Set version to 1.0.8, FLEVEL to 168; Update NEWS.md

rel/1.0^2
Micah Snyder 4 months ago
parent 6e4c7a5814
commit 1ea9993882
No known key found for this signature in database
GPG Key ID: 3449E631914956D0
  1. 2
      CMakeLists.txt
  2. 2
      Jenkinsfile
  3. 19
      NEWS.md
  4. 1
      libclamav/bytecode_api.h
  5. 2
      libclamav/others.h
  6. 4
      win32/res/common.rc

@ -22,7 +22,7 @@ string(TIMESTAMP TODAY "%Y%m%d")
set(VERSION_SUFFIX "")
project( ClamAV
VERSION "1.0.7"
VERSION "1.0.8"
DESCRIPTION "ClamAV open source email, web, and end-point anti-virus toolkit." )
set(CMAKE_MODULE_PATH "${CMAKE_CURRENT_SOURCE_DIR}/cmake" ${CMAKE_MODULE_PATH})

2
Jenkinsfile vendored

@ -10,7 +10,7 @@ properties(
parameters(
[
string(name: 'VERSION',
defaultValue: '1.0.7',
defaultValue: '1.0.8',
description: 'ClamAV version string'),
string(name: 'FRAMEWORK_BRANCH',
defaultValue: '1.0',

@ -3,6 +3,25 @@
Note: This file refers to the official packages. Things described here may
differ slightly from third-party binary packages.
## 1.0.8
ClamAV 1.0.8 is a patch release with the following fixes:
- [CVE-2025-20128](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-20128):
Fixed a possible buffer overflow read bug in the OLE2 file parser that could
cause a denial-of-service (DoS) condition.
This issue was introduced in version 1.0.0 and affects all currently
supported versions. It will be fixed in:
- 1.4.2
- 1.0.8
Thank you to OSS-Fuzz for identifying this issue.
- ClamOnAcc: Fixed an infinite loop when a watched directory does not exist.
This is a backport of a fix from ClamAV 1.3.0.
- [GitHub pull request](https://github.com/Cisco-Talos/clamav/pull/1426)
## 1.0.7
ClamAV 1.0.7 is a patch release with the following fixes:

@ -171,6 +171,7 @@ enum FunctionalityLevels {
FUNC_LEVEL_1_0_5 = 165, /**< LibClamAV release 1.0.5 */
FUNC_LEVEL_1_0_6 = 166, /**< LibClamAV release 1.0.6 */
FUNC_LEVEL_1_0_7 = 167, /**< LibClamAV release 1.0.7 */
FUNC_LEVEL_1_0_8 = 168, /**< LibClamAV release 1.0.8 */
};
/**

@ -73,7 +73,7 @@
* in re-enabling affected modules.
*/
#define CL_FLEVEL 167
#define CL_FLEVEL 168
#define CL_FLEVEL_DCONF CL_FLEVEL
#define CL_FLEVEL_SIGTOOL CL_FLEVEL

@ -6,8 +6,8 @@
#define REPO_VERSION VERSION
#endif
#define RES_VER_Q 1,0,7,0
#define RES_VER_S "ClamAV 1.0.7"
#define RES_VER_Q 1,0,8,0
#define RES_VER_S "ClamAV 1.0.8"
VS_VERSION_INFO VERSIONINFO
FILEVERSION RES_VER_Q

Loading…
Cancel
Save