vulnerablecode icon indicating copy to clipboard operation
vulnerablecode copied to clipboard

Add fireeye

Open ziadhany opened this issue 2 years ago • 3 comments

ziadhany avatar Jul 11 '22 00:07 ziadhany

@ziadhany please run this importer and add logs for that here, and also run the improve command over this imported data and provide the logs for that

TG1999 avatar Jul 14 '22 12:07 TG1999

@ziadhany please add logs

TG1999 avatar Jul 21 '22 11:07 TG1999

importer logs :

/home/ziad/Desktop/open_source/vulnerablecode/venv/bin/python /home/ziad/Desktop/open_source/vulnerablecode/manage.py import vulnerabilities.importers.fireeye.FireyeImporter
Importing data using vulnerabilities.importers.fireeye.FireyeImporter
MNDT-2021-0002.MD
FEYE-2021_0008.MD
MNDT-2021-0011.md
FEYE-2021_0007.MD
FEYE-2019-0010.md
FEYE-2020-0020.md
MNDT-2021-0009.md
FEYE-2021-0015.md
FEYE-2021-0019.md
MNDT-2021-0012.md
FEYE-2020-0008.md
FEYE-2019-0006.md
FEYE-2020-0013.md
FEYE-2021_0004.MD
MNDT-2021-0004.MD
MNDT-2021-0006.MD
FEYE-2021-0017.md
FEYE-2019-0003.md
MNDT-2021-0001.md
FEYE-2020-0007.md
FEYE-2019-0001.md
FEYE-2021-0020.md
FEYE-2021_0013.MD
FEYE-2020-0019.md
FEYE-2020_0004.md
FEYE-2021_0011.MD
FEYE-2020-0016.md
FEYE-2020-0015.md
FEYE-2020_0002.md
FEYE-2021-0021.md
FEYE-2020-0012.md
MNDT-2021-0003.MD
FEYE-2019-0012.md
FEYE-2021_0012.MD
FEYE-2019-0015.md
FEYE-2020-0005.md
FEYE-2021_0005.MD
FEYE-2019-0009.md
FEYE-2021-0014.md
FEYE-2021-0022.md
MNDT-2022-0006.md
MNDT-2022-0030.md
MNDT-2022-0009.md
MNDT-2022-0021.md
MNDT-2022-0020.md
MNDT-2022-0016.md
MNDT-2022-0015.md
MNDT-2022-0022.md
MNDT-2022-0019.md
MNDT-2022-0001.md
MNDT-2022-0018.md
MNDT-2022-0013.md
MNDT-2022-0024.md
MNDT-2022-0027.md
MNDT-2022-0011.md
MNDT-2022-0003.md
MNDT-2022-0028.md
MNDT-2022-0002.md
MNDT-2022-0025.md
MNDT-2022-0031.md
MNDT-2022-0010.md
MNDT-2022-0007.md
MNDT-2022-0029.md
MNDT-2022-0017.md
MNDT-2022-0014.md
MNDT-2022-0023.md
MNDT-2022-0026.md
MNDT-2022-0008.md
MNDT-2022-0012.md
MNDT-2022-0004.md
MNDT-2022-0005.md
FEYE-2020-0018.md
MNDT-2021-0008.md
FEYE-2021_0009.MD
FEYE-2019-0013.md
FEYE-2021-0023.md
FEYE-2020-0017.md
MNDT-2021-0010.md
FEYE-2021_0010.MD
MNDT-2021-0005.MD
FEYE-2019-0008.md
FEYE-2019-0004.md
FEYE-2021_0003.MD
FEYE-2021-0016.md
FEYE-2019-0002.md
FEYE-2020-0006.md
FEYE-2021-0018.md
FEYE-2019-0011.md
FEYE-2020-0010.md
FEYE-2021-0025.md
FEYE-2019-0005.md
FEYE-2021-0024.md
FEYE-2020-0014.md
FEYE-2020-0011.md
FEYE-2019-0007.md
FEYE-2019-0014.md
MNDT-2021-0007.md
FEYE-2021-0002.md
FEYE-2020-0009.md
FEYE-2021_0006.MD
FEYE-2020-0001.md
FEYE-2020_0003.md
FEYE-2021-0001.md
Successfully imported data using vulnerabilities.importers.fireeye.FireyeImporter

Process finished with exit code 0

improver logs :

Improving data using vulnerabilities.improvers.default.DefaultImprover
Inconsistent summary for <Vulnerability: VULCOID-12>. Existing: IOCTL 0x120004 in KfeCo10X64.sys, part of Rivet Killer Control Center, fails to validate an offset passed as a parameter during a memory operation, leading an arbitrary write primitive which can lead to code execution and escalation of privileges., provided: IOCTL 0x120404 in KfeCo10X64.sys, part of Rivet Killer Control Center, fails to validate an offset passed as a parameter during a memory operation, leading to an out-of-bounds read that can be used as part of a chain to escalate privileges. This is not same issue as FEYE-2019-0008.
Successfully improved data using vulnerabilities.improvers.default.DefaultImprover

ziadhany avatar Jul 25 '22 11:07 ziadhany

Please see my review comment, otherwise this looks good to me. Please rebase your branch

TG1999 avatar Oct 18 '22 14:10 TG1999