Skip to content

VCIO-next: Migrate Redhat importers to new Advisory models #1954

@pombredanne

Description

@pombredanne

This require extensive refactoring to support advisories.

The goal is to move to use their CSAF inputs and make RHSA first-class citizen.

Getting these is made easier because at https://security.access.redhat.com/data/csaf/v2/advisories/ :

  • we can get an index
  • we can get all CSAF docs at once

Also:

We are not yet considering the likely redundant CSAF VEX, SPDX SBOM and OSV data tracked separately:

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

Status

Validated

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions