Skip to main content

Changes in Update Released on 01-March-2024

This update includes the changes described in the following sections.

Issues/Bugs Addressed

The following issues were addressed in the Update:

Issue IDIssue Summary
SCA-52077Fixed False Negative Vulnerability for PostGres SQL driver
SCA-51813, SCA-51823, SCA-51828Updated license detection and license evidence mechanism for licenses like CDDL , Public Domain, BSD, GPL-2.0
SCA-51814Updated component detection mechanism for libtommath component
SCA-51907Added/Updated components, versions and license mappings for components like Json in Java, async etc
SCA-52018Fixed license mappings for component "justmock" from Nuget forge

Enhanced License Detection Capability for Components

License detection capability and license evidence mechanism for the following components was updated/added:

  • CDDL-1.0

  • CDDL-1.1

  • GPL-2.0

  • BSD-Style

  • Public Domain

New/Update Component Requests

  • libtommath

  • async

  • Json in Java

New/Update License Requests

Collector Status

The following table lists Collector Status information.

NameDate of Last Successful Run
npm2/26/2024
crates8/25/2022
cpan2/22/2024
clojars2/22/2024
rubygems2/22/2024
maven-google2/23/2024
cran2/24/2024
hackage2/25/2024
packagist2/25/2024
go2/26/2024
pypi2/26/2024
nuget gallery2/22/2024
maven2-ibiblio2/14/2024
github2/27/2024
fedora-koji2/23/2024
alpine2/28/2024
gitlab6/6/2023
debian2/26/2024