diff --git a/.gitmodules b/.gitmodules index 8862c564..ad449673 100644 --- a/.gitmodules +++ b/.gitmodules @@ -1,4 +1,4 @@ [submodule "tests/quality/vulnerability-match-labels"] path = tests/quality/vulnerability-match-labels url = https://github.com/anchore/vulnerability-match-labels.git - branch = main + branch = ubuntu-label-updates diff --git a/src/vunnel/providers/ubuntu/__init__.py b/src/vunnel/providers/ubuntu/__init__.py index 707fde10..7da7bd68 100644 --- a/src/vunnel/providers/ubuntu/__init__.py +++ b/src/vunnel/providers/ubuntu/__init__.py @@ -30,7 +30,7 @@ class Config: class Provider(provider.Provider): # this is the version for the behavior of the provider (processing) not an indication of the data shape. - __version__ = 2 + __version__ = 3 __schema__ = schema.OSSchema() __distribution_version__ = int(__schema__.major_version) diff --git a/src/vunnel/providers/ubuntu/parser.py b/src/vunnel/providers/ubuntu/parser.py index 5f083839..0882ca99 100644 --- a/src/vunnel/providers/ubuntu/parser.py +++ b/src/vunnel/providers/ubuntu/parser.py @@ -38,7 +38,7 @@ # Maps the state name to whether it indicates a package is vulnerable patch_states = { "DNE": False, # Does Not Exist, the package is does not exist in a particular ubuntu release - "needs-triage": False, # Not yet determined if CVE affects package, ignore in anchore until determination made + "needs-triage": True, # Not yet determined if CVE affects package, consider all versions vulnerable until determination is made "ignored": False, # CVE does not affect the package or no updates (e.g. end-of-life) (NOTE: should still report?) "not-affected": False, # The package is related to the issue, but not affected by it. "needed": True, # Package is vuln and needs a fix. No version yet. diff --git a/tests/quality/config.yaml b/tests/quality/config.yaml index e73ef999..5c293b65 100644 --- a/tests/quality/config.yaml +++ b/tests/quality/config.yaml @@ -227,6 +227,10 @@ tests: use_cache: true images: - docker.io/ubuntu:16.10@sha256:8dc9652808dc091400d7d5983949043a9f9c7132b15c14814275d25f94bca18a + - docker.io/ubuntu:19.04@sha256:3db17bfc30b41cc18552578f4a66d7010050eb9fdc42bf6c3d82bb0dcdf88d58 + - docker.io/ubuntu:22.04@sha256:aa6c2c047467afc828e77e306041b7fa4a65734fe3449a54aa9c280822b0d87d + - docker.io/ubuntu:22.10@sha256:80fb4ea0c0a384a3072a6be1879c342bb636b0d105209535ba893ba75ab38ede + - docker.io/ubuntu:23.04@sha256:09f035f46361d193ded647342903b413d57d05cc06acff8285f9dda9f2d269d5 expected_namespaces: - ubuntu:distro:ubuntu:12.04 - ubuntu:distro:ubuntu:12.10 diff --git a/tests/quality/vulnerability-match-labels b/tests/quality/vulnerability-match-labels index f8b87939..f213a4cf 160000 --- a/tests/quality/vulnerability-match-labels +++ b/tests/quality/vulnerability-match-labels @@ -1 +1 @@ -Subproject commit f8b879392a3399cd3cc80422413c95d97cfbab4c +Subproject commit f213a4cf4beb26b90dd4f6e6a9fa81985d6bae78 diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2019-17185.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2019-17185.json index 46f116be..1fc31341 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2019-17185.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2019-17185.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:18.04/cve-2019-17185","item":{"Vulnerability":{"Name":"CVE-2019-17185","NamespaceName":"ubuntu:18.04","Description":"","Severity":"Low","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2019-17185","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:18.04/cve-2019-17185","item":{"Vulnerability":{"Name":"CVE-2019-17185","NamespaceName":"ubuntu:18.04","Description":"","Severity":"Low","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2019-17185","FixedIn":[{"Name":"freeradius","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-20566.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-20566.json index cf8fe767..53e4ad59 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-20566.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-20566.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:18.04/cve-2022-20566","item":{"Vulnerability":{"Name":"CVE-2022-20566","NamespaceName":"ubuntu:18.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-20566","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:18.04/cve-2022-20566","item":{"Vulnerability":{"Name":"CVE-2022-20566","NamespaceName":"ubuntu:18.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-20566","FixedIn":[{"Name":"linux","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-hwe-5.4","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-kvm","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-aws","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-aws-5.4","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-azure-4.15","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-azure-5.4","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-dell300x","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-gcp-4.15","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-gcp-5.4","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-gke-4.15","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-gke-5.4","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-gkeop-5.4","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-ibm-5.4","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oracle","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oracle-5.4","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oem","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oem-osp1","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-raspi2","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-raspi-5.4","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-snapdragon","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-41859.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-41859.json index 7c6085e7..6ae07cd9 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-41859.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-41859.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:18.04/cve-2022-41859","item":{"Vulnerability":{"Name":"CVE-2022-41859","NamespaceName":"ubuntu:18.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41859","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:18.04/cve-2022-41859","item":{"Vulnerability":{"Name":"CVE-2022-41859","NamespaceName":"ubuntu:18.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41859","FixedIn":[{"Name":"freeradius","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-41860.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-41860.json index 8cf45822..cbd669f2 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-41860.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-41860.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:18.04/cve-2022-41860","item":{"Vulnerability":{"Name":"CVE-2022-41860","NamespaceName":"ubuntu:18.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41860","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:18.04/cve-2022-41860","item":{"Vulnerability":{"Name":"CVE-2022-41860","NamespaceName":"ubuntu:18.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41860","FixedIn":[{"Name":"freeradius","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-41861.