Skip to content

Commit f272f63

Browse files
committed
all: publish non_go_versions as custom_ranges in OSV
Change-Id: I737910df80c37a6027b08916abe3b3f413795bbe Reviewed-on: https://go-review.googlesource.com/c/vulndb/+/597155 LUCI-TryBot-Result: Go LUCI <[email protected]> Reviewed-by: Damien Neil <[email protected]>
1 parent 7313605 commit f272f63

File tree

99 files changed

+1918
-109
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

99 files changed

+1918
-109
lines changed

cmd/vulnreport/fix.go

+1-1
Original file line numberDiff line numberDiff line change
@@ -178,7 +178,7 @@ func (r *yamlReport) checkSymbols() error {
178178
// If some symbol is in the std library at a different version,
179179
// we may derive the wrong symbols for this package and other.
180180
// In this case, skip updating DerivedSymbols.
181-
ranges, err := report.AffectedRanges(m.Versions)
181+
ranges, err := m.Versions.ToSemverRanges()
182182
if err != nil {
183183
return err
184184
}

data/osv/GO-2024-2428.json

+15-1
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,21 @@
2525
]
2626
}
2727
],
28-
"ecosystem_specific": {}
28+
"ecosystem_specific": {
29+
"custom_ranges": [
30+
{
31+
"type": "ECOSYSTEM",
32+
"events": [
33+
{
34+
"introduced": "0"
35+
},
36+
{
37+
"fixed": "1.9.0"
38+
}
39+
]
40+
}
41+
]
42+
}
2943
}
3044
],
3145
"references": [

data/osv/GO-2024-2430.json

+15-1
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,21 @@
2525
]
2626
}
2727
],
28-
"ecosystem_specific": {}
28+
"ecosystem_specific": {
29+
"custom_ranges": [
30+
{
31+
"type": "ECOSYSTEM",
32+
"events": [
33+
{
34+
"introduced": "0"
35+
},
36+
{
37+
"fixed": "3.3.1"
38+
}
39+
]
40+
}
41+
]
42+
}
2943
}
3044
],
3145
"references": [

data/osv/GO-2024-2431.json

+15-1
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,21 @@
2525
]
2626
}
2727
],
28-
"ecosystem_specific": {}
28+
"ecosystem_specific": {
29+
"custom_ranges": [
30+
{
31+
"type": "ECOSYSTEM",
32+
"events": [
33+
{
34+
"introduced": "0"
35+
},
36+
{
37+
"fixed": "3.3.1"
38+
}
39+
]
40+
}
41+
]
42+
}
2943
}
3044
],
3145
"references": [

data/osv/GO-2024-2432.json

+15-1
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,21 @@
2525
]
2626
}
2727
],
28-
"ecosystem_specific": {}
28+
"ecosystem_specific": {
29+
"custom_ranges": [
30+
{
31+
"type": "ECOSYSTEM",
32+
"events": [
33+
{
34+
"introduced": "0"
35+
},
36+
{
37+
"fixed": "3.3.1"
38+
}
39+
]
40+
}
41+
]
42+
}
2943
}
3044
],
3145
"references": [

data/osv/GO-2024-2433.json

+15-1
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,21 @@
2525
]
2626
}
2727
],
28-
"ecosystem_specific": {}
28+
"ecosystem_specific": {
29+
"custom_ranges": [
30+
{
31+
"type": "ECOSYSTEM",
32+
"events": [
33+
{
34+
"introduced": "0"
35+
},
36+
{
37+
"fixed": "3.3.1"
38+
}
39+
]
40+
}
41+
]
42+
}
2943
}
3044
],
3145
"references": [

data/osv/GO-2024-2434.json

+15-1
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,21 @@
2525
]
2626
}
2727
],
28-
"ecosystem_specific": {}
28+
"ecosystem_specific": {
29+
"custom_ranges": [
30+
{
31+
"type": "ECOSYSTEM",
32+
"events": [
33+
{
34+
"introduced": "0"
35+
},
36+
{
37+
"fixed": "3.3.1"
38+
}
39+
]
40+
}
41+
]
42+
}
2943
}
3044
],
3145
"references": [

data/osv/GO-2024-2442.json

+21-1
Original file line numberDiff line numberDiff line change
@@ -24,7 +24,27 @@
2424
]
2525
}
2626
],
27-
"ecosystem_specific": {}
27+
"ecosystem_specific": {
28+
"custom_ranges": [
29+
{
30+
"type": "ECOSYSTEM",
31+
"events": [
32+
{
33+
"introduced": "13.0.0"
34+
},
35+
{
36+
"fixed": "13.4.13"
37+
},
38+
{
39+
"introduced": "14.0.0"
40+
},
41+
{
42+
"fixed": "14.2.4"
43+
}
44+
]
45+
}
46+
]
47+
}
2848
}
2949
],
3050
"references": [

