@@ -16,7 +16,7 @@ CVE Binary Tool uses the NVD API but is not endorsed or certified by the NVD.
16
16
17
17
The tool has two main modes of operation:
18
18
19
- 1 . A binary scanner which helps you determine which packages may have been included as part of a piece of software. There are <!-- NUMBER OF CHECKERS START--> 360 <!-- NUMBER OF CHECKERS END--> checkers. Our initial focus was on common, vulnerable open source components such as openssl, libpng, libxml2 and expat.
19
+ 1 . A binary scanner which helps you determine which packages may have been included as part of a piece of software. There are <!-- NUMBER OF CHECKERS START--> 364 <!-- NUMBER OF CHECKERS END--> checkers. Our initial focus was on common, vulnerable open source components such as openssl, libpng, libxml2 and expat.
20
20
21
21
2 . Tools for scanning known component lists in various formats, including .csv, several linux distribution package lists, language specific package scanners and several Software Bill of Materials (SBOM) formats.
22
22
@@ -226,7 +226,7 @@ The following checkers are available for finding components in binary files:
226
226
227
227
<!-- CHECKERS TABLE BEGIN-->
228
228
| | | | Available checkers | | | |
229
- | --------------- | --------------- | ------------------ | ------------- | ---------------- | ------------ | ---- ------------- |
229
+ | --------------- | -------------- | ------------------ | ----------------- | ---------------- | --------------- | ------------- |
230
230
| accountsservice | acpid | apache_http_server | apcupsd | apparmor | asn1c | assimp |
231
231
| asterisk | atftp | avahi | axel | bash | bind | binutils |
232
232
| bird | bison | bluez | boinc | botan | bro | bubblewrap |
@@ -239,46 +239,46 @@ The following checkers are available for finding components in binary files:
239
239
| enscript | exfatprogs | exim | exiv2 | f2fs_tools | faad2 | fastd |
240
240
| ffmpeg | file | firefox | flac | fluidsynth | freeradius | freerdp |
241
241
| fribidi | frr | gawk | gcc | gdal | gdb | gdk_pixbuf |
242
- | gimp | git | glib | glibc | gmp | gnomeshell | gnupg |
243
- | gnutls | go | gpgme | gpsd | graphicsmagick | grep | grub2 |
244
- | gstreamer | gupnp | gvfs | gzip | haproxy | harfbuzz | haserl |
245
- | hdf5 | heimdal | hostapd | hunspell | hwloc | i2pd | icecast |
246
- | icu | iperf3 | ipmitool | ipsec_tools | iptables | irssi | iucode_tool |
247
- | iwd | jack2 | jacksondatabind | janus | jhead | jq | json_c |
248
- | kbd | keepalived | kerberos | kexectools | kodi | kubernetes | ldns |
249
- | lftp | libarchive | libass | libbpg | libcoap | libconfuse | libcurl |
250
- | libdb | libde265 | libebml | libevent | libexpat | libgcrypt | libgd |
251
- | libgit2 | libheif | libical | libidn2 | libinput | libjpeg | libjpeg_turbo |
252
- | libksba | liblas | libmatroska | libmemcached | libmicrohttpd | libmodbus | libnss |
253
- | libpcap | libraw | librsvg | librsync | libsamplerate | libseccomp | libsndfile |
254
- | libsolv | libsoup | libsrtp | libssh | libssh2 | libtasn1 | libtiff |
255
- | libtomcrypt | libupnp | libuv | libvips | libvirt | libvncserver | libvorbis |
256
- | libvpx | libxslt | lighttpd | linux_kernel | lldpd | logrotate | lrzip |
257
- | lua | luajit | lxc | lynx | lz4 | mailx | mariadb |
258
- | mbedtls | mdadm | memcached | micropython | minetest | mini_httpd | minicom |
259
- | minidlna | miniupnpc | miniupnpd | moby | modsecurity | monit | mosquitto |
260
- | motion | mpg123 | mpv | msmtp | mtr | mupdf | mutt |
261
- | mysql | nano | nasm | nbd | ncurses | neon | nessus |
262
- | netatalk | netdata | netkit_ftp | netpbm | nettle | nghttp2 | nginx |
263
- | ngircd | nmap | node | ntfs_3g | ntp | ntpsec | open_iscsi |
264
- | open_vm_tools | openafs | opencv | openjpeg | openldap | opensc | openssh |
265
- | openssl | openswan | openvpn | p7zip | pango | patch | pcre |
266
- | pcre2 | pcsc_lite | perl | php | picocom | pigz | pixman |
267
- | png | polarssl_fedora | poppler | postgresql | ppp | privoxy | procps_ng |
268
- | proftpd | protobuf_c | pspp | pure_ftpd | putty | python | qemu |
269
- | qpdf | qt | quagga | radare2 | radvd | raptor | rauc |
