For some reason BC.Exploit.CVE_2013_0019 is still with us.  I can see from
the home page:
bytecode.cvd ver. 214 released on 13 Feb 2013 10:29 :0500 (sig count: 41)

But when I check the current cvd I get:
current.cvd.clamav.net descriptive text
"0.97.6:54:16679:1360801740:0:63:40230:213"

And freshclam confirms:
bytecode.cld is up to date (version: 213, sigs: 42, f-level: 63, builder:
neo)

-Al-

On 2/13/13 12:29 PM, "Alain Zidouemba"  wrote:

> The signature is more complex than that. What you are seeing and
> decoding are just the triggering conditions to start evaluating HTML
> files for the vulnerability CVE-2013-0019.
> In any case, we received a few FP reports for that signature and have
> made some tweaks that we are currently testing prior to release. The
> original signature BC.Exploit.CVE_2013_0019 has already been pulled.
> 
> Thanks Al,
> 
> - Alain
> _______________________________________________
> Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net
> http://www.clamav.net/support/ml

-Al-
 
-- 
Al Varnell
Mountain View, CA



_______________________________________________
Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net
http://www.clamav.net/support/ml

Reply via email to