andir / nix-vulnerability-scanner

19 stars 4 forks source link

CVE-2005-1708/1709/1710 wronlgy matched against grafana_reporter #8

Open mweinelt opened 4 years ago

mweinelt commented 4 years ago

The CVEs are against Blue Coat Reporter.

https://broken.sh/issues/CVE-2005-1708 https://broken.sh/issues/CVE-2005-1709 https://broken.sh/issues/CVE-2005-1710

andir commented 4 years ago

The correct solution here would be properly name the package as grafana-reporter in nixpkgs.

For now I just added a blacklist that includes those three issues: 8f1a4736bc449b01fa39b42bde30d2492715614a

Will probably take a day or so before each of the channels has been scanned again.