Re: [Clamav-users] Phishing feature defaults, naming, and 0.92

2007-11-20 Thread jef moskot
On Mon, 19 Nov 2007, Dennis Peterson wrote: > Perhaps they should issue a warning or advisory against re-using the > config files from previous versions as this has the potential to > introduce surprises. The surprise would still exist if you use clamscan and not clamdscan. This config file talk

[Clamav-users] ClamAV Vulnerability

2007-11-20 Thread Sean Doherty
Anyone know if there is any substance to this vulnerability claim? http://wabisabilabi.blogspot.com/2007/11/focus-on-clamav-remote-code-execution.html Regards, - Sean -- Sean Doherty Copperfasten Technologies ___ Help us build a comprehe

Re: [Clamav-users] I need to refute a 'security expert'

2007-11-20 Thread GiM
[EMAIL PROTECTED] in message 'Re: [Clamav-users] I need to refute a 'security expert'' wrote: > > > I wouldn't even be in this situation, except that Symantec AV for Linux is a > little too fussy about kernel levels and the like to pass muster. > > We're builing a fairly massive vignette/orcal

Re: [Clamav-users] ClamAV Vulnerability

2007-11-20 Thread David F. Skoll
Sean Doherty wrote: > Anyone know if there is any substance to this vulnerability claim? > http://wabisabilabi.blogspot.com/2007/11/focus-on-clamav-remote-code-execution.html Well, you'd have to bid on it to know for sure, I suppose... It wouldn't surprise me. Clam has a rather checkered securi

Re: [Clamav-users] ClamAV Vulnerability

2007-11-20 Thread David F. Skoll
Tomasz Kojm wrote: > This is getting boring! I'm sorry you find it so. I actually find this to be exciting reading: http://www.securityfocus.com/cgi-bin/index.cgi?o=0&l=30&c=12&op=display_list&vendor=Clam%20Anti-Virus&version=&title=&CVE= Please, Clam developers, before adding new (dubious) fe

Re: [Clamav-users] ClamAV Vulnerability

2007-11-20 Thread Tomasz Kojm
On Tue, 20 Nov 2007 07:42:27 -0500 "David F. Skoll" <[EMAIL PROTECTED]> wrote: > It wouldn't surprise me. Clam has a rather checkered security history, > and some of its code is pretty convoluted. This is getting boring! -- oo. Tomasz Kojm <[EMAIL PROTECTED]> (\/)\

Re: [Clamav-users] I need to refute a 'security expert'

2007-11-20 Thread Jim . Melin
[EMAIL PROTECTED] wrote on 11/20/2007 06:29:50 AM: > [EMAIL PROTECTED] in message 'Re: [Clamav-users] I need to > refute a 'security expert'' wrote: > > > > > > I wouldn't even be in this situation, except that Symantec AV for > Linux is a little too fussy about kernel levels and the like to pas

Re: [Clamav-users] ClamAV Vulnerability

2007-11-20 Thread Dennis Peterson
David F. Skoll wrote: > Tomasz Kojm wrote: > >> This is getting boring! > > I'm sorry you find it so. I actually find this to be exciting reading: > > http://www.securityfocus.com/cgi-bin/index.cgi?o=0&l=30&c=12&op=display_list&vendor=Clam%20Anti-Virus&version=&title=&CVE= > > Please, Clam dev

[Clamav-users] Can't connect to UNIX socket

2007-11-20 Thread Morgan Walker
Guys and gals, I have been working on this problem for 2 days to still no avail. This is the error I am getting: #4.5.0 smtp; 451 4.5.0 Error in processing, id=08486-07, virus_scan FAILED: virus_scan: ALL VIRUS SCANNERS FAILED: ClamAV-clamd av-scanner FAILED: Too many retries to talk to /v

Re: [Clamav-users] Can't connect to UNIX socket

2007-11-20 Thread Gerardo Ponce
Hello! May be you frogot to join clamav user to the amavis group: # usermod -a -G amavis clamav I hope this helps you ! ;) Gerardo Ponce Soporte Interno | Administrador de Red Delsat Group SA Tel. +54 (223) 4945001 / Fax: +54 (223) 4945111 Mar del Plata - Argentina www.delsatgroup.com

Re: [Clamav-users] ClamAV Vulnerability

2007-11-20 Thread tBB
David F. Skoll wrote: > Tomasz Kojm wrote: > >> This is getting boring! > > I'm sorry you find it so. I actually find this to be exciting reading: > > http://www.securityfocus.com/cgi-bin/index.cgi?o=0&l=30&c=12&op=display_list&vendor=Clam%20Anti-Virus&version=&title=&CVE= Oh, then I'm sure y

Re: [Clamav-users] ClamAV Vulnerability

2007-11-20 Thread David F. Skoll
tBB wrote: > Oh, then I'm sure you will find this an interesting reading too: > http://search.securityfocus.com/swsearch?sbm=%2F&metaname=alldoc&query=roaring+penguin+software+vulnerabil%2A&x=0&y=0 It is interesting. Two products and only 5 supposed vulnerabilities in 7 years. (Item 6 is an ar

Re: [Clamav-users] ClamAV Vulnerability

2007-11-20 Thread Rob MacGregor
On Nov 20, 2007 4:20 PM, tBB <[EMAIL PROTECTED]> wrote: > David F. Skoll wrote: > > > Tomasz Kojm wrote: > > > >> This is getting boring! > > > > I'm sorry you find it so. I actually find this to be exciting reading: > > > > http://www.securityfocus.com/cgi-bin/index.cgi?o=0&l=30&c=12&op=display_l

Re: [Clamav-users] Can't connect to UNIX socket

2007-11-20 Thread Morgan Walker
I'm pretty sure clamav user belonged to the amavis group. Tried your command anyway, restarted amavis and clamav-daemon, still no dice. I even followed this tutorial, http://www200.pair.com/mecham/spam/clamav-amavisd-new.html, where I made amavis the user for all clamav activities but that didn't

Re: [Clamav-users] Can't connect to UNIX socket

2007-11-20 Thread Gary V
> I'm pretty sure clamav user belonged to the amavis group. Tried your > command anyway, restarted amavis and clamav-daemon, still no dice. > > I even followed this tutorial, > http://www200.pair.com/mecham/spam/clamav-amavisd-new.html, where I made > amavis the user for all clamav activities but

Re: [Clamav-users] Can't connect to UNIX socket

2007-11-20 Thread Stuart J. Browne
> > Wait a couple minutes, and see if the socket is created: > > srwxrwxrwx 1 clamav clamav 0 2007-11-20 16:05 clamd.ctl > -rw-rw 1 clamav clamav 4 2007-11-20 16:05 clamd.pid > -rw-rw 1 clamav clamav 4 2007-11-20 16:00 freshclam.pid > > What source did you install from (sarge volatile?).