aboutcode-org / vulnerablecode

A free and open vulnerabilities database and the packages they impact. And the tools to aggregate and correlate these vulnerabilities. Sponsored by NLnet https://nlnet.nl/project/vulnerabilitydatabase/ for https://www.aboutcode.org/ Chat at https://gitter.im/aboutcode-org/vulnerablecode Docs at https://vulnerablecode.readthedocs.org/
https://public.vulnerablecode.io
Apache License 2.0
542 stars 201 forks source link

Collect CentOS vulnerabilities #65

Open pombredanne opened 5 years ago

pombredanne commented 5 years ago

There are CESA aka. CentOS Security Advisory but this is not entirely clear how they differ from RHSA (RedHat) See for instance https://lists.centos.org/pipermail/centos-announce/2019-September/023448.html and https://access.redhat.com/errata/RHSA-2019:2729 These may be published only as a mailing list post?

pombredanne commented 5 years ago

Note that we could possibly reach out to @hughesjr as he seems to be the author of the recent CESAs