pkgsrc-Users archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: acknowledging package audit results



On Fri, May 25, 2012 at 03:14:54PM +1000, Malcolm Herbert wrote:
> Is there an established method for acknowledging and suppressing
> warnings about a particular vulnerability as output by the package audit
> tool?

Yes. "man pkg_install.conf" says:
     IGNORE_URL
             One line per advisory which should be ignored when running
                   pkg_admin audit
             The URL from the pkg-vulnerabilities file should be used as
             value.

 Thomas


Home | Main Index | Thread Index | Old Index