Bug#926936: udev: systemd-udevd PID file name produces false positive with rkhunter for XORDDOS malware

2019-04-12 Thread Michael Biebl
Control: reassign -1 rkhunter Am 12.04.19 um 14:53 schrieb Andrew J. Buehler: > It is possible to whitelist this filename in rkhunter's configuration > settings, > but doing so does - however mildly - increase the likelihood that if this > malware does get a foothold on the system, rkhunter will

Bug#926936: udev: systemd-udevd PID file name produces false positive with rkhunter for XORDDOS malware

2019-04-12 Thread Andrew J. Buehler
Package: udev Version: 241-3 Severity: minor Dear Maintainer, On some of my systems, I use the package 'rkhunter', which seeks to detect (via daily cron job) and report on (via E-mail to the primary local user) the presence of possible rootkits on the system. For some time now, I have been