Skip to content
This repository was archived by the owner on Jan 7, 2026. It is now read-only.

Commit f486045

Browse files
Adding fixed events for slsa-verifier (#27761)
* Adding Fixed Advisory CGA-48w3-8gcp-8fqr for slsa-verifier * Adding Fixed Advisory CGA-w62j-qmrg-956p for slsa-verifier --------- Co-authored-by: octo-sts[bot] <157150467+octo-sts@users.noreply.github.com>
1 parent f2fb3fa commit f486045

1 file changed

Lines changed: 8 additions & 0 deletions

File tree

slsa-verifier.advisories.yaml

Lines changed: 8 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -204,6 +204,10 @@ advisories:
204204
type: true-positive-determination
205205
data:
206206
note: 'Govulncheck found vulnerable symbols in Go binaries at the following locations: in slsa-verifier-2.7.1-r4.apk, at usr/bin/slsa-verifier, usr/bin/slsa-verifier.'
207+
- timestamp: 2025-12-08T13:14:04Z
208+
type: fixed
209+
data:
210+
fixed-version: 2.7.1-r5
207211

208212
- id: CGA-4v6h-4h5f-jqr4
209213
aliases:
@@ -1061,6 +1065,10 @@ advisories:
10611065
componentType: go-module
10621066
componentLocation: /usr/bin/slsa-verifier
10631067
scanner: grype
1068+
- timestamp: 2025-12-08T13:14:05Z
1069+
type: fixed
1070+
data:
1071+
fixed-version: 2.7.1-r5
10641072

10651073
- id: CGA-w6wq-mmwj-h9w6
10661074
aliases:

0 commit comments

Comments
 (0)