Package: mailscanner
Version: 4.74.16-1
Severity: important

/usr/sbin/update_virus_scanners has the wrong path because it is missing
the MailScanner directory name. This prevents the virus scanners from
updating their signature and exposes the user to potential attacks.

current (incorrect)
====================
SCANNERSCONF=/etc/virus.scanners.conf
LOCKDIR=`/usr/sbin/Quick.Peek lockfiledir /etc/MailScanner.conf`
RUNASU=`/usr/sbin/Quick.Peek runasuser /etc/MailScanner.conf`
RUNASG=`/usr/sbin/Quick.Peek runasgroup /etc/MailScanner.conf`

corrected
=========
SCANNERSCONF=/etc/MailScanner/virus.scanners.conf
LOCKDIR=`/usr/sbin/Quick.Peek lockfiledir /etc/MailScanner/MailScanner.conf`
RUNASU=`/usr/sbin/Quick.Peek runasuser /etc/MailScanner/MailScanner.conf`
RUNASG=`/usr/sbin/Quick.Peek runasgroup /etc/MailScanner/MailScanner.conf`


-- System Information:
Debian Release: lenny/sid
  APT prefers hardy-updates
  APT policy: (500, 'hardy-updates'), (500, 'hardy-security'), (500, 
'hardy-proposed'), (500, 'hardy-backports'), (500, 'hardy')
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.24-26-server (SMP w/1 CPU core)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages mailscanner depends on:
ii  debconf [debconf-2 1.5.20                Debian configuration management sy
ii  libarchive-zip-per 1.18-1                Module for manipulation of ZIP arc
ii  libcompress-zlib-p 2.008-1               Perl module for creation and manip
ii  libconvert-binhex- 1.119+pristine-2      Perl5 module for extracting data f
ii  libconvert-tnef-pe 0.17-5                Perl module to read TNEF files
ii  libdbd-sqlite3-per 1.14-1                Perl DBI driver with a self-contai
ii  libfilesys-df-perl 0.92-3ubuntu1         Module to obtain filesystem disk s
ii  libhtml-parser-per 3.56-1ubuntu0.1       A collection of modules that parse
ii  libmailtools-perl  2.02-1                Manipulate email in perl programs
ii  libmime-perl       5.425-2               transitional dummy package
ii  libmime-tools-perl 5.425-2               Perl5 modules for MIME-compliant m
ii  libnet-cidr-perl   0.11-2                Manipulate IPv4/IPv6 netblocks in 
ii  libole-storage-lit 0.17-1                simple class for OLE document inte
ii  libsys-hostname-lo 1.4-1                 Figure out the long (fully-qualifi
ii  libsys-syslog-perl 0.23-1                Perl interface to the UNIX syslog(
ii  perl               5.8.8-12ubuntu0.4     Larry Wall's Practical Extraction 
ii  postfix [mail-tran 2.5.1-2ubuntu1.2      High-performance mail transport ag
ii  spamassassin       3.2.5-1ubuntu2~hardy2 Perl-based spam filter using text 
ii  ucf                3.005                 Update Configuration File: preserv
ii  unzip              5.52-10ubuntu2        De-archiver for .zip files

Versions of packages mailscanner recommends:
ii  clamav 0.95.3+dfsg-1ubuntu0.09.04~hardy2 anti-virus utility for Unix - comm
ii  clamav 0.95.3+dfsg-1ubuntu0.09.04~hardy2 anti-virus utility for Unix - scan
ii  libnet 0.20-1                            Merge IPv4 or IPv6 CIDR address ra
ii  ncftp  2:3.2.1-1                         A user-friendly and well-featured 
ii  tnef   1.4.3-2                           Tool to unpack MIME application/ms
ii  wget   1.10.2-3ubuntu1.1                 retrieves files from the web

-- debconf information:
  mailscanner/v3_upgrade: Don't upgrade



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to