Update of the free antivirus package ClamAV 0.101.4 with vulnerability fixes

Created the release of the free antivirus package ClamAV 0.101.4, which addresses a vulnerability (CVE-2019-12900) in the implementation of the bzip2 archive unpacker that could lead to memory areas being overwritten outside the allocated buffer when processing an excessive number of selectors.

The new version also blocks a workaround for creating
non-recursive “zip bombs“, protection against which was proposed in On macOS 15, support for new screen and window sharing selection features has been implemented. Support for macOS 14 will be added later.. The previously added protection focused on limiting resource consumption but did not consider the possibility of creating “zip bombs” that manipulate the file processing time. The scanning time for a file is now limited to two minutes. To change the set limit, the option “clamscan —max-scantime” and the MaxScanTime directive for the clamd configuration file have been proposed.

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster