1
0
Fork 0
mirror of https://github.com/cisagov/log4j-affected-db.git synced 2024-11-23 00:50:48 +00:00
Commit graph

1274 commits

Author SHA1 Message Date
Nicholas McDonnell
c35bcbd052
Add a note to the software list template
Add a note that directs viewers of the generated SOFTWARE-LIST.md to
refer to CONTRIBUTING.md for directions on updating product
information.

Co-authored-by: dav3r <david.redmin@trio.dhs.gov>
2022-01-12 12:59:03 -05:00
Nicholas McDonnell
ff14b54693
Generate YAML files from the existing Markdown
Generate the individual YAML files that are to be edited and then
generate the initial comprehensive YAML file that is used to generate
the Markdown file for display.
2022-01-12 12:59:03 -05:00
Nicholas McDonnell
a92c5fbbf6
Remove product status from issue forms
This value is derived from other information in each software product
entry in the YAML file. Since it is now a derived value we should not
prompt submitters to provide one.
2022-01-12 12:59:02 -05:00
Nicholas McDonnell
17b82eead8
Update the yamllint rules
Controlling the line length in the files generated from the Markdown to
YAML conversion would be difficult so we disable that yamllint rule.
2022-01-12 12:59:02 -05:00
Nicholas McDonnell
3e78ba6c4c
Add list updating workflow and configuration
Add the GitHub Actions workflow that will process the YAML files that
contain cisagov controlled software information and generate a final
Markdown file. The required template and Python requirements are
included as well.
2022-01-12 12:59:02 -05:00
Lcerkov
6e7cf1024b
Merge pull request #429 from jeis4wpi/develop
fix some typos if this helps?
2022-01-11 15:19:33 -07:00
Lcerkov
84084ad508
Merge branch 'develop' into develop 2022-01-11 15:18:24 -07:00
Nick
119c1a405a
Merge pull request #432 from cisagov/maintenance/update_from_skeleton-generic
Pull in updates from cisagov/skeleton-generic
2022-01-11 15:15:12 -05:00
Nicholas McDonnell
93411319c9
Add missing cisagov/action-lineage configuration
This configuration will allow testing configuration updates to flow
down automatically.
2022-01-11 14:50:44 -05:00
Nicholas McDonnell
e1e9b86c3c
Merge github.com:cisagov/skeleton-generic into maintenance/update_from_skeleton-generic 2022-01-11 14:50:24 -05:00
Nick
11eca90f4d
Merge pull request #95 from cisagov/improvement/update_ansible-lint_configuration
Update `ansible-lint` Configuration
2022-01-11 14:28:08 -05:00
Lcerkov
45996616d5
Merge pull request #431 from bryns-j-matillion/matillion
Update SOFTWARE-LIST.md
2022-01-11 12:26:41 -07:00
Nick
6e652ec235
Merge branch 'develop' into improvement/update_ansible-lint_configuration 2022-01-11 14:22:20 -05:00
Nick
115af25726
Merge pull request #97 from cisagov/maintenance/update_pre-commit_hooks
Update `pre-commit` hooks
2022-01-11 14:22:06 -05:00
Nicholas McDonnell
3f370ebdde
Update pre-commit hooks
Update pre-commit hooks using `pre-commit autoupdate`.
2022-01-11 14:03:38 -05:00
Bryns Jones
67870561e9 Update SOFTWARE-LIST.md 2022-01-11 14:49:52 +00:00
John E
adef6f3c41
fix some typos if this helps? 2022-01-07 12:43:49 -05:00
iainDe
1434cb5da7
Merge pull request #427 from CARR-Josh/patch-1
Update SOFTWARE-LIST.md. Thank you for Contributing!
2022-01-06 17:33:15 -05:00
iainDe
61f2be6c1e
Merge branch 'develop' into patch-1 2022-01-06 17:32:31 -05:00
iainDe
52bfcee6a8
Update SOFTWARE-LIST.md
Adding Vulnerability Status
2022-01-06 17:32:09 -05:00
Lcerkov
f9578cd49b
Merge pull request #428 from inl-ics/develop
Update SOFTWARE-LIST.md
2022-01-06 15:49:53 -05:00
Lcerkov
4432cb5524
Update SOFTWARE-LIST.md 2022-01-06 14:35:35 -05:00
inl-ics
337cfa956b
Update SOFTWARE-LIST.md
Added Daktronics, updated COPADATA, added Edwards
2022-01-06 09:31:38 -07:00
iainDe
ae7e10c05c
Merge pull request #426 from inl-ics/develop
Update SOFTWARE-LIST.md
2022-01-06 06:22:52 -05:00
inl-ics
b40ae37500
Update SOFTWARE-LIST.md
Added Digital Alert Systems, HMS Industrial networks, Janitza, Meinberg, MMM Group, National Instruments, Sierra Wireless, SISCO, SMA Solar tech, spacelabs Healthcare
