Nix-Security-WG / nix-local-security-scanner

Reports on which security advisories may be relevant for a given system or derivation
MIT License
3 stars 0 forks source link

False positive: CVE-2019-0190 in openssl #16

Open raboof opened 11 months ago

raboof commented 11 months ago

apparently the pname matching is incorrectly also looking at 'running on/with' CPE of https://nvd.nist.gov/view/vuln/detail?vulnId=CVE-2019-0190