Sisyphus repository
Last update: 2018-09-18 19:10:52 +0400 | SRPMs: 18657 | Sign in or Sign up
en ru uk br
ALT Linux repositories
hide window
Sisyphus: 0.17.0-alt1

Group :: Other
Source RPM: cve-manager

 Main   Changelog   Spec   Patches   Sources   Download   Gear   Bugs and FR (0/0)   Repocop 

Current version: 0.17.0-alt1
Built: 4 days ago
Size: 69.4 KB
Repocop status: warn

Home page:   https://www.altlinux.org/CVE-Manager

License: GPLv3
Summary: CVE-management toolkit
Description:

cve-manager is a command line utilities toolkit
used to import various CVE lists (in CSV or XML formats)
into MySQL DB, getting access to and analyse formed CVE DB.

Current maintainer: Alexey Appolonov

List of contributors: ACL: List of rpms provided by this srpm:
  • cpe-map
  • cve-backup
  • cve-download
  • cve-fixes
  • cve-import
  • cve-issues
  • cve-manager
  • cve-manager-common
  • cve-monitor
Recent changes (last three changelog entries):

2018-09-10 Alexey Appolonov <alexey at altlinux.org> 0.17.0-alt1

    - Prescribed mapping;
    - Detecting 'relative' packages at the import stage
    and using information about them as mapping attribute;
    - Handling FSTEC vulnerabilities within current cve-issues concept;
    - cve-monitor is working OK within current cve-issues concept;
    - Revised comparison of versions that happens at the issues-detection stage;
    - Revised packages-filtering function;
    - Removing duplicates of src packages names at import stage
    and corresponding bin-packages names, not vice versa;
    - Not importing CPEs of 'hardware' part;
    - Not importing Mitre list by default;
    - Common bin package for conf file & common py module;
    - Own config file for cve-monitor.

2018-09-02 Alexey Appolonov <alexey at altlinux.org> 0.16.0-alt1

    - Versions of vulnerable programs are now taken into account when figuring out
    the 'fix' entries of *_issues table;
    - Ability to compare 'fix' entries of different branches;
    - c7.1 and c8.1 branches are avalible for cve-manager;
    - Fix of monitoring of the selected packages;
    - Only members of the 'cve' group can run modules that modify
    the vulnerabilities DB.

2018-07-27 Alexey Appolonov <alexey at altlinux.org> 0.15.0-alt1

    - Proper output when running with 'tee' in auto mode;
    - Correction in mapping algorithm, including 1) check if there are some
    CPE/FSTEC names left to map, 2) additional break condition of the mapping
    loop, so there could be no infinite loop, 3) fix of the wrong behavior
    emerging for a names that differ only by number at the end, 4) avoidance of
    complete match for the duplicates, 5) fix of the RemoveMapDups function;
    - Ability to disable bin partial match;
    - Filtering the package lists with distro list;
    - Fix of the import of the last NVD CVE list;
    - Working realisation of the 'packs' option of the cve-import;
    - No more verbose output option in cve-import;
    - cve-import's UI now looks more like UI of the py-modules;
    - Introducing refs and const modifier wherever possible for the cve-import.

 
© 2009–2018 Igor Zubkov