JPEG Virus
Spicer, Kevin
Kevin.Spicer at BMRB.CO.UK
Tue Sep 28 16:19:04 IST 2004
-----Original Message-----
From: Leonardo Helman [mailto:mailscanner at LISTS.COM.AR]
> ClamAV JPEG Exploit (MS04-028) Detection
> nervoso - 2004-09-28 06:30 - Clam AntiVirus
>ClamAV 0.80rc3 successfuly detects JPEG files with modified comment
section that allows >attackers to remotely execute arbitrary code on
unpatched Windows machines.
>I was running the stable version, 0.75-1, but it didn't catch this.
>I didn't have trouble with the upgrade (from sources), the rpm isn't
there yet.
That's because this kind of detection is only supported with 0.80rc3
(and maybe 0.80rc2?)
BMRB International
http://www.bmrb.co.uk
+44 (0)20 8566 5000
_________________________________________________________________
This message (and any attachment) is intended only for the
recipient and may contain confidential and/or privileged
material. If you have received this in error, please contact the
sender and delete this message immediately. Disclosure, copying
or other action taken in respect of this email or in
reliance on it is prohibited. BMRB International Limited
accepts no liability in relation to any personal emails, or
content of any email which does not directly relate to our
business.
------------------------ MailScanner list ------------------------
To unsubscribe, email jiscmail at jiscmail.ac.uk with the words:
'leave mailscanner' in the body of the email.
Before posting, read the MAQ (http://www.mailscanner.biz/maq/) and
the archives (http://www.jiscmail.ac.uk/lists/mailscanner.html).
More information about the MailScanner
mailing list