[Pkg-clamav-devel] clamav 0.98.3 released

Sebastian Andrzej Siewior sebastian at breakpoint.cc
Sat May 10 07:16:18 UTC 2014


On Fri, May 09, 2014 at 08:13:27PM -0400, Scott Kitterman wrote:
> >GnuTLS has a compatibility layer for OpenSSL [1]. Using this, it might 
> >be possible to simply switch the headers.
> >(We might get problems though: "Error handling is not thread safe.")
> 
> Since clamav is only using openssl functions internally, packages that use libclamav don't need the openssl exception.  What they have is adequate for being in Debian. If they miss the exception in files where it should be, we should file bugs upstream. Given what is in the README, their intent is clear. 

Okay. So it is now a show stopper, good. I am only concerned because a) the
other deps on libclamav link against openssl and the crypto functions are
exported by libclamav.

> I'd rather stick with what upstream is using and not switch to GNUtls. 

No problem. I got from Shawn:
|23:28 < lattera> bigeasy: mainly availability, openssl is everywhere, also has API functions for planned enhancements to freshclam
|23:29 < lattera> but, we've wrapped all the functions we currently use and the functions we plan to use later in libclamav/crypto.c, so if 
|                 you wanna switch it out for another crypto lib, you just have to provide the same functions in your own crypto.c

so it looks like he isn't against another library. Once we have the release
out I will try look at gnutls support and push it upstream.

> Scott K

Sebastian



More information about the Pkg-clamav-devel mailing list