Groups keyboard shortcuts have been updated
Dismiss
See shortcuts

How do we get range

12 views
Skip to first unread message

celek ibm

unread,
Jan 10, 2024, 3:02:54 PM1/10/24
to clair-dev
Hello, 
I am looking at 

```
select * from vuln where links like '%CVE-2023-39331%' and package_name = 'npm'
```
I noticed non of them have range, yes OSV and CVE do

Is my updater not pulling the right info to get the range ?

Thanks

Hank Donnay

unread,
Jan 10, 2024, 4:09:27 PM1/10/24
to clai...@googlegroups.com
On Wed, Jan 10, 2024 at 12:02:54PM -0800, celek ibm wrote:
>https://api.osv.dev/v1/vulns/CVE-2023-39331

This is of type "git", which is unusable for Clair's purposes. Commit
IDs are not orderable without a clone of the repository. Furthermore,
there's no standard way to map packages and commits.

--
hank

Reply all
Reply to author
Forward
0 new messages