Skip to content

Commit

Permalink
Remediation categories
Browse files Browse the repository at this point in the history
- addresses parts of oasis-tcs#541, oasis-tcs#662, oasis-tcs#563
- clarify that reference of products can be direct or indirect
  • Loading branch information
tschmidtb51 committed Oct 25, 2024
1 parent 60137b8 commit 6e78e52
Showing 1 changed file with 1 addition and 0 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -679,6 +679,7 @@ The values `no_fix_planned`, `optional_patch` and `vendor_fix` are mutually excl

Some category values contradict each other and thus are mutually exclusive per product.
Therefore, such a combination MUST NOT be used in the list of remediations for the same product.
This is independent from whether the product is referenced directly or indirectly through a product group.
The following tables shows the allowed and prohibited combinations:

| category value | `workaround` | `mitigation` | `vendor_fix` | `optional_patch` | `none_available` | `fix_planned` | `no_fix_planned` |
Expand Down

0 comments on commit 6e78e52

Please sign in to comment.