Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add initial content #32

Closed
2 tasks
TristanCacqueray opened this issue Jun 10, 2023 · 5 comments
Closed
2 tasks

Add initial content #32

TristanCacqueray opened this issue Jun 10, 2023 · 5 comments
Assignees
Labels

Comments

@TristanCacqueray
Copy link
Collaborator

The goal is to add some real advisory for known or past issue.

  • Follow the documentation and propose new advisory.
  • Update documentation if necessary.
@frasertweedale
Copy link
Collaborator

frasertweedale commented Jun 13, 2023

Search of NVD/mitre turned up the following CVEs:

Reviewing those and reflecting them into the advisory-db would be a good start.

@frasertweedale
Copy link
Collaborator

frasertweedale commented Jun 14, 2023

@david-christiansen has a known TOML lib issue (already fixed) that he will submit next week. (#56)

@frasertweedale
Copy link
Collaborator

frasertweedale commented Jul 24, 2023

Re https://nvd.nist.gov/vuln/detail/CVE-2021-30502 vscode-ghc-simple RCE - it is actually not a Haskell program.

And it has been fixed in the latest version. I don't think there's anything further the SRT has to do for this issue.

@mihaimaruseac
Copy link
Collaborator

+1, I don't think we have to do anything more for this one

@frasertweedale frasertweedale self-assigned this Jul 25, 2023
@frasertweedale
Copy link
Collaborator

I think we're done here :) All the known historical advisories have been added to the DB.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

3 participants