Bug 1325482

Summary: The main.cvd database in clamav-data-0.99.1-1 is corrupt
Product: [Fedora] Fedora Reporter: Jeff Welch <whatthejeff>
Component: clamavAssignee: Nick Bebout <nb>
Status: CLOSED ERRATA QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: high Docs Contact:
Priority: unspecified    
Version: rawhideCC: andy.lindsay, j, mstevens, nathanael, nb, ondrejj, pokorra.mailinglists, redhat-bugzilla, trevor, whatthejeff
Target Milestone: ---   
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: clamav-0.99.2-1.fc24 clamav-0.99.2-1.fc22 clamav-0.99.2-1.fc23 Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2016-06-18 18:31:54 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Jeff Welch 2016-04-09 06:02:22 UTC
Description of problem:

The integrity of the main.cvd database can not be verified by sigtool.

Version-Release number of selected component (if applicable):

0.99.1-1

How reproducible:

Always

Steps to Reproduce:
1. dnf install clamav
2. sigtool --info /var/lib/clamav/main.cvd
3.

Actual results:

File: /var/lib/clamav/main.cvd
Build time: 16 Mar 2016 23:17 +0000
Version: 57
Signatures: 4218790
Functionality level: 60
Builder: amishhammer
MD5: 06386f34a16ebeea2733ab037f0536be
Digital signature: AIzk/LYbX8K9OEbR5GMyJ6LWTqSu9ffa5bONcA0FN3+onMlZ2BMRzuyvVURBvAZvOaGPdtMBcgDJSl7fGxDfcxRWhIrQ98f8FPdAQaFPgWu3EX46ufw+IRZnM4irKKYuh1GdCIbsGs6jejWo9iNErsbDqkFSobVBkUJYxBgvqfd
ERROR: cvdinfo: Verification: Can't verify database integrity

Expected results:

File: /var/lib/clamav/main.cvd
Build time: 16 Mar 2016 23:17 +0000
Version: 57
Signatures: 4218790
Functionality level: 60
Builder: amishhammer
MD5: 06386f34a16ebeea2733ab037f0536be
Digital signature: AIzk/LYbX8K9OEbR5GMyJ6LWTqSu9ffa5bONcA0FN3+onMlZ2BMRzuyvVURBvAZvOaGPdtMBcgDJSl7fGxDfcxRWhIrQ98f8FPdAQaFPgWu3EX46ufw+IRZnM4irKKYuh1GdCIbsGs6jejWo9iNErsbDqkFSobVBkUJYxBgvqfd
Verification OK.

Additional info:

The upstream version of this database is available at http://database.clamav.net/main.cvd.

Comment 1 Trevor Cordes 2016-04-12 04:44:15 UTC
This might actually be pretty bad as clamd fails to restart after a dnf update, so a previously-working system becomes a non-working system.  I'm not sure which following scenario ensues, but neither is good... either a) mail gets bounced due to clamav-milter not being able to talk to a dead clamdscan, or b) mail keeps coming in without being virus checked!

It appears the next time a freshclam runs it fixes the problem(?).  In those possibly 4-12 hours your clamdscan is down.

Possibly dupe of (newer, EPEL) bug #1325717

Comment 2 Fedora Update System 2016-06-13 18:26:55 UTC
clamav-0.99.2-1.fc22 has been submitted as an update to Fedora 22. https://bodhi.fedoraproject.org/updates/FEDORA-2016-2f89f67c12

Comment 3 Fedora Update System 2016-06-13 18:27:08 UTC
clamav-0.99.2-1.fc23 has been submitted as an update to Fedora 23. https://bodhi.fedoraproject.org/updates/FEDORA-2016-578c0a9770

Comment 4 Fedora Update System 2016-06-13 18:27:17 UTC
clamav-0.99.2-1.fc24 has been submitted as an update to Fedora 24. https://bodhi.fedoraproject.org/updates/FEDORA-2016-54667db84b

Comment 5 Fedora Update System 2016-06-14 03:58:02 UTC
clamav-0.99.2-1.fc24 has been pushed to the Fedora 24 testing repository. If problems still persist, please make note of it in this bug report.
See https://fedoraproject.org/wiki/QA:Updates_Testing for
instructions on how to install test updates.
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2016-54667db84b

Comment 6 Fedora Update System 2016-06-14 15:59:00 UTC
clamav-0.99.2-1.fc23 has been pushed to the Fedora 23 testing repository. If problems still persist, please make note of it in this bug report.
See https://fedoraproject.org/wiki/QA:Updates_Testing for
instructions on how to install test updates.
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2016-578c0a9770

Comment 7 Fedora Update System 2016-06-14 15:59:35 UTC
clamav-0.99.2-1.fc22 has been pushed to the Fedora 22 testing repository. If problems still persist, please make note of it in this bug report.
See https://fedoraproject.org/wiki/QA:Updates_Testing for
instructions on how to install test updates.
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2016-2f89f67c12

Comment 8 Fedora Update System 2016-06-18 18:31:46 UTC
clamav-0.99.2-1.fc24 has been pushed to the Fedora 24 stable repository. If problems still persist, please make note of it in this bug report.

Comment 9 Fedora Update System 2016-06-22 01:22:49 UTC
clamav-0.99.2-1.fc22 has been pushed to the Fedora 22 stable repository. If problems still persist, please make note of it in this bug report.

Comment 10 Fedora Update System 2016-06-22 01:27:15 UTC
clamav-0.99.2-1.fc23 has been pushed to the Fedora 23 stable repository. If problems still persist, please make note of it in this bug report.