2022-01-05 16:01:38 -07:00
CARR-Josh
b29e81b916
Update SOFTWARE-LIST.md
Including Carrier Global's product security advisory posted originally on December 20th.
2022-01-05 17:53:47 -05:00
iainDe
d749e991cd
Merge pull request #424 from inl-ics/develop
Update SOFTWARE-LIST.md
2022-01-05 13:42:33 -05:00
inl-ics
85fab066fd
Update SOFTWARE-LIST.md
Added Hitachi Energy products
2022-01-05 10:50:34 -07:00
iainDe
84fd85ba16
Merge pull request #423 from Hallewellgov/patch-1
Update SOFTWARE-LIST.md
2022-01-05 11:53:15 -05:00
iainDe
595991d8a7
Merge branch 'develop' into patch-1 2022-01-05 11:51:10 -05:00
iainDe
be53ab711b
Merge pull request #420 from dzomaya/dz_tl_branch
Adding details for Tripp Lite UPS/PDU/cooler network cards and associ…
2022-01-05 11:50:32 -05:00
iainDe
895183955a
Update SOFTWARE-LIST.md
Adjusted the White Space between pipes for formatting requirements.
2022-01-05 11:47:37 -05:00
Hallewellgov
130d1c0152
Update SOFTWARE-LIST.md
Per the Zscaler website, some of their products were affected and have been patched.
2022-01-05 11:33:50 -05:00
David Zomaya
9e51b441a0
Adding details for Tripp Lite UPS/PDU/cooler network cards and associated software based on offical KB article from tripplite.com 2022-01-04 13:55:38 -06:00
iainDe
c4e2910b95
Merge pull request #418 from john-talbert/patch-2
Updated HCL BigFix Compliance
2022-01-03 11:02:05 -05:00
brolly33
99af7f835a
Updated HCL BigFix Compliance
HCL BigFix compliance has been shifted to non vulnerable after KB update. Vulnerable library present (and removed in v2.0.5) but there are no code paths allowing exploitation.
See KB for more details   https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0095486
2022-01-03 09:15:15 -05:00
justmurphy
9b6bae1099
Merge pull request #417 from stevea1/develop
Update SOFTWARE-LIST.md to Add ThycoticCentrify Server Suite
2022-01-03 08:24:18 -05:00
stevea1
a9a9b823f4 Update SOFTWARE-LIST.md to Add ThycoticCentrify Server Suite
Added missing Server Suite to ThycoticCentrify list of products
2021-12-30 21:52:01 -05:00
justmurphy
b1b67d9ebb
Merge pull request #416 from stevea1/develop
Update SOFTWARE-LIST.md for Xerox
2021-12-30 21:31:48 -05:00
stevea1
d0898ec3f4 Update SOFTWARE-LIST.md for Xerox
Corrected name and broken link for Xerox security bulletin.
2021-12-30 21:23:26 -05:00
Nick
03f998cca7
Merge pull request #415 from cisagov/revert/undo_yaml_conversion
Revert the migration to a YAML format
2021-12-30 16:50:48 -05:00
Nicholas McDonnell
6e6ff55bbc
Revert the migration to a YAML format
Due to unexpected complications for user submissions we are reverting
the transition to a YAML format.
2021-12-30 16:31:50 -05:00
cisagovbot
d6728c61d1 Update the software list 2021-12-30 20:40:35 +00:00
justmurphy
fce8d64271
Merge pull request #413 from cisagov/upstream/update_log4j-md-yml_dependency
Update the version of cisagov/log4j-md-yml used
2021-12-30 15:39:32 -05:00
Nicholas McDonnell
438eb9df00
Update the version of cisagov/log4j-md-yml used
This updated version should fix some formatting issues in the generated
Markdown.
2021-12-30 15:35:54 -05:00
cisagovbot
4d36384a2b Update the software list 2021-12-30 19:52:59 +00:00
Nick
542781e1ac
Merge pull request #412 from cisagov/improvement/add-readme-template
Use a YAML file to store product information
2021-12-30 14:51:53 -05:00
Nick
ed101b9604
Use the long form of a switch for git
We prefer using the long form of switches for command line programs to
improve maintainability and to better convey what is happening even if
someone is unfamiliar with the switches for a given program.

Co-authored-by: dav3r <david.redmin@trio.dhs.gov>
2021-12-30 14:47:14 -05:00
Nicholas McDonnell
e6aa7c3662
Update cisagov YAML with the latest software list contents 2021-12-30 14:07:17 -05:00
Nicholas McDonnell
a6e7fbe46a
Merge branch 'develop' into improvement/add-readme-template 2021-12-30 14:06:15 -05:00