Browse code

NEWS.md: Add detail for Windows DLL load fix

Micah Snyder authored on 2021/03/16 06:38:30
Showing 1 changed files
... ...
@@ -7,7 +7,9 @@ Note: This file refers to the source tarball. Things described here may differ
7 7
 
8 8
 ClamAV 0.103.2 is a security patch release with the following fixes:
9 9
 
10
--
10
+- [CVE-2021-1386](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-1386):
11
+  Fix for UnRAR DLL load privilege escalation.
12
+  Affects 0.103.1 and prior on Windows only.
11 13
 
12 14
 The ClamAV team thanks the following individuals for their code submissions:
13 15