Skip to content

Commit 07cd461

Browse files
committed
fix: fix xerces CPE ID
apache:xerces-c has been deprecated in favor of apache-xerces-c\+\+ since February 2023: <cpe-item name="cpe:/a:apache:xerces-c:3.1.1" deprecated="true" deprecation_date="2023-02-05T21:10:01.860Z"> <reference href="https://marc.info/?l=xerces-c-users&amp;m=157653840106914&amp;w=2">Advisory</reference> <reference href="https://xerces.apache.org/xerces-c/releases_archive.html">Version</reference> <cpe-23:cpe23-item name="cpe:2.3:a:apache:xerces-c:3.1.1:*:*:*:*:*:*:*"> <cpe-23:deprecated-by name="cpe:2.3:a:apache:xerces-c\+\+:3.1.1:*:*:*:*:*:*:*" type="NAME_CORRECTION"/> Signed-off-by: Fabrice Fontaine <[email protected]>
1 parent 54da5b0 commit 07cd461

File tree

2 files changed

+4
-4
lines changed

2 files changed

+4
-4
lines changed

cve_bin_tool/checkers/xerces.py

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@
66
CVE checker for libxerces
77
88
References:
9-
http://www.cvedetails.com/vulnerability-list/vendor_id-45/product_id-4103/Apache-Xerces-c-.html
9+
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&orderBy=2.3&keyword=cpe%3A2.3%3Aa%3Aapache%3Axerces-c%5C%2B%5C%2B&status=FINAL
1010
1111
RSS feed: http://www.cvedetails.com/vulnerability-feed.php?vendor_id=45&product_id=4103&version_id=&orderby=2&cvssscoremin=0
1212
"""
@@ -20,4 +20,4 @@ class XercesChecker(Checker):
2020
r"\/xerces-c-src_([0-9]+_[0-9]+_[0-9]+)\/",
2121
r"xercesc_([0-9]+\_[0-9]+):",
2222
]
23-
VENDOR_PRODUCT = [("apache", "xerces-c")]
23+
VENDOR_PRODUCT = [("apache", "xerces-c\+\+")]

test/test_data/xerces.py

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@
33

44
mapping_test_data = [
55
{
6-
"product": "xerces-c",
6+
"product": "xerces-c\+\+",
77
"version": "3.1.1",
88
"version_strings": ["/xerces-c-src_3_1_1/"],
99
}
@@ -12,7 +12,7 @@
1212
{
1313
"url": "http://mirror.centos.org/centos/7/os/x86_64/Packages/",
1414
"package_name": "xerces-c-3.1.1-10.el7_7.x86_64.rpm",
15-
"product": "xerces-c",
15+
"product": "xerces-c\+\+",
1616
"version": "3.1",
1717
}
1818
]

0 commit comments

Comments
 (0)