270
- | rdesktop | readline | rpm | rsync | rsyslog | rtl_433 | rtmpdump |
271
- | runc | rust | samba | sane_backends | sdl | seahorse | shadowsocks_libev |
272
- | snapd | sngrep | snort | socat | sofia_sip | speex | spice |
273
- | sqlite | squashfs | squid | sslh | stellarium | strongswan | stunnel |
274
- | subversion | sudo | suricata | sylpheed | syslogng | sysstat | systemd |
275
- | tar | tcpdump | tcpreplay | terminology | tesseract | thrift | thttpd |
276
- | thunderbird | timescaledb | tinyproxy | tor | tpm2_tss | traceroute | transmission |
277
- | trousers | ttyd | twonky_server | u_boot | udisks | unbound | unixodbc |
278
- | upx | util_linux | varnish | vim | vlc | vorbis_tools | vsftpd |
279
- | webkitgtk | wget | wireshark | wolfssl | wpa_supplicant | xerces | xml2 |
280
- | xscreensaver | xwayland | yasm | zabbix | zchunk | zeek | zlib |
281
- | znc | zsh | zstandard | | | | |
242
+ | ghostscript | gimp | git | glib | glibc | gmp | gnomeshell |
243
+ | gnupg | gnutls | go | gpgme | gpsd | graphicsmagick | grep |
244
+ | grub2 | gstreamer | gupnp | gvfs | gzip | haproxy | harfbuzz |
245
+ | haserl | hdf5 | heimdal | hostapd | hunspell | hwloc | i2pd |
246
+ | icecast | icu | iperf3 | ipmitool | ipsec_tools | iptables | irssi |
247
+ | iucode_tool | iwd | jack2 | jacksondatabind | janus | jasper | jhead |
248
+ | jq | json_c | kbd | keepalived | kerberos | kexectools | kodi |
249
+ | kubernetes | ldns | lftp | libarchive | libass | libbpg | libcoap |
250
+ | libconfuse | libcurl | libdb | libde265 | libebml | libevent | libexpat |
251
+ | libgcrypt | libgd | libgit2 | libheif | libical | libidn2 | libinput |
252
+ | libjpeg | libjpeg_turbo | libksba | liblas | libmatroska | libmemcached | libmicrohttpd |
253
+ | libmodbus | libnss | libopenmpt | libpcap | libraw | librsvg | librsync |
254
+ | libsamplerate | libseccomp | libsndfile | libsolv | libsoup | libsrtp | libssh |
255
+ | libssh2 | libtasn1 | libtiff | libtomcrypt | libupnp | libuv | libvips |
256
+ | libvirt | libvncserver | libvorbis | libvpx | libxslt | libyaml | lighttpd |
257
+ | linux_kernel | lldpd | logrotate | lrzip | lua | luajit | lxc |
258
+ | lynx | lz4 | mailx | mariadb | mbedtls | mdadm | memcached |
259
+ | micropython | minetest | mini_httpd | minicom | minidlna | miniupnpc | miniupnpd |
260
+ | moby | modsecurity | monit | mosquitto | motion | mpg123 | mpv |
261
+ | msmtp | mtr | mupdf | mutt | mysql | nano | nasm |
262
+ | nbd | ncurses | neon | nessus | netatalk | netdata | netkit_ftp |
263
+ | netpbm | nettle | nghttp2 | nginx | ngircd | nmap | node |
264
+ | ntfs_3g | ntp | ntpsec | open_iscsi | open_vm_tools | openafs | opencv |
265
+ | openjpeg | openldap | opensc | openssh | openssl | openswan | openvpn |
266
+ | p7zip | pango | patch | pcre | pcre2 | pcsc_lite | perl |
267
+ | php | picocom | pigz | pixman | png | polarssl_fedora | poppler |
268
+ | postgresql | ppp | privoxy | procps_ng | proftpd | protobuf_c | pspp |
269
+ | pure_ftpd | putty | python | qemu | qpdf | qt | quagga |
270
+ | radare2 | radvd | raptor | rauc | rdesktop | readline | rpm |
271
+ | rsync | rsyslog | rtl_433 | rtmpdump | runc | rust | samba |
272
+ | sane_backends | sdl | seahorse | shadowsocks_libev | snapd | sngrep | snort |
273
+ | socat | sofia_sip | speex | spice | sqlite | squashfs | squid |
274
+ | sslh | stellarium | strongswan | stunnel | subversion | sudo | suricata |
275
+ | sylpheed | syslogng | sysstat | systemd | tar | tcpdump | tcpreplay |
276
+ | terminology | tesseract | thrift | thttpd | thunderbird | timescaledb | tinyproxy |
277
+ | tor | tpm2_tss | traceroute | transmission | trousers | ttyd | twonky_server |
278
+ | u_boot | udisks | unbound | unixodbc | upx | util_linux | varnish |
279
+ | vim | vlc | vorbis_tools | vsftpd | webkitgtk | wget | wireshark |
280
+ | wolfssl | wpa_supplicant | xerces | xml2 | xscreensaver | xwayland | yasm |
281
+ | zabbix | zchunk | zeek | zlib | znc | zsh | zstandard |
282
282
<!-- CHECKERS TABLE END-->
283
283
284
284
All the checkers can be found in the checkers directory, as can the
0 commit comments