-
Notifications
You must be signed in to change notification settings - Fork 188
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Ingest SUSE/openSUSE OSV advisories #2543
Comments
For version ordering, SUSE seems to use RPM (https://en.opensuse.org/openSUSE:Package_versioning_guidelines). For https://ftp.suse.com/pub/projects/security/osv/, we may need an |
i added an all.json file now. |
Hey @msmeissn, I have a question about the data prefixes and would like some clarification. The ossf schema lists the valid prefixes for SUSE as only I just want to confirm if we only want to ingest data with the Also, I'm wondering if entries with other prefixes, such as |
ok, problem is that occasionaly "recommended (bugfix)" or feature updates also include CVEs and I generate entries for those. Note that only bugfix or freature updates that have CVEs will be reported for OSV. I sent a PR to osv-schema to allow them, so we can consume those. |
Thanks! I will start to ingest data into our test instance. |
SUSE/openSUSE data is available on test.osv.dev now! |
SUSE/openSUSE is now on osv.dev! |
Per ossf/osv-schema#259, the SUSE/openSUSE ecosystems have been added to the OSV schema, and there is a feed available at https://ftp.suse.com/pub/projects/security/osv/
The text was updated successfully, but these errors were encountered: