ClamAV® blog: ClamAV 0.10 0.0 has been released!

"Joel Esler (jesler)" <[email protected]> Mon, 9 Apr 2018 18:48:44 +0000
Newsgroups gmane.comp.security.virus.clamav.announce
Message-ID <EA71A223-6310-4520-A20D-880C097A48F4__1847.81363136626$1523299762$gmane$org@cisco.com>
--===============3047522779026285988==
Content-Language: en-US
Content-Type: multipart/alternative;
	boundary="_000_EA71A22363104520A20D880C097A48F4ciscocom_"

--_000_EA71A22363104520A20D880C097A48F4ciscocom_
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable



https://blog.clamav.net/2018/04/clamav-01000-has-been-released.html

ClamAV 0.100.0 has been released!
Join us as we welcome ClamAV 0.100.0 to the family officially.  You can gra=
b it, as always, from the downloads page on ClamAV.net<https://www.clamav.n=
et/downloads>.

ClamAV 0.100.0 is a feature release which includes many code submissions fr=
om the ClamAV community.  Some of the more prominent submissions include:



  *   Interfaces to the Prelude SIEM open source package for collecting Cla=
mAV virus events.
  *   Support for Visual Studio 2015 for Windows builds.  Please note that =
we have deprecated support for Windows XP, and while Vista may still work, =
we no longer test ClamAV on Windows XP or Vista.
  *   Support libmspack internal code or as a shared object library. The in=
ternal library is the default and includes modifications to enable parsing =
of CAB files that do not entirely adhere to the CAB file format.
  *   Linking with OpenSSL 1.1.0.
  *   Deprecation of the AllowSupplementaryGroups parameter statement in cl=
amd, clamav-milter, and freshclam. Use of supplementary is now in effect by=
 default.
  *   Numerous bug fixes, typo corrections, and compiler warning fixes.


Additionally, we have introduced important changes and new features in Clam=
AV 0.100, including but not limited to:



  *   Deprecating internal LLVM code support. The configure script has chan=
ged to search the system for an installed instance of the LLVM development =
libraries, and to otherwise use the bytecode interpreter for ClamAV bytecod=
e signatures. To use the LLVM Just-In-Time compiler for executing bytecode =
signatures, please ensure that the LLVM development package at version 3.6 =
or lower is installed. Using the deprecated LLVM code is possible with the =
command: ./configure --with-system-llvm=3Dno, but it no longer compiles on =
all platforms.
  *   Compute and check PE import table hash (a.k.a. "imphash") signatures.
  *   Support file property collection and analysis for MHTML files.
  *   Raw scanning of PostScript files.
  *   Fix clamsubmit to use the new virus and false positive submission web=
 interface.
  *   Optionally, flag files with the virus "Heuristic.Limits.Exceeded" whe=
n size limitations are exceeded.
  *   Improved decoders for PDF files.
  *   Reduced number of compile time warnings.
  *   Improved support for C++11.
  *   Improved detection of system installed libraries.
  *   Fixes to ClamAV's Container system and the introduction of Intermedia=
tes for more descriptive signatures.
  *   Improvements to clamd's On-Access scanning capabilities for Linux.


Acknowledgements

The ClamAV team thanks the following individuals for their code submissions=
:



  *   Andreas Schulze
  *   Anthony Chan
  *   Bill Parker
  *   Chris Miserva
  *   Daniel J. Luke
  *   Georgy Salnikov
  *   James Ralston
  *   Jonas Zaddach
  *   Keith Jones
  *   Marc Deslauriers
  *   Mark Allan
  *   Matthew Boedicker
  *   Michael Pelletier
  *   Ningirsu
  *   Sebastian Andrzej Siewior
  *   Stephen Welker
  *   Tuomo Soini


Known Issues

ClamAV has an active issue queue and enjoys continual improvement but as sa=
d as
 I am to say it, we couldn't address every bug in this release.  I want to =
draw
 your attention a couple bugs in particular so as not to frustrate users
 setting up ClamAV:



  *   Platform: macOS:
     *   Bug:  If you attempt to build ClamAV with a system installed LLVM =
you may receive a linker error.  We recently changed default linking behavi=
or to prefer dynamic linking over static linking.  As a result, we've uncov=
ered a bug in building on macOS where dynamic linking against the LLVM libr=
aries fails.  To work around this bug, please add the --with-llvm-linking=
=3Dstatic option to your ./configure call.




