Skip to content

[FP]: CVE-2018-1273 is reported for ignite-spring:1.x which is different from ignite:1.x #8659

Description

@vanrenter

Package URl

pkg:maven/org.apache.ignite/ignite-spring-data-commons@1.1.0

CPE

pe:2.3:a:apache:ignite:1.1.0:::::::*

CVE

CVE-2018-1273

ODC Integration

{"label" => "Maven Plugin"}

ODC Version

12.2.2

Description

CVE-2018-1273 reported ignite-spring*:1.x which is different from ignite:1.x for : file name: ignite-spring-data-commons-1.1.0.jar

  <suppress>
    <notes><![CDATA[
      false positive : CVE-2018-1273 reported ignite-spring*:1.x =/= ignite:1.x for : file name: ignite-spring-data-commons-1.1.0.jar
    ]]></notes>
    <packageUrl regex="true">^pkg:maven/org\.apache\.ignite/ignite-spring-data-commons@.*$</packageUrl>
    <cve>CVE-2018-1273</cve>
  </suppress>

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Fields

    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions