Skip to content

Commit 84f3c4b

Browse files
committed
fix: fix xerces CPE ID
apache:xerces-c has been deprecated in favor of apache-xerces-c\+\+ since February 2023: <cpe-item name="cpe:/a:apache:xerces-c:3.1.1" deprecated="true" deprecation_date="2023-02-05T21:10:01.860Z"> <reference href="https://marc.info/?l=xerces-c-users&amp;m=157653840106914&amp;w=2">Advisory</reference> <reference href="https://xerces.apache.org/xerces-c/releases_archive.html">Version</reference> <cpe-23:cpe23-item name="cpe:2.3:a:apache:xerces-c:3.1.1:*:*:*:*:*:*:*"> <cpe-23:deprecated-by name="cpe:2.3:a:apache:xerces-c\+\+:3.1.1:*:*:*:*:*:*:*" type="NAME_CORRECTION"/> Signed-off-by: Fabrice Fontaine <[email protected]>
1 parent 54da5b0 commit 84f3c4b

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

cve_bin_tool/checkers/xerces.py

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@
66
CVE checker for libxerces
77
88
References:
9-
http://www.cvedetails.com/vulnerability-list/vendor_id-45/product_id-4103/Apache-Xerces-c-.html
9+
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&orderBy=2.3&keyword=cpe%3A2.3%3Aa%3Aapache%3Axerces-c%5C%2B%5C%2B&status=FINAL
1010
1111
RSS feed: http://www.cvedetails.com/vulnerability-feed.php?vendor_id=45&product_id=4103&version_id=&orderby=2&cvssscoremin=0
1212
"""
@@ -20,4 +20,4 @@ class XercesChecker(Checker):
2020
r"\/xerces-c-src_([0-9]+_[0-9]+_[0-9]+)\/",
2121
r"xercesc_([0-9]+\_[0-9]+):",
2222
]
23-
VENDOR_PRODUCT = [("apache", "xerces-c")]
23+
VENDOR_PRODUCT = [("apache", "xerces-c\+\+")]

0 commit comments

Comments
 (0)