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-41861.json index b3e7b17d..be962669 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-41861.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:18.04/cve-2022-41861.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:18.04/cve-2022-41861","item":{"Vulnerability":{"Name":"CVE-2022-41861","NamespaceName":"ubuntu:18.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41861","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:18.04/cve-2022-41861","item":{"Vulnerability":{"Name":"CVE-2022-41861","NamespaceName":"ubuntu:18.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41861","FixedIn":[{"Name":"freeradius","NamespaceName":"ubuntu:18.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-20566.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-20566.json index 38782204..ce443125 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-20566.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-20566.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:20.04/cve-2022-20566","item":{"Vulnerability":{"Name":"CVE-2022-20566","NamespaceName":"ubuntu:20.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-20566","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:20.04/cve-2022-20566","item":{"Vulnerability":{"Name":"CVE-2022-20566","NamespaceName":"ubuntu:20.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-20566","FixedIn":[{"Name":"linux","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-hwe-5.15","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-kvm","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-aws","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-aws-5.15","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-azure","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-azure-5.15","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-azure-fde","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-azure-fde-5.15","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-bluefield","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-gcp","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-gcp-5.15","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-gke","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-gke-5.15","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-gkeop","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-ibm","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-intel-5.13","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-intel-iotg-5.15","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-lowlatency-hwe-5.15","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oracle","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oracle-5.13","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oracle-5.15","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oem-5.6","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oem-5.10","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oem-5.14","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-raspi","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-41859.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-41859.json index 0b48eeb7..b2da1555 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-41859.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-41859.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:20.04/cve-2022-41859","item":{"Vulnerability":{"Name":"CVE-2022-41859","NamespaceName":"ubuntu:20.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41859","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:20.04/cve-2022-41859","item":{"Vulnerability":{"Name":"CVE-2022-41859","NamespaceName":"ubuntu:20.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41859","FixedIn":[{"Name":"freeradius","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-41860.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-41860.json index 83a210fc..3e2a04cc 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-41860.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-41860.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:20.04/cve-2022-41860","item":{"Vulnerability":{"Name":"CVE-2022-41860","NamespaceName":"ubuntu:20.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41860","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:20.04/cve-2022-41860","item":{"Vulnerability":{"Name":"CVE-2022-41860","NamespaceName":"ubuntu:20.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41860","FixedIn":[{"Name":"freeradius","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-41861.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-41861.json index db7d405e..0e836965 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-41861.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:20.04/cve-2022-41861.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:20.04/cve-2022-41861","item":{"Vulnerability":{"Name":"CVE-2022-41861","NamespaceName":"ubuntu:20.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41861","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:20.04/cve-2022-41861","item":{"Vulnerability":{"Name":"CVE-2022-41861","NamespaceName":"ubuntu:20.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41861","FixedIn":[{"Name":"freeradius","NamespaceName":"ubuntu:20.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2021-4204.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2021-4204.json index 7d755fc3..dc0b65b1 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2021-4204.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2021-4204.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.04/cve-2021-4204","item":{"Vulnerability":{"Name":"CVE-2021-4204","NamespaceName":"ubuntu:22.04","Description":"","Severity":"High","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2021-4204","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.04/cve-2021-4204","item":{"Vulnerability":{"Name":"CVE-2021-4204","NamespaceName":"ubuntu:22.04","Description":"","Severity":"High","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2021-4204","FixedIn":[{"Name":"linux-gkeop","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-azure-fde","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oem-6.0","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-20566.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-20566.json index 6e2d2349..985dc658 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-20566.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-20566.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.04/cve-2022-20566","item":{"Vulnerability":{"Name":"CVE-2022-20566","NamespaceName":"ubuntu:22.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-20566","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.04/cve-2022-20566","item":{"Vulnerability":{"Name":"CVE-2022-20566","NamespaceName":"ubuntu:22.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-20566","FixedIn":[{"Name":"linux","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-kvm","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-aws","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-azure","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-azure-fde","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-gcp","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-gke","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-gkeop","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-ibm","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-intel-iotg","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-lowlatency","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oracle","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oem-5.17","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-raspi","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-riscv","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oem-6.0","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-41859.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-41859.json index 6e69f231..579a429d 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-41859.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-41859.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.04/cve-2022-41859","item":{"Vulnerability":{"Name":"CVE-2022-41859","NamespaceName":"ubuntu:22.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41859","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.04/cve-2022-41859","item":{"Vulnerability":{"Name":"CVE-2022-41859","NamespaceName":"ubuntu:22.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41859","FixedIn":[{"Name":"freeradius","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-41860.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-41860.json index d6361bac..476723f8 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-41860.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-41860.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.04/cve-2022-41860","item":{"Vulnerability":{"Name":"CVE-2022-41860","NamespaceName":"ubuntu:22.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41860","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.04/cve-2022-41860","item":{"Vulnerability":{"Name":"CVE-2022-41860","NamespaceName":"ubuntu:22.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41860","FixedIn":[{"Name":"freeradius","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-41861.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-41861.json index 05f9a59b..99f2f11f 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-41861.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.04/cve-2022-41861.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.04/cve-2022-41861","item":{"Vulnerability":{"Name":"CVE-2022-41861","NamespaceName":"ubuntu:22.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41861","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.04/cve-2022-41861","item":{"Vulnerability":{"Name":"CVE-2022-41861","NamespaceName":"ubuntu:22.04","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41861","FixedIn":[{"Name":"freeradius","NamespaceName":"ubuntu:22.04","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-20566.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-20566.json index ec53f54b..fa18e413 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-20566.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-20566.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.10/cve-2022-20566","item":{"Vulnerability":{"Name":"CVE-2022-20566","NamespaceName":"ubuntu:22.10","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-20566","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.10/cve-2022-20566","item":{"Vulnerability":{"Name":"CVE-2022-20566","NamespaceName":"ubuntu:22.10","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-20566","FixedIn":[{"Name":"linux-kvm","NamespaceName":"ubuntu:22.10","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-aws","NamespaceName":"ubuntu:22.10","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-azure","NamespaceName":"ubuntu:22.10","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-gcp","NamespaceName":"ubuntu:22.10","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-ibm","NamespaceName":"ubuntu:22.10","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-lowlatency","NamespaceName":"ubuntu:22.10","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oracle","NamespaceName":"ubuntu:22.10","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-oem-5.17","NamespaceName":"ubuntu:22.10","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-raspi","NamespaceName":"ubuntu:22.10","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}},{"Name":"linux-riscv","NamespaceName":"ubuntu:22.10","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-41859.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-41859.json index e7a7ba9a..e4f1b679 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-41859.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-41859.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.10/cve-2022-41859","item":{"Vulnerability":{"Name":"CVE-2022-41859","NamespaceName":"ubuntu:22.10","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41859","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.10/cve-2022-41859","item":{"Vulnerability":{"Name":"CVE-2022-41859","NamespaceName":"ubuntu:22.10","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41859","FixedIn":[{"Name":"freeradius","NamespaceName":"ubuntu:22.10","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-41860.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-41860.json index 4a4c827e..07180b18 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-41860.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-41860.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.10/cve-2022-41860","item":{"Vulnerability":{"Name":"CVE-2022-41860","NamespaceName":"ubuntu:22.10","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41860","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.10/cve-2022-41860","item":{"Vulnerability":{"Name":"CVE-2022-41860","NamespaceName":"ubuntu:22.10","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41860","FixedIn":[{"Name":"freeradius","NamespaceName":"ubuntu:22.10","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-41861.json b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-41861.json index 0b7ffa0a..66d63c8e 100644 --- a/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-41861.json +++ b/tests/unit/providers/ubuntu/test-fixtures/snapshots/ubuntu:22.10/cve-2022-41861.json @@ -1 +1 @@ -{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.10/cve-2022-41861","item":{"Vulnerability":{"Name":"CVE-2022-41861","NamespaceName":"ubuntu:22.10","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41861","FixedIn":[]}}} +{"schema":"https://raw.githubusercontent.com/anchore/vunnel/main/schema/vulnerability/os/schema-1.0.0.json","identifier":"ubuntu:22.10/cve-2022-41861","item":{"Vulnerability":{"Name":"CVE-2022-41861","NamespaceName":"ubuntu:22.10","Description":"","Severity":"Medium","Metadata":{},"Link":"https://ubuntu.com/security/CVE-2022-41861","FixedIn":[{"Name":"freeradius","NamespaceName":"ubuntu:22.10","VersionFormat":"dpkg","Version":"None","VendorAdvisory":{"NoAdvisory":false}}]}}} diff --git a/tests/unit/test_provider.py b/tests/unit/test_provider.py index 8c595c44..08bf0fca 100644 --- a/tests/unit/test_provider.py +++ b/tests/unit/test_provider.py @@ -974,7 +974,7 @@ def test_provider_versions(tmpdir): "oracle": 1, "rhel": 1, "sles": 1, - "ubuntu": 2, + "ubuntu": 3, "wolfi": 1, }