Merge ~litios/ubuntu-cve-tracker:oval-fixes-improvements into ubuntu-cve-tracker:master
Proposed by
David Fernandez Gonzalez
Status: | Merged |
---|---|
Merged at revision: | 01d2b74924341409183a0858d3a4897f79aead06 |
Proposed branch: | ~litios/ubuntu-cve-tracker:oval-fixes-improvements |
Merge into: | ubuntu-cve-tracker:master |
Diff against target: |
101 lines (+41/-20) 1 file modified
scripts/oval_lib.py (+41/-20) |
Related bugs: |
Reviewer | Review Type | Date Requested | Status |
---|---|---|---|
Eduardo Barretto | Approve | ||
Review via email: mp+459018@code.launchpad.net |
Description of the change
[OVAL]
-- Fix get_pkgs function to prevent race conditions --
Sometimes, depending on how the CVEs are loaded, function
get_pkgs wouldn't handle the packages properly. This would
result in different binaries between runs, making OVAL inconsistent.
-- Retrieve update pocket + extra CVE fields --
Add a function to retrieve the pocket of a given
package and version from the cache.
Add Mitigation and Notes fields to the CVE.
This is needed for the JSON per-package generation.
To post a comment you must log in.
lgtm, thanks!