CVE ID: CVE-2007-4510 Risk Level: Medium Summary: - ClamAV versions up to 0.91.1 contain multiple vulnerabilities such as NULL dereferences, improper initialization, and issues with file type detection. Affected Versions: - ClamAV up to version 0.91.1 - Kolab Server 2.1.0 and previous versions - Kolab Server 2.0.4 and previous versions - Kolab Server 2.2-beta1 Fix: - Upgrade to ClamAV 0.91.2 - Source RPM and binary RPM are available from Kolab download mirrors Installation Steps: - Use to rebuild the RPM package - Use to install the package - Use or to restart the service Timeline: - 20070821: ClamAV release 0.91.2 - 20070821: OpenPKG 0.91.2 package release - 20070821: Kolab Server security advisory published