Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-139059

--stig-viewer option seems to generate a XML file that is not readable by STIG Viewer

Linking RHIVOS CVEs to...Migration: Automation ...SWIFT: POC ConversionSync from "Extern...XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done-Errata
    • Icon: Undefined Undefined
    • rhel-9.7.z
    • rhel-9.7
    • openscap
    • None
    • openscap-1.3.13-1.el9_7
    • No
    • Low
    • rhel-security-compliance
    • None
    • False
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • Requested
    • None
    • Unspecified
    • Unspecified
    • Unspecified
    • None

      What were you trying to do that didn't work?

      A customer reported that the scan result generated by oscap xccdf eval --stig-viewer <XML> ... command was not readable by STIG Viewer found on official site, a generic error "Could not parse STIG" was being returned.

      I can confirm the issue, with either customer's XML or my own one generated as shown below (attached):

      # oscap xccdf eval --profile cis --stig-viewer stigviewer.xml --rule xccdf_org.ssgproject.content_rule_file_permissions_var_log_audit /usr/share/xml/scap/ssg/content/ssg-rhel9-ds.xml
      

      The XML looks sane (I tested with XML Validator), so it's unclear if STIG Viewer expects a different format or is just not aligned with generated content.
      I tested on both 3.6.0 and 2.18 releases.

      What is the impact of this issue to you?

      Can't process XML

      Please provide the package NVR for which the bug is seen:

      openscap-scanner-1.3.12-1.el9_6

      How reproducible is this bug?

      Always, see above.

        1. stigviewer.xml
          48 kB
          Renaud Métrich

              jcerny@redhat.com Jan Cerny
              rhn-support-rmetrich Renaud Métrich
              Jan Cerny Jan Cerny
              SSG Security QE SSG Security QE
              Votes:
              0 Vote for this issue
              Watchers:
              6 Start watching this issue

                Created:
                Updated:
                Resolved: