1
0
Fork 0
mirror of https://github.com/cisagov/log4j-affected-db.git synced 2024-11-25 18:00:48 +00:00
Commit graph

1350 commits

Author SHA1 Message Date
iainDe
98b1ec0758
Update PULL-EXAMPLE.MD 2022-01-05 12:54:44 -05:00
inl-ics
85fab066fd
Update SOFTWARE-LIST.md
Added Hitachi Energy products
2022-01-05 10:50:34 -07:00
iainDe
fb0a644f0b
Update PULL-EXAMPLE.MD 2022-01-05 12:39:50 -05:00
iainDe
39c954b71f
Create PULL-EXAMPLE.MD 2022-01-05 12:16:44 -05:00
iainDe
84fd85ba16
Merge pull request #423 from Hallewellgov/patch-1
Update SOFTWARE-LIST.md
2022-01-05 11:53:15 -05:00
iainDe
595991d8a7
Merge branch 'develop' into patch-1 2022-01-05 11:51:10 -05:00
iainDe
be53ab711b
Merge pull request #420 from dzomaya/dz_tl_branch
Adding details for Tripp Lite UPS/PDU/cooler network cards and associ…
2022-01-05 11:50:32 -05:00
iainDe
895183955a
Update SOFTWARE-LIST.md
Adjusted the White Space between pipes for formatting requirements.
2022-01-05 11:47:37 -05:00
Hallewellgov
130d1c0152
Update SOFTWARE-LIST.md
Per the Zscaler website, some of their products were affected and have been patched.
2022-01-05 11:33:50 -05:00
David Zomaya
9e51b441a0
Adding details for Tripp Lite UPS/PDU/cooler network cards and associated software based on offical KB article from tripplite.com 2022-01-04 13:55:38 -06:00
iainDe
c4e2910b95
Merge pull request #418 from john-talbert/patch-2
Updated HCL BigFix Compliance
2022-01-03 11:02:05 -05:00
brolly33
99af7f835a
Updated HCL BigFix Compliance
HCL BigFix compliance has been shifted to non vulnerable after KB update. Vulnerable library present (and removed in v2.0.5) but there are no code paths allowing exploitation.
See KB for more details   https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0095486
2022-01-03 09:15:15 -05:00
justmurphy
9b6bae1099
Merge pull request #417 from stevea1/develop
Update SOFTWARE-LIST.md to Add ThycoticCentrify Server Suite
2022-01-03 08:24:18 -05:00
stevea1
a9a9b823f4 Update SOFTWARE-LIST.md to Add ThycoticCentrify Server Suite
Added missing Server Suite to ThycoticCentrify list of products
2021-12-30 21:52:01 -05:00
justmurphy
b1b67d9ebb
Merge pull request #416 from stevea1/develop
Update SOFTWARE-LIST.md for Xerox
2021-12-30 21:31:48 -05:00
stevea1
d0898ec3f4 Update SOFTWARE-LIST.md for Xerox
Corrected name and broken link for Xerox security bulletin.
2021-12-30 21:23:26 -05:00
Nick
03f998cca7
Merge pull request #415 from cisagov/revert/undo_yaml_conversion
Revert the migration to a YAML format
2021-12-30 16:50:48 -05:00
Nicholas McDonnell
6e6ff55bbc
Revert the migration to a YAML format
Due to unexpected complications for user submissions we are reverting
the transition to a YAML format.
2021-12-30 16:31:50 -05:00
cisagovbot
d6728c61d1 Update the software list 2021-12-30 20:40:35 +00:00
justmurphy
fce8d64271
Merge pull request #413 from cisagov/upstream/update_log4j-md-yml_dependency
Update the version of cisagov/log4j-md-yml used
2021-12-30 15:39:32 -05:00
Nicholas McDonnell
438eb9df00
Update the version of cisagov/log4j-md-yml used
This updated version should fix some formatting issues in the generated
Markdown.
2021-12-30 15:35:54 -05:00
cisagovbot
4d36384a2b Update the software list 2021-12-30 19:52:59 +00:00
Nick
542781e1ac
Merge pull request #412 from cisagov/improvement/add-readme-template
Use a YAML file to store product information
2021-12-30 14:51:53 -05:00
Nick
ed101b9604
Use the long form of a switch for git
We prefer using the long form of switches for command line programs to
improve maintainability and to better convey what is happening even if
someone is unfamiliar with the switches for a given program.

