Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Triage CVEs using automatic suggestions #5

Closed
1 of 2 tasks
RaitoBezarius opened this issue Nov 5, 2023 · 1 comment
Closed
1 of 2 tasks

Triage CVEs using automatic suggestions #5

RaitoBezarius opened this issue Nov 5, 2023 · 1 comment
Assignees

Comments

@RaitoBezarius
Copy link
Collaborator

RaitoBezarius commented Nov 5, 2023

As a security team member, I may have a lot of untriaged CVEs, but a lot of them are noise.
I would like to focus on anything that could be related to Nixpkgs. For this, I need automatic suggestions based on weighted correlation analysis between CVEs and Nixpkgs metadata.

This is a record linkage problem: https://en.wikipedia.org/wiki/Record_linkage.

@fricklerhandwerk fricklerhandwerk changed the title Triaging CVEs into Nix security issues Triaging CVEs using automatic suggestions Sep 26, 2024
@fricklerhandwerk fricklerhandwerk changed the title Triaging CVEs using automatic suggestions Triage CVEs using automatic suggestions Sep 26, 2024
@fricklerhandwerk
Copy link
Collaborator

fricklerhandwerk commented Sep 27, 2024

Closing this -- what now amounts to a -- tracking issue in favor of milestones that chunk up the completion of the workflows.

@fricklerhandwerk fricklerhandwerk closed this as not planned Won't fix, can't repro, duplicate, stale Sep 27, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
Status: Done
Development

No branches or pull requests

3 participants