From e7a3d8d7488cd6872af75789a6ea9ba8cad0c6ac Mon Sep 17 00:00:00 2001 From: Sean Rankine Date: Fri, 13 Sep 2024 11:31:58 +0100 Subject: [PATCH] Remove explicit config to log to stdout for clamav Clamav 1.3.2 was released and contained a fix for security issue which disabled it from following symlinks for logfiles. This causes the container to fail to startup as it cannot follow /dev/stdout symlink. We can remove this explicit config, as by default the logger logs to stdout. --- images/clamav/Dockerfile | 4 ---- 1 file changed, 4 deletions(-) diff --git a/images/clamav/Dockerfile b/images/clamav/Dockerfile index 97a85b0df..17ce77473 100644 --- a/images/clamav/Dockerfile +++ b/images/clamav/Dockerfile @@ -2,10 +2,6 @@ FROM --platform=$TARGETPLATFORM clamav/clamav-debian:1.3 COPY "./images/clamav/scripts/unprivileged-entrypoint.sh" "/unpriv-init" -RUN sed -i 's/^LogFile .*/LogFile \/dev\/stdout/' /etc/clamav/clamd.conf && \ - sed -i 's/^LogFile .*/LogFile \/dev\/stdout/' /etc/clamav/clamav-milter.conf && \ - sed -i 's/^UpdateLogFile .*/UpdateLogFile \/dev\/stdout/' /etc/clamav/freshclam.conf - RUN chown -R clamav:clamav /var/lib/clamav /unpriv-init USER clamav