Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Fix allmatch issue with preclass bytecode (1.0.1) #825

Conversation

micahsnyder
Copy link
Contributor

The verdict is being recorded before the preclass bytecode hook meaning that the final verdict may come back as "clean" in allmatch mode, even if the preclass bytecode hook matches something.

This commit moves the verdict check to occur AFTER the preclass bytecode hook executes.


This is a backport of #823

The verdict is being recorded before the preclass bytecode hook meaning
that the final verdict may come back as "clean" in allmatch mode,
even if the preclass bytecode hook matches something.

This commit moves the verdict check to occur AFTER the preclass bytecode
hook executes.
@micahsnyder micahsnyder merged commit 9929133 into Cisco-Talos:dev/1.0.1 Feb 6, 2023
6 of 24 checks passed
@micahsnyder micahsnyder deleted the CLAM-2245-preclass-cbc-allmatch-1.0.1 branch February 6, 2023 23:29
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

1 participant