Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Extract Advisory.Description on RHEL, Amazon, Oracle #450

Merged
merged 1 commit into from
Jul 18, 2017

Conversation

kotakanbe
Copy link
Member

@kotakanbe kotakanbe commented Jul 18, 2017

Extract the description of yum --color=never --security updateinfo updates, and put it into JSON.

===============================================================================
  Amazon Linux AMI 2014.03 - ALAS-2016-720: medium priority package update for wget
===============================================================================
  Update ID : ALAS-2016-720
    Release :
       Type : security
     Status : final
     Issued : 2016-07-14 16:30
       CVEs : CVE-2016-4971
Description : Package updates are available for Amazon Linux AMI that fix the
            : following vulnerabilities: CVE-2016-4971:
            :         GNU wget before 1.18 allows remote servers
            :         to write to arbitrary files by redirecting
            :         a request from HTTP to a crafted FTP
            :         resource. 1343666:
            : CVE-2016-4971 wget: Lack of filename checking
            : allows arbitrary file upload via FTP redirect
   Severity : medium

@kotakanbe kotakanbe merged commit fd142e0 into support_oval Jul 18, 2017
@kotakanbe kotakanbe deleted the get-yum-plugin-security-output branch September 27, 2017 01:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant