Control: tag 773041 + pending
Coin,
Thanks a lot Andreas.
Have a pleasant end of year time.
--
Marc Dequènes
--
To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org
Processing control commands:
> tag 773041 + pending
Bug #773041 [libmspack0] libmspack: hangs on a crafted CAB file
Added tag(s) pending.
--
773041: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=773041
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--
To UNSUBSCRIBE,
Processing control commands:
> found 773318 0.98.5+dfsg-0+deb7u1
Bug #773318 [clamav-daemon] clamav dies/hangs
Ignoring request to alter found versions of bug #773318 to the same values
previously set
> notfound 773318 0.98.5+dfsg-3
Bug #773318 [clamav-daemon] clamav dies/hangs
Ignoring request t
Processing control commands:
> found 773318 0.98.5+dfsg-0+deb7u1
Bug #773318 [clamav-daemon] clamav dies/hangs
Marked as found in versions clamav/0.98.5+dfsg-0+deb7u1.
> notfound 773318 0.98.5+dfsg-3
Bug #773318 [clamav-daemon] clamav dies/hangs
No longer marked as found in versions clamav/0.98.5+
Control: found 773318 0.98.5+dfsg-0+deb7u1
Control: notfound 773318 0.98.5+dfsg-3
# 0.98.5+dfsg-3 uses the system libmspack
# see bug #773041 for progress there
Hi Sebastian,
On 23.12.2014 21:44, Sebastian Andrzej Siewior wrote:
Even better, I like it. The patch at the end of the email is what
Processing commands for cont...@bugs.debian.org:
> tags 773318 - moreinfo + patch
Bug #773318 [clamav-daemon] clamav dies/hangs
Removed tag(s) moreinfo.
Bug #773318 [clamav-daemon] clamav dies/hangs
Added tag(s) patch.
> thanks
Stopping processing here.
Please contact me if you need assistance.
-
tags 773318 - moreinfo + patch
thanks
On 2014-12-23 18:15:45 [+0100], Andreas Cadhalpun wrote:
> Hi,
Hi Andreas,
> I think there is a better way than changing the type of frame_end to off_t.
> It is possible to avoid the overflow by reordering the code:
Even better, I like it. The patch at the e
Hi,
On 22.12.2014 22:52, Sebastian Andrzej Siewior wrote:
On 2014-12-22 02:52:02 [+0100], Marc Dequènes (duck) wrote:
I can upload this simple fix quickly, nevertheless i did not have time to
proofread it. Any comment?
I plan to add the following patch to clamav. I added a small comment
why w
On 2014-12-22 02:52:02 [+0100], Marc Dequènes (duck) wrote:
> I can upload this simple fix quickly, nevertheless i did not have time to
> proofread it. Any comment?
I plan to add the following patch to clamav. I added a small comment
why we have the busy loop there. So far it looks like a good ide
* Marc Dequènes (duck) | 2014-12-22 02:52:02 [+0100]:
>Coin,
>
>On 2014-12-21 22:16, Sebastian Andrzej Siewior wrote:
>>On 2014-12-20 12:12:13 [+0100], Andreas Cadhalpun wrote:
>>>As it shows that clamd hangs in libmspack, I think this is bug #773041
>>>[1].
>>>A possible fix is mentioned in [2].
Coin,
On 2014-12-21 22:16, Sebastian Andrzej Siewior wrote:
On 2014-12-20 12:12:13 [+0100], Andreas Cadhalpun wrote:
As it shows that clamd hangs in libmspack, I think this is bug #773041
[1].
A possible fix is mentioned in [2].
I can upload this simple fix quickly, nevertheless i did not ha
On 2014-12-20 12:12:13 [+0100], Andreas Cadhalpun wrote:
> As it shows that clamd hangs in libmspack, I think this is bug #773041 [1].
> A possible fix is mentioned in [2]. We'll have to include it in the
> libmspack copy embedded in clamav, which is used in wheezy.
Oh great. So for clamav we have
Hi,
On Sat, Dec 20, 2014 at 12:12:13PM +0100, Andreas Cadhalpun wrote:
> Control: tags 773041 security
> Control: severity 773041 grave
> Justification: causes remote denial of service
>
For info, I saw this a few days ago and reported it to the security
team. It is indeed available in the wild,
Processing control commands:
> tags 773041 security
Bug #773041 [libmspack0] libmspack: hangs on a crafted CAB file
Added tag(s) security.
> severity 773041 grave
Bug #773041 [libmspack0] libmspack: hangs on a crafted CAB file
Severity set to 'grave' from 'minor'
--
773041: http://bugs.debian.or
Processing control commands:
> tags 773041 security
Bug #773041 [libmspack0] libmspack: hangs on a crafted CAB file
Ignoring request to alter tags of bug #773041 to the same tags previously set
> severity 773041 grave
Bug #773041 [libmspack0] libmspack: hangs on a crafted CAB file
Ignoring request
Control: tags 773041 security
Control: severity 773041 grave
Justification: causes remote denial of service
Hi James,
On 19.12.2014 23:12, James Cloos wrote:
Even w/ the milter not called, one of the MXs has one clamd thread
consuming 100% cpu right now. gdb says:
#0 0x7fd0b4791ed0 in ??
Hi James,
On 19.12.2014 23:07, James Cloos wrote:
"AC" == Andreas Cadhalpun writes:
AC> You mean it crashed?
AC> Please provide excerpts of /var/log/clamav/clamav.log and
AC> /var/log/syslog from around the time of the crashes.
Yes, the clamd process quit, so the milter process was rejecting
>>> After removing the clamav-unofficial-sigs cron job, last night clamd
>>> got stuck using all cpu. (800% on the 8-node box.)
I should add that the looping occurred quickly there after.
Even w/ the milter not called, one of the MXs has one clamd thread
consuming 100% cpu right now. gdb says:
> "AC" == Andreas Cadhalpun writes:
AC> You mean it crashed?
AC> Please provide excerpts of /var/log/clamav/clamav.log and
AC> /var/log/syslog from around the time of the crashes.
Yes, the clamd process quit, so the milter process was rejecting all
incoming mail with a 4xx try again reply.
Processing control commands:
> tags -1 moreinfo
Bug #773318 [clamav-daemon] clamav dies/hangs
Added tag(s) moreinfo.
--
773318: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=773318
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--
To UNSUBSCRIBE, email to debian-bugs
Control: tags -1 moreinfo
Hi James,
On 16.12.2014 21:55, Andreas Cadhalpun wrote:
On 16.12.2014 15:59, James Cloos wrote:
Package: clamav-daemon
Version: 0.98.5+dfsg-3
Severity: grave
Justification: renders package unusable
Starting Thursday night clamd died each night.
You mean it crashed?
Package: clamav-daemon
Version: 0.98.5+dfsg-3
Severity: grave
Justification: renders package unusable
Control: submitter -1 James Cloos
X-Debbugs-CC: James Cloos
Forwarding the bug reported on the mailing list:
https://lists.alioth.debian.org/pipermail/pkg-clamav-devel/2014-December/004884.html
22 matches
Mail list logo