebastian Andrzej Siewior. CVE-2014-9328. - Compensate a crash due to incorrect compiler optimization when handling crafted petite packer files. This issue was discovered by Sebastian Andrzej Siewior. * Update lintian override for embedded zlib to match new so version [ Javier Fernández-Sanguino ] * Updated Spanish Debconf template translation (Closes: #773563) -- Scott Kitterman <[email protected]> Wed, 28 Jan 2015 00:25:13 -0500