Security update for clamav
| Announcement ID: | SUSE-SU-2026:2833-1 |
|---|---|
| Release Date: | 2026-07-09T19:11:01Z |
| Rating: | important |
| References: | |
| Cross-References: | |
| CVSS scores: |
|
| Affected Products: |
|
An update that solves eight vulnerabilities can now be installed.
Description:
This update for clamav fixes the following issues
- CVE-2026-20213: PE file format parser could allow an unauthenticated, remote attacker to cause a denial of service (bsc#1270107).
- CVE-2026-20214: FSG file format parser could allow an unauthenticated, remote attacker to cause a denial of service (bsc#1270085).
- CVE-2026-20215: 7z file format parser could allow an unauthenticated, remote attacker to cause a denial of service (bsc#1270088).
- CVE-2026-20216: InstallShield file format parser could allow an unauthenticated, remote attacker to cause a denial of service (bsc#1270089).
- CVE-2026-20217: PESpin file format parser could allow an unauthenticated, remote attacker to cause a denial of service (bsc#1270091).
- CVE-2026-20243: ALZ file format parser could allow an unauthenticated, remote attacker to cause a denial of service (bsc#1270092).
- CVE-2026-20244: DMG file format parser could allow an unauthenticated, remote attacker to cause a denial of service on 32-bit platforms only (bsc#1270106).
- CVE-2026-41676: rust-openssl:
Deriver:deriveandPkeyCtxRef:derivecan overflow short buffers on OpenSSL 1.1.1 (bsc#1270138).
Changes for clamav:
-
Update to 1.5.3:
-
Hardened clamscan, clamdscan, and clamonacc quarantine actions against time-of-check/time-of-use races that could redirect copied, moved, or removed files under unsafe quarantine directory configurations.
- Raised the minimum required CMake version to 3.17 to fix Linux builds with libcurl v8.21.0 when linking static library dependencies.
- Metadata preclass scans now run before the final scan verdict.
- ClamOnAcc: Fixed errors when recursively excluded paths are children of an included path.
- ClamOnAcc: Fixed hash bucket list corruption when two watched paths collide in the same bucket.
Patch Instructions:
To install this SUSE update use the SUSE recommended
installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
-
SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security
zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2026-2833=1 -
SUSE Linux Enterprise Server 12 SP5 LTSS
zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-2026-2833=1
Package List:
-
SUSE Linux Enterprise Server 12 SP5 LTSS (aarch64 ppc64le s390x x86_64)
- libclammspack0-debuginfo-1.5.3-3.56.1
- libfreshclam4-debuginfo-1.5.3-3.56.1
- clamav-devel-1.5.3-3.56.1
- clamav-debuginfo-1.5.3-3.56.1
- libclamav12-1.5.3-3.56.1
- libclamav12-debuginfo-1.5.3-3.56.1
- clamav-milter-1.5.3-3.56.1
- clamav-1.5.3-3.56.1
- clamav-milter-debuginfo-1.5.3-3.56.1
- clamav-debugsource-1.5.3-3.56.1
- libfreshclam4-1.5.3-3.56.1
- libclammspack0-1.5.3-3.56.1
-
SUSE Linux Enterprise Server 12 SP5 LTSS (noarch)
- clamav-docs-html-1.5.3-3.56.1
-
SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (x86_64)
- libclammspack0-debuginfo-1.5.3-3.56.1
- libfreshclam4-debuginfo-1.5.3-3.56.1
- clamav-devel-1.5.3-3.56.1
- clamav-debuginfo-1.5.3-3.56.1
- libclamav12-1.5.3-3.56.1
- clamav-milter-1.5.3-3.56.1
- libclamav12-debuginfo-1.5.3-3.56.1
- clamav-1.5.3-3.56.1
- clamav-debugsource-1.5.3-3.56.1
- clamav-milter-debuginfo-1.5.3-3.56.1
- libfreshclam4-1.5.3-3.56.1
- libclammspack0-1.5.3-3.56.1
-
SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (noarch)
- clamav-docs-html-1.5.3-3.56.1
References:
- https://www.suse.com/security/cve/CVE-2026-20213.html
- https://www.suse.com/security/cve/CVE-2026-20214.html
- https://www.suse.com/security/cve/CVE-2026-20215.html
- https://www.suse.com/security/cve/CVE-2026-20216.html
- https://www.suse.com/security/cve/CVE-2026-20217.html
- https://www.suse.com/security/cve/CVE-2026-20243.html
- https://www.suse.com/security/cve/CVE-2026-20244.html
- https://www.suse.com/security/cve/CVE-2026-41676.html
- https://bugzilla.suse.com/show_bug.cgi?id=1270085
- https://bugzilla.suse.com/show_bug.cgi?id=1270088
- https://bugzilla.suse.com/show_bug.cgi?id=1270089
- https://bugzilla.suse.com/show_bug.cgi?id=1270091
- https://bugzilla.suse.com/show_bug.cgi?id=1270092
- https://bugzilla.suse.com/show_bug.cgi?id=1270106
- https://bugzilla.suse.com/show_bug.cgi?id=1270107
- https://bugzilla.suse.com/show_bug.cgi?id=1270138