Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Editorial for Editor revision 2025-01-29 #862

Open
wants to merge 13 commits into
base: editor-revision-2025-01-29
Choose a base branch
from

Conversation

tschmidtb51
Copy link
Contributor

  • fixes Editorial #841
  • correct vers example by removing invalid space
  • update link to vers
  • update count of conformance targets
  • fix refs in date and time (wrong brackets)
  • fix format mistake
  • add section 5 to be of relevance for conformance
  • sort guidance on size
  • remove obsolete scores from guidance on size
  • update OpenSSL digest list
  • update reference to ISO 8601
  • update SBOM format references
  • rephrase test 6.1.11 and 6.3.4 to clarify the test according to the change to multiple CWEs
  • add conversion rule
  • correct JSON path by adding missing product_identification_helper part

- addresses parts of oasis-tcs#841
- correct vers example by removing invalid space
- addresses parts of oasis-tcs#841
- update link to vers
- addresses parts of oasis-tcs#841
- update count of conformance targets
- addresses parts of oasis-tcs#841
- fix refs in date and time (wrong brackets)
- addresses parts of oasis-tcs#841
- fix format mistake
- add section 5 to be of relevance for conformance
- addresses parts of oasis-tcs#841
- sort guidance on size
- remove obsolete scores from guidance on size
- addresses parts of oasis-tcs#841
- update OpenSSL digest list
- addresses parts of oasis-tcs#841
- update reference to ISO 8601
- addresses parts of oasis-tcs#841
- update SBOM format references
- addresses parts of oasis-tcs#530, oasis-tcs#841
- rephrase test 6.1.11 and 6.3.4 to clarify the test according to the change to multiple CWEs
- addresses parts of oasis-tcs#774, oasis-tcs#841
- add conversion rule
- correct JSON path by adding missing `product_identification_helper` part
@tschmidtb51 tschmidtb51 added editorial mostly nits and consistency csaf 2.1 csaf 2.1 work labels Jan 31, 2025
@tschmidtb51 tschmidtb51 requested a review from sthagen January 31, 2025 15:23
@tschmidtb51 tschmidtb51 self-assigned this Jan 31, 2025
- addresses parts of oasis-tcs#841
- update missing dates
- update CVE link
- addresses parts of oasis-tcs#841, oasis-tcs#817, oasis-tcs#629
- clearly state that additional conventions have to be respected by the consumer
@@ -16,7 +16,7 @@ CSAF-v2.0
: _Common Security Advisory Framework Version 2.0_. Edited by Langley Rock, Stefan Hagen, and Thomas Schmidt. 18 November 2022. OASIS Standard. https://docs.oasis-open.org/csaf/csaf/v2.0/os/csaf-v2.0-os.html. Latest stage: https://docs.oasis-open.org/csaf/csaf/v2.0/csaf-v2.0.html.

CVE
: _Common Vulnerability and Exposures (CVE) – The Standard for Information Security Vulnerability Names_, MITRE, 1999, https://cve.mitre.org/about/.
: _Common Vulnerability and Exposures (CVE) – The Standard for Information Security Vulnerability Names_, MITRE, 1999, https://www.cve.org/About/Overview.
Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@sthagen The title changed - should we change that as well? Or use a different site?

Copy link
Contributor

@sthagen sthagen left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
csaf 2.1 csaf 2.1 work editorial mostly nits and consistency
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants