Skip to content

Merge pull request from Zak1452/main: improve CVE handling, Debian release compatibility and snapshot sources management#12

Open
Zak1452 wants to merge 12 commits into
Orange-OpenSource:mainfrom
Zak1452:main
Open

Merge pull request from Zak1452/main: improve CVE handling, Debian release compatibility and snapshot sources management#12
Zak1452 wants to merge 12 commits into
Orange-OpenSource:mainfrom
Zak1452:main

Conversation

@Zak1452
Copy link
Copy Markdown

@Zak1452 Zak1452 commented May 13, 2026

  1. Retrieve vulnerable version from JSON when CVE has an unfixed status
  2. Fix invalid JSON parsing when multiple packages exist for the same CVE, selecting the one with a valid fixed version
  3. Fix case where a release is not affected by the CVE, properly skipping it
  4. Fix package retrieval for releases prior to Bookworm to avoid dpkg conflicts due to incompatible snapshot sources

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant