G.W. Haywood wrote: > Hi there, > > Of course we aren't considering here the case where you might be looking, > say, for vulnerable libraries compiled statically into random executables. >
Debian has some patterns for this that are instructional - they are used for locating static versions of zlib that are known to have problems. It is an excellent method for locating these problems. This is an as-required process, of course, but ClamAV provides an excellent solution. The results of a scan using these patterns surprised me - I didn't know those libraries were found in so many places. dp _______________________________________________ Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net http://lurker.clamav.net/list/clamav-users.html
