Skip to content

Commit

Permalink
Automatic vulnerability report update
Browse files Browse the repository at this point in the history
  • Loading branch information
henrirosten authored and github-actions[bot] committed Dec 29, 2024
1 parent a776664 commit ccea643
Show file tree
Hide file tree
Showing 2 changed files with 0 additions and 6 deletions.
3 changes: 0 additions & 3 deletions reports/main/data.csv
Original file line number Diff line number Diff line change
Expand Up @@ -256,9 +256,6 @@ https://github.com/NixOS/nixpkgs/pull/362304"
"packages.x86_64-linux.lenovo-x1-carbon-gen11-debug","github:tiiuae/ghaf?ref=main","current","CVE-2022-38164","https://nvd.nist.gov/vuln/detail/CVE-2022-38164","safe","6.5","0.3.21","0.3.21","0.3.21","haskell:safe","2022A0000038164","False","","err_not_vulnerable_based_on_repology",""
"packages.x86_64-linux.lenovo-x1-carbon-gen11-debug","github:tiiuae/ghaf?ref=main","current","CVE-2022-38163","https://nvd.nist.gov/vuln/detail/CVE-2022-38163","safe","3.5","0.3.21-r1.cabal","0.3.21","0.3.21","haskell:safe","2022A0000038163","False","","err_not_vulnerable_based_on_repology",""
"packages.x86_64-linux.lenovo-x1-carbon-gen11-debug","github:tiiuae/ghaf?ref=main","current","CVE-2022-38163","https://nvd.nist.gov/vuln/detail/CVE-2022-38163","safe","3.5","0.3.21","0.3.21","0.3.21","haskell:safe","2022A0000038163","False","","err_not_vulnerable_based_on_repology",""
"packages.x86_64-linux.lenovo-x1-carbon-gen11-debug","github:tiiuae/ghaf?ref=main","current","CVE-2022-38023","https://nvd.nist.gov/vuln/detail/CVE-2022-38023","samba","8.1","4.20.4","4.20.4","4.21.2","samba","2022A0000038023","False","","err_not_vulnerable_based_on_repology",""
"packages.x86_64-linux.lenovo-x1-carbon-gen11-debug","github:tiiuae/ghaf?ref=main","current","CVE-2022-37967","https://nvd.nist.gov/vuln/detail/CVE-2022-37967","samba","7.2","4.20.4","4.20.4","4.21.2","samba","2022A0000037967","False","","err_not_vulnerable_based_on_repology",""
"packages.x86_64-linux.lenovo-x1-carbon-gen11-debug","github:tiiuae/ghaf?ref=main","current","CVE-2022-37966","https://nvd.nist.gov/vuln/detail/CVE-2022-37966","samba","8.1","4.20.4","4.20.4","4.21.2","samba","2022A0000037966","False","","err_not_vulnerable_based_on_repology",""
"packages.x86_64-linux.lenovo-x1-carbon-gen11-debug","github:tiiuae/ghaf?ref=main","current","CVE-2022-37434","https://nvd.nist.gov/vuln/detail/CVE-2022-37434","zlib","9.8","0.6.3.0-r5.cabal","0.7.1.0","0.7.1.0","haskell:zlib","2022A0000037434","False","","err_not_vulnerable_based_on_repology","https://github.com/NixOS/nixpkgs/pull/185554
https://github.com/NixOS/nixpkgs/pull/185613
https://github.com/NixOS/nixpkgs/pull/185693
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -126,8 +126,6 @@ Consider [whitelisting](../../manual_analysis.csv) possible false positives base
| [CVE-2023-39323](https://nvd.nist.gov/vuln/detail/CVE-2023-39323) | go | 8.1 | 1.21.0-linux-amd | 1.23.4 | 1.23.4 | |
| [CVE-2023-24999](https://nvd.nist.gov/vuln/detail/CVE-2023-24999) | vault | 8.1 | 0.3.1.5-r8.cabal | 0.3.1.5 | 0.3.1.5 | *[[PR](https://github.com/NixOS/nixpkgs/pull/221835), [PR](https://github.com/NixOS/nixpkgs/pull/221841)]* |
| [CVE-2023-24999](https://nvd.nist.gov/vuln/detail/CVE-2023-24999) | vault | 8.1 | 0.3.1.5 | 0.3.1.5 | 0.3.1.5 | *[[PR](https://github.com/NixOS/nixpkgs/pull/221835), [PR](https://github.com/NixOS/nixpkgs/pull/221841)]* |
| [CVE-2022-38023](https://nvd.nist.gov/vuln/detail/CVE-2022-38023) | samba | 8.1 | 4.20.4 | 4.20.4 | 4.21.2 | |
| [CVE-2022-37966](https://nvd.nist.gov/vuln/detail/CVE-2022-37966) | samba | 8.1 | 4.20.4 | 4.20.4 | 4.21.2 | |
| [CVE-2022-4428](https://nvd.nist.gov/vuln/detail/CVE-2022-4428) | warp | 8.0 | 3.3.31 | 3.4.3 | 3.4.7 | |
| [CVE-2023-32643](https://nvd.nist.gov/vuln/detail/CVE-2023-32643) | glib | 7.8 | 0.18.5 | 0.13.11.0 | 0.13.11.0 | |
| [CVE-2023-6597](https://nvd.nist.gov/vuln/detail/CVE-2023-6597) | python | 7.8 | 2.7.18.8 | 3.13.1 | 3.13.1 | *[[PR](https://github.com/NixOS/nixpkgs/pull/298006), [PR](https://github.com/NixOS/nixpkgs/pull/299123), [PR](https://github.com/NixOS/nixpkgs/pull/299125)]* |
Expand Down Expand Up @@ -214,7 +212,6 @@ Consider [whitelisting](../../manual_analysis.csv) possible false positives base
| [CVE-2017-18589](https://nvd.nist.gov/vuln/detail/CVE-2017-18589) | cookie | 7.5 | 0.4.6 | 0.5.0 | 0.5.0 | |
| [CVE-2024-0397](https://nvd.nist.gov/vuln/detail/CVE-2024-0397) | python | 7.4 | 2.7.18.8 | 3.13.1 | 3.13.1 | |
| [CVE-2023-1862](https://nvd.nist.gov/vuln/detail/CVE-2023-1862) | warp | 7.3 | 3.3.31 | 3.4.3 | 3.4.7 | |
| [CVE-2022-37967](https://nvd.nist.gov/vuln/detail/CVE-2022-37967) | samba | 7.2 | 4.20.4 | 4.20.4 | 4.21.2 | |
| [CVE-2024-4030](https://nvd.nist.gov/vuln/detail/CVE-2024-4030) | python | 7.1 | 2.7.18.8 | 3.13.1 | 3.13.1 | |
| [CVE-2022-26488](https://nvd.nist.gov/vuln/detail/CVE-2022-26488) | python | 7.0 | 2.7.18.8 | 3.13.1 | 3.13.1 | |
| [CVE-2024-6505](https://nvd.nist.gov/vuln/detail/CVE-2024-6505) | qemu | 6.8 | 9.1.1 | 9.2.0 | 9.2.0 | *[[PR](https://github.com/NixOS/nixpkgs/pull/351100)]* |
Expand Down

0 comments on commit ccea643

Please sign in to comment.