[openssl/web] 5ad983: Create a XML to JSON5 converter, not complete

Mark J. Cox noreply at github.com
Mon Nov 7 14:25:21 UTC 2022


  Branch: refs/heads/json5
  Home:   https://github.com/openssl/web
  Commit: 5ad983ef763d6eee3471acaf31e33108837c5aab
      https://github.com/openssl/web/commit/5ad983ef763d6eee3471acaf31e33108837c5aab
  Author: Mark J. Cox <mark at awe.com>
  Date:   2022-11-04 (Fri, 04 Nov 2022)

  Changed paths:
    A bin/vulnxml2json5.py
    M bin/vulnxml2jsonproject.py

  Log Message:
  -----------
  Create a XML to JSON5 converter, not complete


  Commit: 840a4c6ff822442945cf90378b0c4480543310db
      https://github.com/openssl/web/commit/840a4c6ff822442945cf90378b0c4480543310db
  Author: Mark J. Cox <mark at awe.com>
  Date:   2022-11-04 (Fri, 04 Nov 2022)

  Changed paths:
    M bin/vulnxml2jsonproject.py

  Log Message:
  -----------
  Add function to return the earliest affected version


  Commit: 4f5bf957af3d7579d066c56c7e3f7baaa9766f07
      https://github.com/openssl/web/commit/4f5bf957af3d7579d066c56c7e3f7baaa9766f07
  Author: Mark J. Cox <mark at awe.com>
  Date:   2022-11-04 (Fri, 04 Nov 2022)

  Changed paths:
    M bin/vulnxml2json5.py

  Log Message:
  -----------
  Dates should have a timezone, don't include a problemtype if none
exists, other fixes so that everything now validates.


  Commit: 6335eba42e6fd225ed2a4f4c2b00da8d7a3cc212
      https://github.com/openssl/web/commit/6335eba42e6fd225ed2a4f4c2b00da8d7a3cc212
  Author: Mark J. Cox <mark at awe.com>
  Date:   2022-11-04 (Fri, 04 Nov 2022)

  Changed paths:
    M bin/vulnxml2json5.py

  Log Message:
  -----------
  Add a creator that doesn't conflict with vulnogram showing the date and
time the file was imported (should only happen once).

Impact is required, so add a unknown one


  Commit: 600397b1a7ebbd99d7cc3ec3d63ab456bcf1d20a
      https://github.com/openssl/web/commit/600397b1a7ebbd99d7cc3ec3d63ab456bcf1d20a
  Author: Mark J. Cox <mark at awe.com>
  Date:   2022-11-04 (Fri, 04 Nov 2022)

  Changed paths:
    M bin/vulnxml2json5.py

  Log Message:
  -----------
  Less debug
Don't append the fixed versions to the description, CVE project
shouldn't need this any more


  Commit: a6260ca4707ea78f5303f5051679ab87e7e3edc2
      https://github.com/openssl/web/commit/a6260ca4707ea78f5303f5051679ab87e7e3edc2
  Author: Mark J. Cox <mark at awe.com>
  Date:   2022-11-04 (Fri, 04 Nov 2022)

  Changed paths:
    A bin/cvejsontohtml.py
    M bin/vulnxml2json.py
    M bin/vulnxml2json5.py

  Log Message:
  -----------
  Doesn't do 'also in...' or the wierd issues


  Commit: 5f114df6c8c946abef29e0ef98af7e1da880491e
      https://github.com/openssl/web/commit/5f114df6c8c946abef29e0ef98af7e1da880491e
  Author: Mark J. Cox <mark at awe.com>
  Date:   2022-11-04 (Fri, 04 Nov 2022)

  Changed paths:
    M bin/cvejsontohtml.py

  Log Message:
  -----------
  Update to match the current file


  Commit: 4229c32f0835f262c8de86a5aa34b9874a7e6163
      https://github.com/openssl/web/commit/4229c32f0835f262c8de86a5aa34b9874a7e6163
  Author: Mark J. Cox <mark at awe.com>
  Date:   2022-11-04 (Fri, 04 Nov 2022)

  Changed paths:
    M bin/cvejsontohtml.py

  Log Message:
  -----------
  A few CVE don't have titles or advisories, so make sure we can handle
that.  The output HTML now matches the current site, apart from

