On 11/01/2019 04:34, Micah Snyder (micasnyd) wrote:
[SNIP]
>
Type casting to disable warnings sometimes only masks potential issues
and should only be done with extreme care.
This! This!! So many, many, many times this!!!
Cheers,
GaryB-)
_
Hi Alan,
I'm not sure which source files belong to that third party library.
The two non-bogus warnings I got were:
libclamunrar/arcread.cpp:32:3: warning: 'ReadSize' may be used uninitialized in
this function
libclamunrar/rijndael.cpp:101:21: warning: 'uKeyLenInBytes' may be used
uninitialized
Vijayakumar U skrev den 2019-01-10 15:42:
When a malicious file is inside zip file and if zip file contains some
other corrupted zip file, the malicious file is not filtered as virus.
+1
please start using foxhole 3dr party signatures to stop this malwares
with double packed archives
Samp
Joel wasn't aware, but we do actually test ClamAV builds on Solaris on a Sparc
machine before each release because it's the only big-endian machine we have on
hand. Our testing is limited to a manual cursory build and run-test though. We
have limited access to the machine (it's in a shared envir
Dear ClamAV Team,
When a malicious file is inside zip file and if zip file contains some
other corrupted zip file, the malicious file is not filtered as virus.
Sample link - ZXW2.6-Blackfish2.0.zip -
https://drive.google.com/drive/folders/129LvUWJNnp_P-qzXIxA5nqlyS0lnraQB
Kindly look into this i