On Tue, 2014-02-04 at 09:01 -0800, Dennis Peterson wrote: > On 2/4/14, 4:17 AM, Andre Hübner wrote: > > Hello, > > > > is a signatur like this HTML.CVE_2012_1526-3 really needed? > > > > HTML.CVE_2012_1526-3:3:*:7374796c653d{-256}6d617267696e3a{-20}2d(31|32|33|34|35|36|37|38|39)(30|31|32|33|34|35|36|37|38|39)(30|31|32|33|34|35|36|37|38|39)(30|31|32|33|34|35|36|37|38|39)656d > > > > > > This signature blocks html-pages with something like "style="margin: 0 0 0 > > -9999em" > > > > Ist this still needed or outdatet? clamav is only one scanner wich finds a > > flaw. > > Please remove if obsolete. > > > > Thanks, > > Andre > > > http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-1526 > > There are still a lot of IE6 and IE7 users out there. If your system isn't > protecting such users then disable the signature locally. > To that end... There are thousand upon thousands of Corporate installed seats that still use ASP/.NET Applications that will *ONLY* run on IE6 or IE5.5
And those workstations are typically running Windows XP or Even Windows2000. -- greg folkert - systems administration and support web: donor.com email: g...@donor.com phone: 877-751-3300 x416 direct: 616-328-6449 (direct dial and fax) "If you do not think about your future, you cannot have one." -- John Galsworthy _______________________________________________ Help us build a comprehensive ClamAV guide: https://github.com/vrtadmin/clamav-faq http://www.clamav.net/support/ml