Skip to main content

Changes in Update Released on 11-April-2024

This update includes the changes described in the following sections.

Issues/Bugs Addressed

The following issues were addressed in the Update:

Issue IDIssue Summary
SCA-52738Fixed False Positive vulnerability for openbsd-openssh component for CVE-2002-0639 for version '2.5.1'
SCA-52947, SCA-53074, SCA-52305Addition or update component, version, licenses and license mapping details for requested components. Details are mentioned in below sections

New/Update Component Requests

  • xcurveballx-tablesorter - 31937493
  • artifexsoftware-jbig2dec - 31937495
  • artifexsoftware-urw-base35-fonts - 31937496
  • azure-macro-utils-c - 31937497
  • stleary-json-java - 12684762
  • editd-jquery-menu-aim - 31686788
  • initscripts-ipv6 - 31935720
  • cstring-clone-using-standard-c - 31935721
  • wixtoolset-visualstudioextension - 31937494
  • Updated URL for rillke-libogg
  • Updated URL for jboss-logging-jboss-logging
  • Updated URL for stleary-json-java

New/Update component_version Requests

  • Apache Xerces Java XML Parser (component-id: 33071)
  • Added missing versions 2.12.0 and higher. versions id for 2.12.0 is 267185709.
  • ub-mannheim/tesseract (component-id: 14721072)
  • version- 4.1 (184251962)
  • jboss-logging/jboss-logging (component-id: 294410)
  • versions are up-to-date till 3.5.3, version-id for 3.4.3 is 267185974.

New/Update License Requests

New/Update License Mapping Requests

  • Updated public domain license to stleary-json-java(12684762)
  • Updated Apache-2.0 license to krzyzanowskim-openssl(12973107)
  • Updated MIT license to jQuery-menu-aim(31686788)
  • Updated MIT to azure-azure-uamqp-c(18246106)
  • Updated MIT to azure-azure-umqtt-c(17219194)
  • Updated MIT to azure-azure-c-shared-utility(17219172)

Collector Status

The following table lists Collector Status information.

NameDate of Last Successful Run
npm3/27/2024
crates8/25/2022
cpan4/4/2024
cocoapods4/09/2024
clojars4/4/2024
rubygems4/4/2024
maven-google4/5/2024
cran4/6/2024
hackage4/7/2024
packagist4/7/2024
go4/10/2024
pypi4/1/2024
nuget gallery4/10/2024
maven2-ibiblio3/21/2024
github4/9/2024
fedora-koji4/5/2024
alpine4/10/2024
gitlab6/6/2023
debian4/8/2024