From e767701f718a70abfda1dab9c7ee76b318c1e419 Mon Sep 17 00:00:00 2001 From: Tatiana Bradley Date: Wed, 14 Dec 2022 14:33:17 -0500 Subject: [PATCH] data/excluded: batch add GO-2022-1164, GO-2022-1161, GO-2022-1160, GO-2022-1154, GO-2022-1153, GO-2022-1152, GO-2022-1151, GO-2022-1147, GO-2022-1162, GO-2022-1150 Fixes golang/vulndb#1164 Fixes golang/vulndb#1161 Fixes golang/vulndb#1160 Fixes golang/vulndb#1154 Fixes golang/vulndb#1153 Fixes golang/vulndb#1152 Fixes golang/vulndb#1151 Fixes golang/vulndb#1147 Fixes golang/vulndb#1162 Fixes golang/vulndb#1150 Change-Id: I0259a2a1f38a3fb26e56cd1ff1cf375a0f43a9e0 Reviewed-on: https://go-review.googlesource.com/c/vulndb/+/457636 Reviewed-by: Damien Neil TryBot-Result: Gopher Robot Reviewed-by: Tatiana Bradley Run-TryBot: Tatiana Bradley --- data/excluded/GO-2022-1147.yaml | 7 +++++++ data/excluded/GO-2022-1150.yaml | 5 +++++ data/excluded/GO-2022-1151.yaml | 7 +++++++ data/excluded/GO-2022-1152.yaml | 7 +++++++ data/excluded/GO-2022-1153.yaml | 7 +++++++ data/excluded/GO-2022-1154.yaml | 7 +++++++ data/excluded/GO-2022-1160.yaml | 7 +++++++ data/excluded/GO-2022-1161.yaml | 7 +++++++ data/excluded/GO-2022-1162.yaml | 7 +++++++ data/excluded/GO-2022-1164.yaml | 7 +++++++ 10 files changed, 68 insertions(+) create mode 100644 data/excluded/GO-2022-1147.yaml create mode 100644 data/excluded/GO-2022-1150.yaml create mode 100644 data/excluded/GO-2022-1151.yaml create mode 100644 data/excluded/GO-2022-1152.yaml create mode 100644 data/excluded/GO-2022-1153.yaml create mode 100644 data/excluded/GO-2022-1154.yaml create mode 100644 data/excluded/GO-2022-1160.yaml create mode 100644 data/excluded/GO-2022-1161.yaml create mode 100644 data/excluded/GO-2022-1162.yaml create mode 100644 data/excluded/GO-2022-1164.yaml diff --git a/data/excluded/GO-2022-1147.yaml b/data/excluded/GO-2022-1147.yaml new file mode 100644 index 00000000..4ad6b42e --- /dev/null +++ b/data/excluded/GO-2022-1147.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/containerd/containerd +cves: + - CVE-2022-23471 +ghsas: + - GHSA-2qjp-425j-52j9 diff --git a/data/excluded/GO-2022-1150.yaml b/data/excluded/GO-2022-1150.yaml new file mode 100644 index 00000000..672ea8f5 --- /dev/null +++ b/data/excluded/GO-2022-1150.yaml @@ -0,0 +1,5 @@ +excluded: NOT_IMPORTABLE +modules: + - module: github.com/hasura/graphql-engine +cves: + - CVE-2022-46792 diff --git a/data/excluded/GO-2022-1151.yaml b/data/excluded/GO-2022-1151.yaml new file mode 100644 index 00000000..cfcc8515 --- /dev/null +++ b/data/excluded/GO-2022-1151.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/containers/podman +cves: + - CVE-2022-4122 +ghsas: + - GHSA-4crw-w8pw-2hmf diff --git a/data/excluded/GO-2022-1152.yaml b/data/excluded/GO-2022-1152.yaml new file mode 100644 index 00000000..9acccd57 --- /dev/null +++ b/data/excluded/GO-2022-1152.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/traefik/traefik/v2 +cves: + - CVE-2022-46153 +ghsas: + - GHSA-468w-8x39-gj5v diff --git a/data/excluded/GO-2022-1153.yaml b/data/excluded/GO-2022-1153.yaml new file mode 100644 index 00000000..ed5b83b8 --- /dev/null +++ b/data/excluded/GO-2022-1153.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/casdoor/casdoor +cves: + - CVE-2022-44942 +ghsas: + - GHSA-f93f-55c2-8c89 diff --git a/data/excluded/GO-2022-1154.yaml b/data/excluded/GO-2022-1154.yaml new file mode 100644 index 00000000..bb5d85a6 --- /dev/null +++ b/data/excluded/GO-2022-1154.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/traefik/traefik/v2 +cves: + - CVE-2022-23469 +ghsas: + - GHSA-h2ph-vhm7-g4hp diff --git a/data/excluded/GO-2022-1160.yaml b/data/excluded/GO-2022-1160.yaml new file mode 100644 index 00000000..456a06f8 --- /dev/null +++ b/data/excluded/GO-2022-1160.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/aws/amazon-cloudwatch-agent +cves: + - CVE-2022-23511 +ghsas: + - GHSA-j8x2-2m5w-j939 diff --git a/data/excluded/GO-2022-1161.yaml b/data/excluded/GO-2022-1161.yaml new file mode 100644 index 00000000..f558ac42 --- /dev/null +++ b/data/excluded/GO-2022-1161.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/alist-org/alist/v3 +cves: + - CVE-2022-45968 +ghsas: + - GHSA-4gjr-vgfx-9qvw diff --git a/data/excluded/GO-2022-1162.yaml b/data/excluded/GO-2022-1162.yaml new file mode 100644 index 00000000..5534d4dc --- /dev/null +++ b/data/excluded/GO-2022-1162.yaml @@ -0,0 +1,7 @@ +excluded: NOT_A_VULNERABILITY +modules: + - module: github.com/alist-org/alist/v3 +cves: + - CVE-2022-45970 +ghsas: + - GHSA-957m-g6rf-4c2m diff --git a/data/excluded/GO-2022-1164.yaml b/data/excluded/GO-2022-1164.yaml new file mode 100644 index 00000000..942b0c81 --- /dev/null +++ b/data/excluded/GO-2022-1164.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/csaf-poc/csaf_distribution +cves: + - CVE-2022-43996 +ghsas: + - GHSA-xxfx-w2rw-gh63