Uploaded image for project: 'Project Quay'
  1. Project Quay
  2. PROJQUAY-5491

Use latest_vuln view to query vulnerabilities

XMLWordPrintable

    • Icon: Task Task
    • Resolution: Done
    • Icon: Normal Normal
    • clair-4.7.0
    • None
    • clair

      There is a view that will allow clair to only look at the most recent update_operation's vulnerabilities (per updater) however currently it is not used. Not using the view leads to issues where vulnerabilities associate with older update_operations are still considered leading to incorrect results.

      Eg.

      • An updater is configure and deployed
      • An issue is identified with the updater where it is saving erroneous vulnerabilities
      • The Clair team changes the updater and that change is deployed
      • The erroneous vulnerabilities are still available at matcher query time

      If we were using the aforementioned view the vulnerabilities associated with the older updater_operation would be ignored and eventually cleaned up by the GC (as is desired).

       

              jcroslan@redhat.com Joseph Crosland
              jcroslan@redhat.com Joseph Crosland
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: