Eduardo Barretto
Eduardo Barretto
I'm adding Ubuntu to the labels as well as I imagine this impacts both
@Mab879 hey! could you please give some advice here. We are trying for this rule to not run a container, but the tests are still being executed if `platform: machine`...
if I could make a suggestion, I think it would be easier to review this PR and specially understand why it affects other products, if it was broken down into...
regarding Ubuntu, not only the OVAL files are available but if you would like to work with JSON instead we also have OSV and OpenVEX data. You can find both...
> [@dodys](https://github.com/dodys) thank you for reaching out! > > I'm 99% sure it makes sense to import the USN, because (if I get it right): > When you say import...
> vulnerability-lookup already loads the CVEs entries from [CVEListv5](https://github.com/CVEProject/cvelistV5), so the main reason to add a feed is if it brings vendor-specific information that aren't in the CVE entry from...
I'm closing this ticket since this was already addressed. Let us know in case of any issues.
The first benchmark for 24.04 was CIS which only came late in August and so far no one contributed it. Also if you are installing ssg-debderived through apt, it wouldn't...
> How would one contribute it? Is there hoops to jump through, or is it really just a case of taking the 22.04 rules, replacing '22' with '24' and starting...
I would wait until we move the profile from draft, there are a few things we are still handling/fixing.