data/osv/GO-2024-2444.json

+15-1
Original file line numberDiff line numberDiff line change
@@ -76,7 +76,21 @@
7676
]
7777
}
7878
],
79-
"ecosystem_specific": {}
79+
"ecosystem_specific": {
80+
"custom_ranges": [
81+
{
82+
"type": "ECOSYSTEM",
83+
"events": [
84+
{
85+
"introduced": "0"
86+
},
87+
{
88+
"fixed": "8.1.7"
89+
}
90+
]
91+
}
92+
]
93+
}
8094
}
8195
],
8296
"references": [

data/osv/GO-2024-2445.json

+27-1
Original file line numberDiff line numberDiff line change
@@ -24,7 +24,33 @@
2424
]
2525
}
2626
],
27-
"ecosystem_specific": {}
27+
"ecosystem_specific": {
28+
"custom_ranges": [
29+
{
30+
"type": "ECOSYSTEM",
31+
"events": [
32+
{
33+
"introduced": "0"
34+
},
35+
{
36+
"fixed": "12.4.31"
37+
},
38+
{
39+
"introduced": "13.0.0"
40+
},
41+
{
42+
"fixed": "13.4.13"
43+
},
44+
{
45+
"introduced": "14.0.0"
46+
},
47+
{
48+
"fixed": "14.2.4"
49+
}
50+
]
51+
}
52+
]
53+
}
2854
}
2955
],
3056
"references": [

data/osv/GO-2024-2446.json

+15-1
Original file line numberDiff line numberDiff line change
@@ -76,7 +76,21 @@
7676
]
7777
}
7878
],
79-
"ecosystem_specific": {}
79+
"ecosystem_specific": {
80+
"custom_ranges": [
81+
{
82+
"type": "ECOSYSTEM",
83+
"events": [
84+
{
85+
"introduced": "0"
86+
},
87+
{
88+
"fixed": "8.1.7"
89+
}
90+
]
91+
}
92+
]
93+
}
8094
}
8195
],
8296
"references": [

data/osv/GO-2024-2447.json

+27-1
Original file line numberDiff line numberDiff line change
@@ -24,7 +24,33 @@
2424
]
2525
}
2626
],
27-
"ecosystem_specific": {}
27+
"ecosystem_specific": {
28+
"custom_ranges": [
29+
{
30+
"type": "ECOSYSTEM",
31+
"events": [
32+
{
33+
"introduced": "0"
34+
},
35+
{
36+
"fixed": "12.4.31"
37+
},
38+
{
39+
"introduced": "13.0.0"
40+
},
41+
{
42+
"fixed": "13.4.13"
43+
},
44+
{
45+
"introduced": "14.0.0"
46+
},
47+
{
48+
"fixed": "14.2.4"
49+
}
50+
]
51+
}
52+
]
53+
}
2854
}
2955
],
3056
"references": [

data/osv/GO-2024-2448.json

+15-1
Original file line numberDiff line numberDiff line change
@@ -79,7 +79,21 @@
7979
]
8080
}
8181
],
82-
"ecosystem_specific": {}
82+
"ecosystem_specific": {
83+
"custom_ranges": [
84+
{
85+
"type": "ECOSYSTEM",
86+
"events": [
87+
{
88+
"introduced": "0"
89+
},
90+
{
91+
"fixed": "8.1.7"
92+
}
93+
]
94+
}
95+
]
96+
}
8397
}
8498
],
8599
"references": [

data/osv/GO-2024-2449.json

+27-1
Original file line numberDiff line numberDiff line change
@@ -24,7 +24,33 @@
2424
]
2525
}
2626
],
27-
"ecosystem_specific": {}
27+
"ecosystem_specific": {
28+
"custom_ranges": [
29+
{
30+
"type": "ECOSYSTEM",
31+
"events": [
32+
{
33+
"introduced": "0"
34+
},
35+
{
36+
"fixed": "12.4.31"
37+
},
38+
{
39+
"introduced": "13.0.0"
40+
},
41+
{
42+
"fixed": "13.4.13"
43+
},
44+
{
45+
"introduced": "14.0.0"
46+
},
47+
{
48+
"fixed": "14.2.4"
49+
}
50+
]
51+
}
52+
]
53+
}
2854
}
2955
],
3056
"references": [

data/osv/GO-2024-2450.json

+30-2
Original file line numberDiff line numberDiff line change
@@ -25,7 +25,21 @@
2525
]
2626
}
2727
],
28-
"ecosystem_specific": {}
28+
"ecosystem_specific": {
29+
"custom_ranges": [
30+
{
31+
"type": "ECOSYSTEM",
32+
"events": [
33+
{
34+
"introduced": "0"
35+
},
36+
{
37+
"fixed": "7.8.10"
38+
}
39+
]
40+
}
41+
]
42+
}
2943
},
3044
{
3145
"package": {
@@ -76,7 +90,21 @@
7690
]
7791
}
7892
],
79-
"ecosystem_specific": {}
93+
"ecosystem_specific": {
94+
"custom_ranges": [
95+
{
96+
"type": "ECOSYSTEM",
97+
"events": [
98+
{
99+
"introduced": "0"
100+
},
101+
{
102+
"fixed": "8.1.1"
103+
}
104+
]
105+
}
106+
]
107+
}
80108
}
81109
],
82110
"references": [

0 commit comments

Comments
 (0)