  *   Platform: CentOS 6 32bit, older versions of AIX:
     *   Bug:  On CentOS 6 32bit we observed that specific versions of zlib=
 fail to correctly decompress the CVD signature databases.  If you are on a=
n older system such as CentoOS 6 32bit and observe failures loading the sig=
nature database, please consider upgrading to a newer version of zlib.




  *   Platform: Miscellaneous
     *   Bug:  When cross compiling on certain legacy systems (Solaris, AIX=
, OSX) against older system libraries that do not support strn functions li=
nking may fail during compile time. While automatic checking is done during=
 configure time to check for unsupported libs, this problem can be manually=
 avoided using the --enable-strni configure flag if it is encountered.

--_000_EA71A22363104520A20D880C097A48F4ciscocom_
Content-Type: text/html; charset="iso-8859-1"
Content-ID: <[email protected]>
Content-Transfer-Encoding: quoted-printable

<html>
<head>
<meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3Diso-8859-=
1">
<base>
</head>
<body style=3D"word-wrap: break-word; -webkit-nbsp-mode: space; line-break:=
 after-white-space;" class=3D"">
<base class=3D"">
<div class=3D"Apple-Mail-URLShareUserContentTopClass"><br class=3D"">
</div>
<div class=3D"Apple-Mail-URLShareWrapperClass">
<blockquote type=3D"cite" style=3D"border-left-style: none; color: inherit;=
 padding: inherit; margin: inherit;" class=3D"">
<div class=3D"">
<div class=3D"original-url"><br class=3D"">
<a href=3D"https://blog.clamav.net/2018/04/clamav-01000-has-been-released.h=
tml" class=3D"">https://blog.clamav.net/2018/04/clamav-01000-has-been-relea=
sed.html</a><br class=3D"">
<br class=3D"">
</div>
<div id=3D"article" role=3D"article" style=3D"text-rendering: optimizeLegib=
ility; font-family: Georgia; font-size: 1.2em; line-height: 1.5em; margin: =
0px; padding: 0px;" class=3D"georgia exported">
<!-- This node will contain a number of div.page. -->
<div class=3D"page" style=3D"word-wrap: break-word; max-width: 100%;">
<h1 class=3D"title" style=3D"font-size: 1.95552em; line-height: 1.2141em; m=
argin-top: 0px; margin-bottom: 0.5em; -webkit-hyphens: manual; max-width: 1=
00%;">
ClamAV 0.100.0 has been released!</h1>
Join us as we welcome ClamAV 0.100.0 to the family officially. &nbsp;You ca=
n grab it, as always, from the
<a href=3D"https://www.clamav.net/downloads" target=3D"_blank" style=3D"col=
or: rgb(65, 110, 210); max-width: 100%;" class=3D"">
downloads page on ClamAV.net</a>.<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
ClamAV 0.100.0 is a feature release which includes many code submissions fr=
om the ClamAV community. &nbsp;Some of the more prominent submissions inclu=
de:<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
<ul style=3D"max-width: 100%;" class=3D"">
<li style=3D"max-width: 100%;" class=3D"">Interfaces to the Prelude SIEM op=
en source package for collecting ClamAV virus events.
</li><li style=3D"max-width: 100%;" class=3D"">Support for Visual Studio 20=
15 for Windows builds. &nbsp;Please note that we have deprecated support fo=
r Windows XP, and while Vista may still work, we no longer test ClamAV on W=
indows XP or Vista.
</li><li style=3D"max-width: 100%;" class=3D"">Support libmspack internal c=
ode or as a shared object library. The internal library is the default and =
includes modifications to enable parsing of CAB files that do not entirely =
adhere to the CAB file format.
</li><li style=3D"max-width: 100%;" class=3D"">Linking with OpenSSL 1.1.0. =
