Hi!

First of all, thanks again for taking the time to walk through all the
reports!!! Most of those I've already dealt with, just the first one I'm still
curious about.

> Please review and apply what looks good.
> 
> Debian Bug report logs - #246669
> --------------------------------
> clamav-daemon: clamd protocol scan result output format is ambiguous,
> poses security risk
> 
> Rationale: The "z" prefix in clamd commands addresses the reported
> issue.
> 

[...]

What exactly do you mean by a "z" prefix? Have commands been renamed to, e.g.,
zSCAN? How does that fix what the user requested? It's conceivable to craft a
filename that has zSCAN in it...

Best,
Michael

Attachment: pgpE9rh3fsP1F.pgp
Description: PGP signature

_______________________________________________
Pkg-clamav-devel mailing list
[email protected]
http://lists.alioth.debian.org/mailman/listinfo/pkg-clamav-devel

Reply via email to