Uploaded image for project: 'Security Data'
  1. Security Data
  2. SECDATA-1206

Missing module stream in rpmmod for CVE-2024-6923

XMLWordPrintable

    • Icon: Ticket Ticket
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • None
    • None
    • None
    • False
    • Hide

      None

      Show
      None
    • False
    • Very Likely
    • 0

      "rpmmod=python39" is specified, but if this is intended to refer to a modular package, shouldn’t it include the module stream? For example, similar to "python36:3.6", shouldn’t it be written as "rpmmod=python39:3.9" instead?

       

                          {
                              "category": "product_version",
                              "name": "python-sqlalchemy-doc::python36:3.6",
                              "product": {
                                  "name": "python-sqlalchemy-doc (python36:3.6)",
                                  "product_id": "python-sqlalchemy-doc::python36:3.6",
                                  "product_identification_helper": {
                                      "purl": "pkg:rpm/redhat/python-sqlalchemy-doc?rpmmod=python36:3.6"
                                  }
                              }
                          },
                          {
                              "category": "product_version",
                              "name": "python39/python39.src",
                              "product": {
                                  "name": "python39/python39.src",
                                  "product_id": "python39/python39.src",
                                  "product_identification_helper": {
                                      "purl": "pkg:rpm/redhat/python39?arch=src&rpmmod=python39"
                                  }
                              }
                          }, 

      https://security.access.redhat.com/data/csaf/v2/vex/2024/cve-2024-6923.json

              Unassigned Unassigned
              mainek00n Norihiro Nakaoka
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated: