Red Hat 8.6 EUS False positives #8200
wagde-orca
started this conversation in
False Detection
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
IDs
CVE-2022-35252
Description
i am trying to scan a redhat 8.6 and I have many False positives for example i have curl 7.61.1-22.el8_6.12 installed, and when running trivy rootfs /tmp/redhat8.6 --format json -o trivy_res.json
I get the following FP (the CVE is fixed in 7.61.1-22.el8_6.12)
Reproduction Steps
Target
Filesystem
Scanner
Vulnerability
Target OS
red hat 8.6
Debug Output
Version
Checklist
-f json
that shows data sources and confirmed that the security advisory in data sources was correctBeta Was this translation helpful? Give feedback.
All reactions