Skip to content

[proj. name] - Evaluate CVE-Bin-Tool for C/C++ repos #192

Open
@rozhukov

Description

Need to evaluate https://github.com/intel/cve-bin-tool as a Software Composition Analysis (SCA) scanner for C/C++ repos (even if no binaries are released) to:

  • Understand dependencies (SBOM)
  • Figure out CVEs
  • This is needed because Dependabot currently doesn't identify C/C++ dependencies.

Metadata

Assignees

No one assigned

    Labels

    securitySecurity improvement task (don't use for security bug report!)

    Type

    No type

    Projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions