add: Add support for CleanStart OS vulnerability data provider#1191
Open
cleanstart-community-admin wants to merge 1 commit into
Open
add: Add support for CleanStart OS vulnerability data provider#1191cleanstart-community-admin wants to merge 1 commit into
cleanstart-community-admin wants to merge 1 commit into
Conversation
Signed-off-by: cleanstart-community-admin <community-admin@cleanstart.com>
4 tasks
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Adds CleanStart OS as a vulnerability data provider in Vunnel, enabling Grype to ingest and match vulnerabilities from the CleanStart Security Advisories database. This is the data provider counterpart to the distro support added in anchore/grype#3281.
Motivation
Without this provider, Grype has no vulnerability data to match against when scanning CleanStart-based container images. This provider ingests advisories from the CleanStart Security Advisories repository and makes them available to the Grype database build pipeline.
Changes
src/vunnel/providers/cleanstart/that clones and ingests advisories fromgithub.com/cleanstart-dev/cleanstart-security-advisoriesCleanStartecosystem — no transformation required2025/,2026/) to collect all advisoriesgit pullon subsequent runstests/quality/config.yamlType of change
Checklist