Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Need to read Debian DSA/DLA lists as well #44

Open
waldiTM opened this issue Dec 14, 2023 · 0 comments
Open

Need to read Debian DSA/DLA lists as well #44

waldiTM opened this issue Dec 14, 2023 · 0 comments
Labels
area/open-source Open Source (community, enablement, contributions, conferences, CNCF, etc.) related kind/bug Bug

Comments

@waldiTM
Copy link
Contributor

waldiTM commented Dec 14, 2023

What happened:
CVE-2022-40982 is not marked as fixed in Debian. Only the lists with DSA/DLA contain version info. The CVE list does not, as Linux CVE are handled specially.

What you expected to happen:
CVE-2022-40982 should be marked as fixed, see https://security-tracker.debian.org/tracker/CVE-2022-40982

How to reproduce it (as minimally and precisely as possible):
http://localhost:5000/v1/cves/CVE-2022-40982 is listed as not vulnerable.

@waldiTM waldiTM added area/open-source Open Source (community, enablement, contributions, conferences, CNCF, etc.) related kind/bug Bug labels Dec 14, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
area/open-source Open Source (community, enablement, contributions, conferences, CNCF, etc.) related kind/bug Bug
Projects
None yet
Development

No branches or pull requests

1 participant