Bug#505031: If umask is paranoid, downloaded virus-database is not readable by lusers

2008-11-08 Thread Juhapekka Tolvanen
Package: clamav-freshclam
Version: 0.94.dfsg-1
Severity: important


-=*[ROOT ZSH]*=- [EMAIL PROTECTED]:/root # umask
077

[EMAIL PROTECTED]:/media/usbstorage0 % clamscan -v -r ./
LibClamAV Error: cli_load(): Can't open file /var/lib/clamav//main.cld
ERROR: Unable to open file or directory

--- SCAN SUMMARY ---
Known viruses: 0
Engine version: 0.94
Scanned directories: 0
Scanned files: 0
Infected files: 0
Data scanned: 0.00 MB
Time: 0.386 sec (0 m 0 s)
[1]7962 exit 50clamscan -v -r ./
[EMAIL PROTECTED]:/media/usbstorage0 % ls -la /var/lib/clamav//main.cld
-rw--- 1 clamav clamav 40598016  8.11. 17:58 /var/lib/clamav//main.cld




-- Package-specific info:
--- configuration ---
#Automatically Generated by clamav-base postinst
#To reconfigure clamd run #dpkg-reconfigure clamav-base
#Please read /usr/share/doc/clamav-base/README.Debian.gz for details
LocalSocket /var/run/clamav/clamd.ctl
FixStaleSocket true
User clamav
AllowSupplementaryGroups true
ScanMail true
ScanArchive true
ArchiveLimitMemoryUsage false
ArchiveBlockEncrypted false
MaxDirectoryRecursion 15
FollowDirectorySymlinks false
FollowFileSymlinks false
ReadTimeout 180
MaxThreads 12
MaxConnectionQueueLength 15
StreamMaxLength 10M
LogSyslog false
LogFacility LOG_LOCAL6
LogClean false
LogVerbose false
PidFile /var/run/clamav/clamd.pid
DatabaseDirectory /var/lib/clamav
TemporaryDirectory /tmp
SelfCheck 3600
Foreground false
Debug false
ScanPE true
ScanOLE2 true
ScanHTML true
DetectBrokenExecutables false
MailFollowURLs false
ExitOnOOM false
LeaveTemporaryFiles false
AlgorithmicDetection true
ScanELF true
IdleTimeout 30
PhishingSignatures true
PhishingScanURLs true
PhishingAlwaysBlockSSLMismatch false
PhishingAlwaysBlockCloak false
DetectPUA false
ScanPartialMessages false
HeuristicScanPrecedence false
StructuredDataDetection false
LogFile /var/log/clamav/clamav.log
LogTime true
LogFileUnlock false
LogFileMaxSize 0
# Automatically created by the clamav-freshclam postinst
# Comments will get lost when you reconfigure the clamav-freshclam package

DatabaseOwner clamav
UpdateLogFile /var/log/clamav/freshclam.log
LogVerbose false
LogSyslog false
LogFacility LOG_LOCAL6
LogFileMaxSize 0
LogTime false
Foreground false
Debug false
MaxAttempts 5
DatabaseDirectory /var/lib/clamav/
DNSDatabaseInfo current.cvd.clamav.net
AllowSupplementaryGroups false
PidFile /var/run/clamav/freshclam.pid
ConnectTimeout 30
ReceiveTimeout 30
ScriptedUpdates yes
CompressLocalDatabase no
DatabaseMirror db.local.clamav.net
DatabaseMirror database.clamav.net
DatabaseMirror db.fi.clamav.net

--- data dir ---
yhteensä 40276
-rw--- 1 clamav clamav   579918  8.11. 18:01 daily.cvd
drwxr-xr-x 2 clamav clamav 4096 17.6. 22:33 daily.inc
-rw--- 1 clamav clamav 40598016  8.11. 17:58 main.cld
drwxr-xr-x 2 clamav clamav 4096 10.5. 17:32 main.inc
-rw--- 1 clamav clamav  364  8.11. 19:21 mirrors.dat

-- System Information:
Debian Release: lenny/sid
  APT prefers testing
  APT policy: (1100, 'testing'), (990, 'stable'), (500, 
'testing-proposed-updates'), (500, 'proposed-updates'), (101, 'testing'), (99, 
'unstable')
Architecture: i386 (i686)

Kernel: Linux 2.6.26-1-686 (SMP w/1 CPU core)
Locale: LANG=fi_FI.utf8, LC_CTYPE=fi_FI.utf8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages clamav-freshclam depends on:
ii  clamav-base0.94.dfsg-1   anti-virus utility for Unix - base
ii  debconf [debconf-2.0]  1.5.24Debian configuration management sy
ii  debianutils2.30  Miscellaneous utilities specific t
ii  libc6  2.7-15GNU C Library: Shared libraries
ii  libclamav5 0.94.dfsg-1   anti-virus utility for Unix - libr
ii  libgmp3c2  2:4.2.2+dfsg-3Multiprecision arithmetic library
ii  logrotate  3.7.1-3   Log rotation utility
ii  lsb-base   3.2-20Linux Standard Base 3.2 init scrip
ii  ucf3.0010Update Configuration File: preserv
ii  zlib1g 1:1.2.3.3.dfsg-12 compression library - runtime

clamav-freshclam recommends no packages.

Versions of packages clamav-freshclam suggests:
ii  clamav-docs  0.94.dfsg-1 anti-virus utility for Unix - docu

-- debconf information:
* clamav-freshclam/autoupdate_freshclam: manual
* clamav-freshclam/local_mirror: db.local.clamav.net
  clamav-freshclam/mirrors.txt-note:
  clamav-freshclam/internet_interface:
  clamav-freshclam/proxy_user:
* clamav-freshclam/NotifyClamd: false
* clamav-freshclam/http_proxy:
* clamav-freshclam/update_interval: 24

-- 
Juhapekka naula Tolvanen * http colon slash slash iki dot fi slash juhtolv
ore wo mitsumeteiru anata sama wa ossharu bakari. kesshite dakiyosete wa
kurenai ooki na anata no te. ore no tanjoubi ni wa ai wo kai ataeru. kyou wa
kumori nochi ame.   Dir en grey



--
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with 

Bug#505031: If umask is paranoid, downloaded virus-database is not readable by lusers

2008-11-08 Thread Stephen Gran
severity 505031 wishlist
thanks
This one time, at band camp, Juhapekka Tolvanen said:
 -=*[ROOT ZSH]*=- [EMAIL PROTECTED]:/root # umask
 077

Patient: Doctor, it hurts when I move my arm like this
Doctor: Then don't move your arm like that

Cheers,
-- 
 -
|   ,''`.Stephen Gran |
|  : :' :[EMAIL PROTECTED] |
|  `. `'Debian user, admin, and developer |
|`- http://www.debian.org |
 -


signature.asc
Description: Digital signature