vexctl
https://github.com/openvex/vexctl
vexctl is a CLI tool to create, apply, and attest VEX (Vulnerability Exploitability eXchange) data. Its purpose is to help with the creation and management of VEX documents that allow "turning off" security scanner alerts of vulnerabilities known not to affect a product.
VEX can be thought of as a "negative security advisory". Using VEX, software authors can communicate to their users that an otherwise vulnerable component has no security implications for their product.
- Devel package for openSUSE:Factory
- Download package
-
Checkout Package
osc -A https://api.opensuse.org checkout devel:languages:go/vexctl && cd $_
- Create Badge
Refresh
Refresh
Source Files
Filename | Size | Changed |
---|---|---|
_service | 0000000667 667 Bytes | |
_servicedata | 0000000235 235 Bytes | |
vendor.tar.gz | 0011870657 11.3 MB | |
vexctl-0.3.0.tar.gz | 0000226241 221 KB | |
vexctl.changes | 0000013467 13.2 KB | |
vexctl.spec | 0000001861 1.82 KB |
Latest Revision
Ana Guerrero (anag+factory)
accepted
request 1225194
from
Jeff Kowalczyk (jfkw)
(revision 2)
initialized devel package after accepting 1225194
Comments 0