Comment 5 for bug 2007456

Revision history for this message
JonH (jh-ml) wrote :

https://ubuntu.com/security/CVE-2023-20032 lists this CVE as a medium priority.
The Google security-research team rates it as high severity and has a POC zip file that will crash ClamAV in default configuration when it scans it.
https://github.com/google/security-research/security/advisories/GHSA-r6g3-3wqj-m3c8
So can the priority be raised and updates for older versions of Ubuntu as well be released quickly?