</li><li style=3D"max-width: 100%;" class=3D"">Deprecation of the AllowSupp=
lementaryGroups parameter statement in clamd, clamav-milter, and freshclam.=
 Use of supplementary is now in effect by default.
</li><li style=3D"max-width: 100%;" class=3D"">Numerous bug fixes, typo cor=
rections, and compiler warning fixes.
</li></ul>
<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
Additionally, we have introduced important changes and new features in Clam=
AV 0.100, including but not limited to:<br style=3D"max-width: 100%;" class=
=3D"">
<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
<ul style=3D"max-width: 100%;" class=3D"">
<li style=3D"max-width: 100%;" class=3D"">Deprecating internal LLVM code su=
pport. The configure script has changed to search the system for an install=
ed instance of the LLVM development libraries, and to otherwise use the byt=
ecode interpreter for ClamAV bytecode
 signatures. To use the LLVM Just-In-Time compiler for executing bytecode s=
ignatures, please ensure that the LLVM development package at version 3.6 o=
r lower is installed. Using the deprecated LLVM code is possible with the c=
ommand:
<code style=3D"max-width: 100%;" class=3D"">./configure --with-system-llvm=
=3Dno</code>, but it no longer compiles on all platforms.
</li><li style=3D"max-width: 100%;" class=3D"">Compute and check PE import =
table hash (a.k.a. &quot;imphash&quot;) signatures.
</li><li style=3D"max-width: 100%;" class=3D"">Support file property collec=
tion and analysis for MHTML files.
</li><li style=3D"max-width: 100%;" class=3D"">Raw scanning of PostScript f=
iles. </li><li style=3D"max-width: 100%;" class=3D"">Fix clamsubmit to use =
the new virus and false positive submission web interface.
</li><li style=3D"max-width: 100%;" class=3D"">Optionally, flag files with =
the virus &quot;Heuristic.Limits.Exceeded&quot; when size limitations are e=
xceeded.
</li><li style=3D"max-width: 100%;" class=3D"">Improved decoders for PDF fi=
les. </li><li style=3D"max-width: 100%;" class=3D"">Reduced number of compi=
le time warnings. </li><li style=3D"max-width: 100%;" class=3D"">Improved s=
upport for C&#43;&#43;11. </li><li style=3D"max-width: 100%;" class=3D"">Im=
proved detection of system installed libraries.
</li><li style=3D"max-width: 100%;" class=3D"">Fixes to ClamAV's Container =
system and the introduction of Intermediates for more descriptive signature=
s.
</li><li style=3D"max-width: 100%;" class=3D"">Improvements to clamd's On-A=
ccess scanning capabilities for Linux.
</li></ul>
<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
<h3 style=3D"font-size: 1.25em; max-width: 100%;" class=3D"">Acknowledgemen=
ts</h3>
<br style=3D"max-width: 100%;" class=3D"">
The ClamAV team thanks the following individuals for their code submissions=
:<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
<ul style=3D"max-width: 100%;" class=3D"">
<li style=3D"max-width: 100%;" class=3D"">Andreas Schulze </li><li style=3D=
"max-width: 100%;" class=3D"">Anthony Chan </li><li style=3D"max-width: 100=
%;" class=3D"">Bill Parker </li><li style=3D"max-width: 100%;" class=3D"">C=
hris Miserva </li><li style=3D"max-width: 100%;" class=3D"">Daniel J. Luke =
</li><li style=3D"max-width: 100%;" class=3D"">Georgy Salnikov </li><li sty=
le=3D"max-width: 100%;" class=3D"">James Ralston </li><li style=3D"max-widt=
h: 100%;" class=3D"">Jonas Zaddach </li><li style=3D"max-width: 100%;" clas=
s=3D"">Keith Jones </li><li style=3D"max-width: 100%;" class=3D"">Marc Desl=