1. fips
2. the out of support statements
3. the not-an-issue statements


  Commit: cc6088b0709556e5aff8bae9f7e611afa4efa708
      https://github.com/openssl/web/commit/cc6088b0709556e5aff8bae9f7e611afa4efa708
  Author: Mark J. Cox <mark at awe.com>
  Date:   2022-11-04 (Fri, 04 Nov 2022)

  Changed paths:
    M bin/cvejsontohtml.py

  Log Message:
  -----------
  Add statements


  Commit: b438b80b006435eed755dc6a5afda03cb3d90738
      https://github.com/openssl/web/commit/b438b80b006435eed755dc6a5afda03cb3d90738
  Author: Mark J. Cox <mark at awe.com>
  Date:   2022-11-04 (Fri, 04 Nov 2022)

  Changed paths:
    M bin/cvejsontohtml.py

  Log Message:
  -----------
  Deal with disputed cves


  Commit: 058c93cd8ff9a1e98fa1a58a3c94eb9237ced3fd
      https://github.com/openssl/web/commit/058c93cd8ff9a1e98fa1a58a3c94eb9237ced3fd
  Author: Mark J. Cox <mark at awe.com>
  Date:   2022-11-04 (Fri, 04 Nov 2022)

  Changed paths:
    M bin/cvejsontohtml.py
    M bin/vulnxml2json5.py

  Log Message:
  -----------
  Update credit handling


  Commit: bb07d5f8029a76260ef8cf88424f458c1dbfab99
      https://github.com/openssl/web/commit/bb07d5f8029a76260ef8cf88424f458c1dbfab99
  Author: Mark J. Cox <mark at awe.com>
  Date:   2022-11-04 (Fri, 04 Nov 2022)

  Changed paths:
    M bin/cvejsontohtml.py

  Log Message:
  -----------
  Option -e is no longer used, data comes from a statements.json file


  Commit: a14324f29f2c7540b145b8063306786e644c8f9f
      https://github.com/openssl/web/commit/a14324f29f2c7540b145b8063306786e644c8f9f
  Author: Mark J. Cox <mark at awe.com>
  Date:   2022-11-05 (Sat, 05 Nov 2022)

  Changed paths:
    M Makefile

  Log Message:
  -----------
  Let's have the json files appear on the site (like we did for
vulnerabilities.xml)


  Commit: b8d308f557b0dbb6081936488f030d89b7afaf49
      https://github.com/openssl/web/commit/b8d308f557b0dbb6081936488f030d89b7afaf49
  Author: Richard Levitte <levitte at openssl.org>
  Date:   2022-11-07 (Mon, 07 Nov 2022)

  Changed paths:
    M policies/platformpolicy.md

  Log Message:
  -----------
  Move VMS on IA64 and X86_64 from community to secondary

It is supported by a team member (Richard Levitte), [VSI] provides
hosts which Richard has access to running those VMS versions, and they
are plugged into our [buildbot CI].

[VSI]: https://vmssoftware.com/
[buildbot CI]: https://ci.buildbot.openssl.org/

Reviewed-by: Matt Caswell <matt at openssl.org>
(Merged from https://github.com/openssl/web/pull/363)


  Commit: 3e91522b324ae78f6193bf540b8ea6d32d1c3248
      https://github.com/openssl/web/commit/3e91522b324ae78f6193bf540b8ea6d32d1c3248
  Author: Martin Koci <mkoci at openssl.org>
  Date:   2022-11-07 (Mon, 07 Nov 2022)

  Changed paths:
    M roadmap.md

  Log Message:
  -----------
  udpated roadmap file

Reviewed-by: Matt Caswell <matt at openssl.org>
Reviewed-by: Richard Levitte <levitte at openssl.org>
(Merged from https://github.com/openssl/web/pull/367)


  Commit: dccd49f0dd09f2fbf94458594da6ef8dc7175db2
      https://github.com/openssl/web/commit/dccd49f0dd09f2fbf94458594da6ef8dc7175db2
  Author: Richard Levitte <levitte at openssl.org>
  Date:   2022-11-07 (Mon, 07 Nov 2022)

  Changed paths:
    M policies/general/dirdata.yaml
    R policies/platformpolicy.md

