From cabc9241f01480c62565a2255e8019d38a3b905e Mon Sep 17 00:00:00 2001 From: Jonathan Amsterdam Date: Fri, 24 Mar 2023 16:40:49 -0400 Subject: [PATCH] data/excluded: batch add GO-2023-1674, GO-2023-1671, GO-2023-1670, GO-2023-1669, GO-2023-1668, GO-2023-1667, GO-2023-1662, GO-2023-1661, GO-2023-1660, GO-2023-1659, GO-2023-1658, GO-2023-1657, GO-2023-1656, GO-2023-1655, GO-2023-1654, GO-2023-1653, GO-2023-1673, GO-2023-1666, GO-2023-1665 Fixes golang/vulndb#1674 Fixes golang/vulndb#1671 Fixes golang/vulndb#1670 Fixes golang/vulndb#1669 Fixes golang/vulndb#1668 Fixes golang/vulndb#1667 Fixes golang/vulndb#1663 Fixes golang/vulndb#1662 Fixes golang/vulndb#1661 Fixes golang/vulndb#1660 Fixes golang/vulndb#1659 Fixes golang/vulndb#1658 Fixes golang/vulndb#1657 Fixes golang/vulndb#1656 Fixes golang/vulndb#1655 Fixes golang/vulndb#1654 Fixes golang/vulndb#1653 Fixes golang/vulndb#1673 Fixes golang/vulndb#1666 Fixes golang/vulndb#1665 Change-Id: Ia1abf8daf7761c7fd3f9427f20291b8802d46eed Reviewed-on: https://go-review.googlesource.com/c/vulndb/+/479297 Run-TryBot: Jonathan Amsterdam Reviewed-by: Tatiana Bradley TryBot-Result: Gopher Robot --- data/excluded/GO-2023-1653.yaml | 7 +++++++ data/excluded/GO-2023-1654.yaml | 7 +++++++ data/excluded/GO-2023-1655.yaml | 7 +++++++ data/excluded/GO-2023-1656.yaml | 7 +++++++ data/excluded/GO-2023-1657.yaml | 7 +++++++ data/excluded/GO-2023-1658.yaml | 7 +++++++ data/excluded/GO-2023-1659.yaml | 7 +++++++ data/excluded/GO-2023-1660.yaml | 7 +++++++ data/excluded/GO-2023-1661.yaml | 7 +++++++ data/excluded/GO-2023-1662.yaml | 7 +++++++ data/excluded/GO-2023-1665.yaml | 5 +++++ data/excluded/GO-2023-1666.yaml | 7 +++++++ data/excluded/GO-2023-1667.yaml | 5 +++++ data/excluded/GO-2023-1668.yaml | 5 +++++ data/excluded/GO-2023-1669.yaml | 5 +++++ data/excluded/GO-2023-1670.yaml | 7 +++++++ data/excluded/GO-2023-1671.yaml | 7 +++++++ data/excluded/GO-2023-1673.yaml | 5 +++++ data/excluded/GO-2023-1674.yaml | 7 +++++++ 19 files changed, 123 insertions(+) create mode 100644 data/excluded/GO-2023-1653.yaml create mode 100644 data/excluded/GO-2023-1654.yaml create mode 100644 data/excluded/GO-2023-1655.yaml create mode 100644 data/excluded/GO-2023-1656.yaml create mode 100644 data/excluded/GO-2023-1657.yaml create mode 100644 data/excluded/GO-2023-1658.yaml create mode 100644 data/excluded/GO-2023-1659.yaml create mode 100644 data/excluded/GO-2023-1660.yaml create mode 100644 data/excluded/GO-2023-1661.yaml create mode 100644 data/excluded/GO-2023-1662.yaml create mode 100644 data/excluded/GO-2023-1665.yaml create mode 100644 data/excluded/GO-2023-1666.yaml create mode 100644 data/excluded/GO-2023-1667.yaml create mode 100644 data/excluded/GO-2023-1668.yaml create mode 100644 data/excluded/GO-2023-1669.yaml create mode 100644 data/excluded/GO-2023-1670.yaml create mode 100644 data/excluded/GO-2023-1671.yaml create mode 100644 data/excluded/GO-2023-1673.yaml create mode 100644 data/excluded/GO-2023-1674.yaml diff --git a/data/excluded/GO-2023-1653.yaml b/data/excluded/GO-2023-1653.yaml new file mode 100644 index 00000000..7c15729e --- /dev/null +++ b/data/excluded/GO-2023-1653.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/cilium/cilium-cli +cves: + - CVE-2023-28114 +ghsas: + - GHSA-6f27-3p6c-p5jc diff --git a/data/excluded/GO-2023-1654.yaml b/data/excluded/GO-2023-1654.yaml new file mode 100644 index 00000000..19fb85d8 --- /dev/null +++ b/data/excluded/GO-2023-1654.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/answerdev/answer +cves: + - CVE-2023-1540 +ghsas: + - GHSA-6x5v-cxpp-pc5x diff --git a/data/excluded/GO-2023-1655.yaml b/data/excluded/GO-2023-1655.yaml new file mode 100644 index 00000000..d763e065 --- /dev/null +++ b/data/excluded/GO-2023-1655.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/answerdev/answer +cves: + - CVE-2023-1543 +ghsas: + - GHSA-79hx-g43v-xfmr diff --git a/data/excluded/GO-2023-1656.yaml b/data/excluded/GO-2023-1656.yaml new file mode 100644 index 00000000..f1b6bca1 --- /dev/null +++ b/data/excluded/GO-2023-1656.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/answerdev/answer +cves: + - CVE-2023-1535 +ghsas: + - GHSA-83qr-c7m9-wmgw diff --git a/data/excluded/GO-2023-1657.yaml b/data/excluded/GO-2023-1657.yaml new file mode 100644 index 00000000..2bfa7c51 --- /dev/null +++ b/data/excluded/GO-2023-1657.