auriers </li><li style=3D"max-width: 100%;" class=3D"">Mark Allan </li><li =
style=3D"max-width: 100%;" class=3D"">Matthew Boedicker </li><li style=3D"m=
ax-width: 100%;" class=3D"">Michael Pelletier </li><li style=3D"max-width: =
100%;" class=3D"">Ningirsu </li><li style=3D"max-width: 100%;" class=3D"">S=
ebastian Andrzej Siewior </li><li style=3D"max-width: 100%;" class=3D"">Ste=
phen Welker </li><li style=3D"max-width: 100%;" class=3D"">Tuomo Soini </li=
></ul>
<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
<h3 style=3D"font-size: 1.25em; max-width: 100%;" class=3D"">Known Issues</=
h3>
<br style=3D"max-width: 100%;" class=3D"">
ClamAV has an active issue queue and enjoys continual improvement but as sa=
d as<br style=3D"max-width: 100%;" class=3D"">
&nbsp;I am to say it, we couldn't address every bug in this release. &nbsp;=
I want to draw<br style=3D"max-width: 100%;" class=3D"">
&nbsp;your attention a couple bugs in particular so as not to frustrate use=
rs<br style=3D"max-width: 100%;" class=3D"">
&nbsp;setting up ClamAV:<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
<ul style=3D"max-width: 100%;" class=3D"">
<li style=3D"max-width: 100%;" class=3D"">Platform: macOS:
<ul style=3D"max-width: 100%;" class=3D"">
<li style=3D"max-width: 100%;" class=3D"">Bug: &nbsp;If you attempt to buil=
d ClamAV with a system installed LLVM you may receive a linker error. &nbsp=
;We recently changed default linking behavior to prefer dynamic linking ove=
r static linking. &nbsp;As a result, we've uncovered
 a bug in building on macOS where dynamic linking against the LLVM librarie=
s fails. &nbsp;To work around this bug, please add the
<code style=3D"max-width: 100%;" class=3D"">--with-llvm-linking=3Dstatic</c=
ode> option to your
<code style=3D"max-width: 100%;" class=3D"">./configure</code> call. </li><=
/ul>
</li></ul>
<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
<ul style=3D"max-width: 100%;" class=3D"">
<li style=3D"max-width: 100%;" class=3D"">Platform: CentOS 6 32bit, older v=
ersions of AIX:
<ul style=3D"max-width: 100%;" class=3D"">
<li style=3D"max-width: 100%;" class=3D"">Bug: &nbsp;On CentOS 6 32bit we o=
bserved that specific versions of zlib fail to correctly decompress the CVD=
 signature databases. &nbsp;If you are on an older system such as CentoOS 6=
 32bit and observe failures loading the signature
 database, please consider upgrading to a newer version of zlib. </li></ul>
</li></ul>
<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
<br style=3D"max-width: 100%;" class=3D"">
<ul style=3D"max-width: 100%;" class=3D"">
<li style=3D"max-width: 100%;" class=3D"">Platform: Miscellaneous
<ul style=3D"max-width: 100%;" class=3D"">
<li style=3D"max-width: 100%;" class=3D"">Bug: &nbsp;When cross compiling o=
n certain legacy systems (Solaris, AIX, OSX) against older system libraries=
 that do not support strn functions linking may fail during compile time. W=
hile automatic checking is done during configure
 time to check for unsupported libs, this problem can be manually avoided u=
sing the
<code style=3D"max-width: 100%;" class=3D"">--enable-strni</code> configure=
 flag if it is encountered.
</li></ul>
</li></ul>
</div>
</div>
</div>
</blockquote>
</div>
</body>
</html>

--_000_EA71A22363104520A20D880C097A48F4ciscocom_--

--===============3047522779026285988==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
http://lists.clamav.net/cgi-bin/mailman/listinfo/clamav-announce
http://www.clamav.net/contact.html#ml

--===============3047522779026285988==--