ds017 false-positive (apt-mirror2) #6515
Closed
nE0sIghT
started this conversation in
False Detection
Replies: 1 comment 1 reply
-
Hi @nE0sIghT ! Track #6516 . Just wondering why commands are separated by semicolons and not by |
Beta Was this translation helpful? Give feedback.
1 reply
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
IDs
ds017
Description
Hello!
Today ds017 false-positive started to alert in the apt-mirror2 project: https://gitlab.com/apt-mirror2/apt-mirror2/-/jobs/6651671307
There is
apt-get -y install
immediate afterapt-get update
: https://gitlab.com/apt-mirror2/apt-mirror2/-/blob/master/.devcontainer/Dockerfile?ref_type=heads#L10Reproduction Steps
I'm unsure, looks like something like this:
Target
Filesystem
Scanner
Misconfiguration
Target OS
No response
Debug Output
Version
Checklist
-f json
that shows data sources and confirmed that the security advisory in data sources was correctBeta Was this translation helpful? Give feedback.
All reactions