fleet/changes
Juan Fernandez ef73039559
Improve vulnerability detection for Ubuntu (#6102)
Feature: Improve our capability to detect vulnerable software on Ubuntu hosts

To improve the capability of detecting vulnerable software on Ubuntu, we are now using OVAL definitions to detect vulnerable software on Ubuntu hosts. If data sync is enabled (disable_data_sync=false) OVAL definitions are automatically kept up to date (they are 'refreshed' once per day) - there's also the option to manually download the OVAL definitions using the 'fleetctl vulnerability-data-stream' command. Downloaded definitions are then parsed into an intermediary format and then used to identify vulnerable software on Ubuntu hosts. Finally, any 'recent' detected vulnerabilities are sent to any third-party integrations.
2022-06-07 21:09:47 -04:00
..
.keep Issue 1009 calculate diff software (#1305) 2021-07-08 13:57:43 -03:00
feature-5307-create-an-oval-file-parser Improve vulnerability detection for Ubuntu (#6102) 2022-06-07 21:09:47 -04:00
feature-5648-update-software_cve-shema Improve vulnerability detection for Ubuntu (#6102) 2022-06-07 21:09:47 -04:00
feature-5796-oval-third-party-integration Improve vulnerability detection for Ubuntu (#6102) 2022-06-07 21:09:47 -04:00
issue-4733-improve-fleet-desktop-my-device-url Improve Fleet Desktop "My Device" menu item UX at install time (#5915) 2022-05-31 12:56:51 -03:00
issue-5291-support-failing-policies-automation Support failing policies integrations (#5973) 2022-06-06 10:41:51 -04:00
issue-5380-software-ui-epss Add probability of exploit (EPSS score) to Software page in Fleet Premium (#5925) 2022-06-02 17:32:13 -05:00
issue-5405-api-token-modal Update API token modal to include more information (#5994) 2022-06-02 18:03:03 -05:00
issue-5514-orphan-software Don't return orphaned software from the API (#5840) 2022-05-30 09:23:27 -06:00
issue-5585-cve-data-sync Sync CVE scores periodically (#5838) 2022-06-01 10:06:57 -06:00
issue-5685-device-policies-endpoint add premium, device authed endpoint to retrieve policies (#5967) 2022-05-31 14:54:43 -03:00
issue-5685-policies-in-premium-only only include policies in device endpoints for premium users (#6077) 2022-06-07 13:27:13 -03:00
issue-5734-fix-orbit-shell-root Add automation for orbit shell (with TUF) (#5856) 2022-06-01 13:54:16 -03:00
issue-5776-fix-orphaned-policies ensure previous host membership policies are deleted on enrollment (#5890) 2022-05-30 10:30:15 -03:00
issue-5836-fix-device-redirect Fix device page redirect on expired token (#5976) 2022-06-02 17:56:26 -05:00
issue-6065-support-custom-headers-for-fleetctl Add support for custom headers in fleetctl (#6118) 2022-06-07 16:00:09 -04:00