appcanary / coalmine

GNU Lesser General Public License v3.0
0 stars 0 forks source link

Use CVE advisories to update Ubuntu advisory severity #300

Closed phillmv closed 7 years ago

phillmv commented 7 years ago

So, currently severity in ubuntu security tracker vulnerabilities use their priority flag, which does not match to CVSS_V2 scores assigned to CVEs.

Once we have CVE data well behaved in, add a step to update ubuntu sec tracker vulnerabilities' (not adv) severity.

phillmv commented 7 years ago

we do this now