  Log Message:
  -----------
  Drop the old platform policy file, as it is now in general-policies

Reviewed-by: Matt Caswell <matt at openssl.org>
Reviewed-by: Paul Dale <pauli at openssl.org>
Reviewed-by: Tim Hudson <tjh at openssl.org>
(Merged from https://github.com/openssl/web/pull/365)


  Commit: 97a1743f73a50561dd81b8ee75fc2306154290cd
      https://github.com/openssl/web/commit/97a1743f73a50561dd81b8ee75fc2306154290cd
  Author: Richard Levitte <levitte at openssl.org>
  Date:   2022-11-07 (Mon, 07 Nov 2022)

  Changed paths:
    M Makefile

  Log Message:
  -----------
  We have policy-supplementals, let's render them

Reviewed-by: Paul Dale <pauli at openssl.org>
(Merged from https://github.com/openssl/web/pull/368)


  Commit: 6d7fdd4309f0dd3689a725de7f709e21496ee5a7
      https://github.com/openssl/web/commit/6d7fdd4309f0dd3689a725de7f709e21496ee5a7
  Author: Richard Levitte <levitte at openssl.org>
  Date:   2022-11-07 (Mon, 07 Nov 2022)

  Changed paths:
    M Makefile

  Log Message:
  -----------
  Make better rendering of general policy-supplementals

The quick method in the previous commit was incorrect.  We change it to
align with how other policy files are rendered.

Reviewed-by: Matt Caswell <matt at openssl.org>
Reviewed-by: Tomas Mraz <tomas at openssl.org>
(Merged from https://github.com/openssl/web/pull/369)


  Commit: 0579861ed6bc3fa90531fbba1748ce298603a1ef
      https://github.com/openssl/web/commit/0579861ed6bc3fa90531fbba1748ce298603a1ef
  Author: Richard Levitte <levitte at openssl.org>
  Date:   2022-11-07 (Mon, 07 Nov 2022)

  Changed paths:
    M support/acks.md

  Log Message:
  -----------
  support/acks.md: Remove "current" link

Originally (when this file was still raw HTML), this was an ID
(<h3 id="current">Sponsorship Donations</h3>).  Turning it into a link
was a clear typo.

As far as I can tell, nothing linked to acks.html#current, so we can
as well drop it entirely.

Fixes #371

Reviewed-by: Paul Dale <pauli at openssl.org>
(Merged from https://github.com/openssl/web/pull/372)


  Commit: 47bcf69f8155a5158500a35d7a5a9ae32b3b67a8
      https://github.com/openssl/web/commit/47bcf69f8155a5158500a35d7a5a9ae32b3b67a8
  Author: Richard Levitte <levitte at openssl.org>
  Date:   2022-11-07 (Mon, 07 Nov 2022)

  Changed paths:
    M Makefile

  Log Message:
  -----------
  Add data for OpenSSL 3.1

Reviewed-by: Matt Caswell <matt at openssl.org>
Reviewed-by: Hugo Landau <hlandau at openssl.org>
(Merged from https://github.com/openssl/web/pull/373)


  Commit: edd96199f47589ef2e74681f273d56df515287d6
      https://github.com/openssl/web/commit/edd96199f47589ef2e74681f273d56df515287d6
  Author: Martin Koci <mkoci at openssl.org>
  Date:   2022-11-07 (Mon, 07 Nov 2022)

  Changed paths:
    M support/acks.md

  Log Message:
  -----------
  Added Microsoft among silver sponsors

Reviewed-by: Paul Dale <pauli at openssl.org>
Reviewed-by: Richard Levitte <levitte at openssl.org>
Reviewed-by: Matt Caswell <matt at openssl.org>
(Merged from https://github.com/openssl/web/pull/374)


  Commit: 373c5871924f138c870afefa841156e179ba7418
      https://github.com/openssl/web/commit/373c5871924f138c870afefa841156e179ba7418
  Author: Mark J. Cox <mark at awe.com>
  Date:   2022-11-07 (Mon, 07 Nov 2022)

  Changed paths:
    M Makefile

  Log Message:
  -----------
  Base the vulnerability pages from the JSON files instead of the old XML
file


Compare: https://github.com/openssl/web/compare/5ad983ef763d%5E...373c5871924f


More information about the openssl-commits mailing list