Co-authored-by: dav3r <david.redmin@trio.dhs.gov>
2021-12-30 14:47:14 -05:00
Nicholas McDonnell
e6aa7c3662
Update cisagov YAML with the latest software list contents 2021-12-30 14:07:17 -05:00
Nicholas McDonnell
a6e7fbe46a
Merge branch 'develop' into improvement/add-readme-template 2021-12-30 14:06:15 -05:00
Nicholas McDonnell
1c1d06ef95
Change the list update workflow testing configuration
Update the testing branch for the software list update workflow to
include the SHA of the commit that triggers the workflow. This should
help track down problems if there is a failure in testing/rendering.
2021-12-30 14:04:02 -05:00
justmurphy
c445cdefb3
Merge pull request #411 from daveherrald/Splunk
Updated 8:20 am PT, 12/30/21
2021-12-30 13:58:34 -05:00
justmurphy
abe4c9c0e0
Remove duplicate Sprecher entry 2021-12-30 13:57:26 -05:00
justmurphy
4d318564e6
Update README.md 2021-12-30 13:54:34 -05:00
Dave Herrald
331b1be048 Fixed typo(lack of newline) on last Splunk line. 2021-12-30 11:45:19 -07:00
Dave Herrald
7c16405417 Splunk Updated 8:20 am PT, 12/30/21 2021-12-30 11:36:12 -07:00
Dave Herrald
e9c2906dc2 Splunk Updated 8:20 am PT, 12/30/21 2021-12-30 11:32:57 -07:00
Dave Herrald
b1a245d084 Merge branch 'develop' into Splunk 2021-12-30 11:31:45 -07:00
Dave Herrald
d14ffce095 Updated 8:20 am PT, 12/30/21 2021-12-30 11:12:05 -07:00
Nicholas McDonnell
cf9549fb5f
Update the cisagov YAML file
Update to reflect the current state of SOFTWARE-LIST.md.
2021-12-30 12:59:32 -05:00
Nicholas McDonnell
6947784c5e
Merge branch 'develop' into improvement/add-readme-template 2021-12-30 12:49:59 -05:00
Nicholas McDonnell
3ba78f6958
Update requirements for the update software workflow
Update the workflow's requirements to use a specific version at the updated
location of the Python project doing the heavy lifting. Additionally the
requirements file is added to the actions/cache key used.
2021-12-30 12:46:01 -05:00
iainDe
74bc01a394
Merge pull request #384 from rajendrapshrestha/patch-1
Update SOFTWARE-LIST.md
2021-12-30 09:52:58 -05:00
justmurphy
1c363a75d1
Fix bare urls Oracle 2021-12-30 09:10:13 -05:00
justmurphy
3dce153b35
Add note & dates 2021-12-30 09:07:01 -05:00
rajendrapshrestha
12c7c67c37
Merge branch 'develop' into patch-1 2021-12-30 09:03:58 -05:00
rajendrapshrestha
6a5d1e8e1e
Update SOFTWARE-LIST.md
Oracle Exadata & Oracle EM - Added affected version and link to Oracle site
2021-12-30 09:00:17 -05:00
Nicholas McDonnell
3e54857897
Remove product status from issue forms
This value is derived from other information in each software product
entry in the YAML file. Since it is now a derived value we should not
prompt submitters to provide one.
2021-12-29 17:00:06 -05:00
justmurphy
99b7374da5
Merge pull request #409 from cisagov/update-guidance
Update guidance
2021-12-29 16:21:38 -05:00
justmurphy
95e34c2637
Update CISA rec guidance 2021-12-29 16:18:03 -05:00
justmurphy
c534698363
Update CISA guidance 2021-12-29 16:13:37 -05:00
Nicholas McDonnell
180d9a5e46
Merge branch 'develop' into improvement/add-readme-template 2021-12-29 15:34:36 -05:00
Nicholas McDonnell
ec0c326e01
Update software information
Read the current contents of SOFTWARE-LIST.md and use them to populate
cisagov.yml with useful data. This is necessary for the switch to using
a YAML file (cisagov.yml) as the source of information in this
repository.
2021-12-29 15:25:02 -05:00
justmurphy
a366ed86d7
Merge pull request #408 from cisagov/format-fix
Update SOFTWARE-LIST.md
2021-12-29 15:02:19 -05:00