[Pkg-clamav-devel] Bug#940707: Bug#940707: clamdscan: "LibClamAV Error: pdf_find_and_extract_objs: Timeout" since update to 0.101.4+dfsg-0+deb10u1

Sebastian Andrzej Siewior sebastian at breakpoint.cc
Thu Jul 1 07:33:21 BST 2021


On 2019-09-19 12:04:41 [+0200], Dominik wrote:
> with the update to 0.101.4+dfsg-0+deb10u1 clamd frequently reports:
> LibClamAV Error: pdf_find_and_extract_objs: Timeout reached in the PDF parser while extracting objects.
> 
> This has not occured before the update - thus it is surprising.
> 
> It is not clear, where to configure longer timeouts for scanning pdf.
> 
> The error should be more explicit about this.
> 
> Probably, the default timeout should also be increased.

Is this still there?

This comes from the pdf-part of the code because scanning a given .PDF
file takes longer than the limit. The limit is by default
   MaxScanTime 120000

is time in ms, here 120 seconds or two minutes. So it took longer than
that and then it aborted, most likely a DoS prevention where an infinite
loop would occupy the daemon forever.

The surprising part is that according to your clamd.conf you have

> Config file: clamd.conf
> -----------------------
> MaxScanTime disabled

which means no limit, take all the time you need.

Sebastian



More information about the Pkg-clamav-devel mailing list