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/answerdev/answer +cves: + - CVE-2023-1539 +ghsas: + - GHSA-g44v-6qfm-f6ch diff --git a/data/excluded/GO-2023-1658.yaml b/data/excluded/GO-2023-1658.yaml new file mode 100644 index 00000000..84e42c8a --- /dev/null +++ b/data/excluded/GO-2023-1658.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/answerdev/answer +cves: + - CVE-2023-1541 +ghsas: + - GHSA-h2wg-83fc-xvm9 diff --git a/data/excluded/GO-2023-1659.yaml b/data/excluded/GO-2023-1659.yaml new file mode 100644 index 00000000..d78ffb12 --- /dev/null +++ b/data/excluded/GO-2023-1659.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/answerdev/answer +cves: + - CVE-2023-1537 +ghsas: + - GHSA-hwj7-frgj-7829 diff --git a/data/excluded/GO-2023-1660.yaml b/data/excluded/GO-2023-1660.yaml new file mode 100644 index 00000000..6296cf59 --- /dev/null +++ b/data/excluded/GO-2023-1660.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/answerdev/answer +cves: + - CVE-2023-1542 +ghsas: + - GHSA-r95w-7cpx-h5mx diff --git a/data/excluded/GO-2023-1661.yaml b/data/excluded/GO-2023-1661.yaml new file mode 100644 index 00000000..33935a3b --- /dev/null +++ b/data/excluded/GO-2023-1661.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/answerdev/answer +cves: + - CVE-2023-1538 +ghsas: + - GHSA-rvjp-8qj4-8p29 diff --git a/data/excluded/GO-2023-1662.yaml b/data/excluded/GO-2023-1662.yaml new file mode 100644 index 00000000..8b4fdd6f --- /dev/null +++ b/data/excluded/GO-2023-1662.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/answerdev/answer +cves: + - CVE-2023-1536 +ghsas: + - GHSA-xvfj-84vc-hrmf diff --git a/data/excluded/GO-2023-1665.yaml b/data/excluded/GO-2023-1665.yaml new file mode 100644 index 00000000..5f4e175e --- /dev/null +++ b/data/excluded/GO-2023-1665.yaml @@ -0,0 +1,5 @@ +excluded: NOT_IMPORTABLE +modules: + - module: github.com/gophish/gophish +cves: + - CVE-2022-45003 diff --git a/data/excluded/GO-2023-1666.yaml b/data/excluded/GO-2023-1666.yaml new file mode 100644 index 00000000..41b9f943 --- /dev/null +++ b/data/excluded/GO-2023-1666.yaml @@ -0,0 +1,7 @@ +excluded: NOT_IMPORTABLE +modules: + - module: github.com/gophish/gophish +cves: + - CVE-2022-45004 +ghsas: + - GHSA-55m9-hm92-xm8j diff --git a/data/excluded/GO-2023-1667.yaml b/data/excluded/GO-2023-1667.yaml new file mode 100644 index 00000000..54dd707c --- /dev/null +++ b/data/excluded/GO-2023-1667.yaml @@ -0,0 +1,5 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/minio/minio +cves: + - CVE-2023-28432 diff --git a/data/excluded/GO-2023-1668.yaml b/data/excluded/GO-2023-1668.yaml new file mode 100644 index 00000000..421fb105 --- /dev/null +++ b/data/excluded/GO-2023-1668.yaml @@ -0,0 +1,5 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/minio/minio +cves: + - CVE-2023-28433 diff --git a/data/excluded/GO-2023-1669.yaml b/data/excluded/GO-2023-1669.yaml new file mode 100644 index 00000000..341ca715 --- /dev/null +++ b/data/excluded/GO-2023-1669.yaml @@ -0,0 +1,5 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/minio/minio +cves: + - CVE-2023-28434 diff --git a/data/excluded/GO-2023-1670.yaml b/data/excluded/GO-2023-1670.yaml new file mode 100644 index 00000000..e17ca7d2 --- /dev/null +++ b/data/excluded/GO-2023-1670.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/argoproj/argo-cd/v2 +cves: + - CVE-2022-41354 +ghsas: + - GHSA-2q5c-qw9c-fmvq diff --git a/data/excluded/GO-2023-1671.yaml b/data/excluded/GO-2023-1671.yaml new file mode 100644 index 00000000..9cfc3051 --- /dev/null +++ b/data/excluded/GO-2023-1671.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: tailscale.com +cves: + - CVE-2023-28436 +ghsas: + - GHSA-vfgq-g5x8-g595 diff --git a/data/excluded/GO-2023-1673.yaml b/data/excluded/GO-2023-1673.yaml new file mode 100644 index 00000000..90a2adff --- /dev/null +++ b/data/excluded/GO-2023-1673.yaml @@ -0,0 +1,5 @@ +excluded: NOT_A_VULNERABILITY +modules: + - module: github.com/grafana/grafana +ghsas: + - GHSA-3cgw-hfw7-wc7j diff --git a/data/excluded/GO-2023-1674.yaml b/data/excluded/GO-2023-1674.yaml new file mode 100644 index 00000000..4b936c4b --- /dev/null +++ b/data/excluded/GO-2023-1674.yaml @@ -0,0 +1,7 @@ +excluded: EFFECTIVELY_PRIVATE +modules: + - module: github.com/grafana/grafana +cves: + - CVE-2023-1410 +ghsas: + - GHSA-qrrg-gw7w-vp76