ClamAV upgrade may be required

ClamAV upgrade may be required

by Sean Farrell -
Number of replies: 2
Hi,

I see that the antivirus tool ClamAV, which can integrated into moodle is due for an upgrade this week. Some existing systems scanning for viruses with ClamAV versions older than 0.9.5 may stop working after Thursday 15 April.

The moodle settings for ClamAV are in admin / security / antivirus.

You can check the version of ClamAV is running from the command line using command

clamscan -V

A copy of the email sent to clamav-announce included below, in case some moodlers depending on it are not following that list.

--
Sean Farrell
Edinburgh

Forwarded message from ClamAV announcement list:

From: Luca Gibelli
Date: 8 February 2010 16:51
Subject: [Clamav-announce] End of Life Announcement: ClamAV 0.94.x
To: clamav-announce@lists.clamav.net


Dear ClamAV users,

this is a reminder that starting from 15 April 2010 our CVD will contain a special signature which disables all clamd installations older than 0.95 - that is to say older than 1 year.

We would like to keep on supporting all old versions of our engine, but unfortunately this is no longer possible without causing a disservice to people running a recent release of ClamAV.

For more information please refer to the original announcement:


http://lists.clamav.net/lurker/message/20091006.143601.d27bbd20.en.html"
Average of ratings: Useful (3)
In reply to Sean Farrell

Re: ClamAV upgrade may be required

by Penny Leach -
Hi,

Certainly there's a problem with that version of clamav. There's nothing that Moodle can do about it however, although it *will* break virus scanning in Moodle, which will break file uploads.

However, it will also break email, if your email server is using clamav to scan mail for viruses. I found this out the bad way last week sad

If you're using Debian Lenny, there's no newer version in the stable sources, the way to work around this, is to use the volatile sources. A line like this in your /etc/apt/sources.list:

deb http://ftp.nz.debian.org/debian-volatile/ etch/volatile main contrib non-free

and then upgrading the package, will fix the problem.
Average of ratings: Useful (1)
In reply to Penny Leach

Re: ClamAV upgrade may be required

by Jon Witts -
Picture of Particularly helpful Moodlers Picture of Plugin developers Picture of Testers
And if you are using Ubuntu try this ppa for the latest ClamAV... https://launchpad.net/~ubuntu-clamav/+archive/ppa

Another joy of ClamAV with Ubuntu I discovered today is this topic http://ubuntuforums.org/showthread.php?t=1297123 , with my default install of ClamAV on my Ubuntu Server extra lines were added to my php.ini to load the clamav.so extension. This has been locking up my apache install completely... I have followed step one in the third post of this link and it appears to have resolved my issue big grin

This clamav extension was also the root problem of some issues I was having with file uploads on an earlier version of Mahara too http://mahara.org/interaction/forum/topic.php?id=7

Jon