[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#727534: security-tracker: Add tabular view listing all CVEs and version table for a source package



On Thu, Oct 24, 2013 at 06:36:15AM +0200, Salvatore Bonaccorso wrote:
> Package: security-tracker
> Severity: wishlist
> 
> Hi
> 
> On last DebConf Antonio Terceiro brought up the following idea for an
> additional view for a source package in the security-tracker. I'm
> opening the bugreport to not forget about it.
> 
> It would be nice to have for a given source package a report/view
> listing in a table each (in at least a suite open) CVE, with collumns
> marking if fixed in the given suite.
> 
> srpkg:
> 
> +---------------+-----------+--------------------+-----------+-----------------+-----------+-----------+
> | CVE           | oldstable | oldstable-security | stable    | stable-security | testing   | unstable  |
> +---------------+-----------+--------------------+-----------+-----------------+-----------+-----------+
> | CVE-1234-5678 | <unfixed> | 1.2-3+squeeze1     | <unfixed> | 1.3-4+deb7u1    | <unfixed> | 1.5       |
> | CVE-5678-1234 | <unfixed> | <unfixed>          | <unfixed> | <unfixed>       | <unfixed> | <unfixed> |
> +---------------+-----------+--------------------+-----------+-----------------+-----------+-----------+
> 
> Im principle it should look like an aggregated view of each CVE page,
> for a queried source package.

Thanks for opening a bug about this, Salvatore! :-)

I am actually willing to write the code for this. Unfortunately I tried
setting up a local instance of the security-tracker and failed
miserably.

It would be nice if someone familiar with the codebase could write up
instructions on how to do that.

-- 
Antonio Terceiro <terceiro@debian.org>

Attachment: signature.asc
Description: Digital signature


Reply to: