Packages
- clamav - Anti-virus utility for Unix
Details
It was discovered that ClamAV incorrectly handled certain zip archive
files. A remote attacker could possibly use this issue to cause ClamAV
to crash, resulting in a denial of service. (CVE-2026-20337,
CVE-2026-20338)
It was discovered that ClamAV incorrectly handled certain PESpin files.
A remote attacker could possibly use this issue to cause ClamAV to
crash, resulting in a denial of service. (CVE-2026-20339)
It was discovered that ClamAV incorrectly handled certain GPT files. A
remote attacker could possibly use this issue to cause ClamAV to crash,
resulting in a denial of service. (CVE-2026-20345)
It was discovered that ClamAV incorrectly handled certain PDF files. A
remote attacker could possibly use this issue to cause ClamAV to crash,
resulting in a denial of...
It was discovered that ClamAV incorrectly handled certain zip archive
files. A remote attacker could possibly use this issue to cause ClamAV
to crash, resulting in a denial of service. (CVE-2026-20337,
CVE-2026-20338)
It was discovered that ClamAV incorrectly handled certain PESpin files.
A remote attacker could possibly use this issue to cause ClamAV to
crash, resulting in a denial of service. (CVE-2026-20339)
It was discovered that ClamAV incorrectly handled certain GPT files. A
remote attacker could possibly use this issue to cause ClamAV to crash,
resulting in a denial of service. (CVE-2026-20345)
It was discovered that ClamAV incorrectly handled certain PDF files. A
remote attacker could possibly use this issue to cause ClamAV to crash,
resulting in a denial of service. (CVE-2026-20346)
It was discovered that ClamAV incorrectly handled certain Mach-O files.
A remote attacker could possibly use this issue to cause ClamAV to
crash, resulting in a denial of service. (CVE-2026-20347)
It was discovered that ClamAV incorrectly handled certain XAR files. A
remote attacker could possibly use this issue to cause ClamAV to crash,
resulting in a denial of service. (CVE-2026-20348)
Update instructions
This update uses a new upstream release, which includes additional bug fixes. In general, a standard system update will make all the necessary changes.
Learn more about how to get the fixes.The problem can be corrected by updating your system to the following package versions:
| Ubuntu Release | Package Version | ||
|---|---|---|---|
| 26.04 LTS resolute | clamav – 1.5.4+dfsg-0ubuntu0.26.04.1 | ||
| 24.04 LTS noble | clamav – 1.5.4+dfsg-0ubuntu0.24.04.1 | ||
| 22.04 LTS jammy | clamav – 1.5.4+dfsg-0ubuntu0.22.04.1 | ||
Reduce your security exposure
Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines.