[sanesecurity] Script updated: clamav-unofficial-sigs.sh (v3.5.2)

  • From: "Bill Landry" <bill@xxxxxxxxxxx>
  • To: sanesecurity@xxxxxxxxxxxxx, clamav-users@xxxxxxxxxxxxxxxx
  • Date: Thu, 4 Jun 2009 11:55:31 -0700

Hi Folks,

This is a second bug fix release and also include some improvements to the
signature bypass change detection code.  Here's what has changed with this
update (from the CHANGELOG):

Version 3.5.2 (updated 2009-06-04)
- Renamed the cron and logrotate files, changing the "." to "-" due
  the fact that some platform (such as Debian) have certain naming
  restrictions on cron file names that does not allow for the use of
  a "." in the file name.  The documentation has also been updated.
  Consider renaming your files.  Issue reported by Yizhar Hurwitz.
- Added the sed "-e" (expression=script) flag to the 4 sed commands
  that use the "-i" (edit in-place) in the script's "-b" (create
  signature bypass) flag.  Apparently without the sed "-e" flag,
  FreeBSD intreprets part of the expanded variable as a command.
  Issue reported by Larry Rosenman.
- Replaced a misplaced hard link with the appropriate variable in
  the signature bypass section of the script.  Issue reported by
  Larry Rosenman.
- Added feedback in warning message regarding signature database name
  misspelling as a possible issue when all rsync mirror sites fail.
- Improved the signature bypass code section that monitors hexadecimal
  signature modifications and removals and keeps local.ign updated.

There were no changes made to script's configuration file.

The updated tarball can be downloaded from:

   http://www.inetmsg.com/pub/clamav-unofficial-sigs.tar.gz

As usual, let me know if there are any issues, suggestions, or feature
requests.

Bill



Other related posts:

  • » [sanesecurity] Script updated: clamav-unofficial-sigs.sh (v3.5.2) - Bill Landry