@@ -16,7 +16,7 @@ CVE Binary Tool uses the NVD API but is not endorsed or certified by the NVD.
16
16
17
17
The tool has two main modes of operation:
18
18
19
- 1 . A binary scanner which helps you determine which packages may have been included as part of a piece of software. There are <!-- NUMBER OF CHECKERS START--> 414 <!-- NUMBER OF CHECKERS END--> checkers. Our initial focus was on common, vulnerable open source components such as openssl, libpng, libxml2 and expat.
19
+ 1 . A binary scanner which helps you determine which packages may have been included as part of a piece of software. There are <!-- NUMBER OF CHECKERS START--> 423 <!-- NUMBER OF CHECKERS END--> checkers. Our initial focus was on common, vulnerable open source components such as openssl, libpng, libxml2 and expat.
20
20
21
21
2 . Tools for scanning known component lists in various formats, including .csv, several linux distribution package lists, language specific package scanners and several Software Bill of Materials (SBOM) formats.
22
22
@@ -226,35 +226,36 @@ The following checkers are available for finding components in binary files:
226
226
227
227
<!-- CHECKERS TABLE BEGIN-->
228
228
| | | | Available checkers | | | |
229
- | --------------- | --------------- | ------------------ | ----------- | ---------------- | -------------- | -------------- |
230
- | accountsservice | acpid | apache_http_server | apcupsd | apparmor | apr | asn1c |
231
- | assimp | asterisk | atftp | augeas | avahi | axel | bash |
232
- | bind | binutils | bird | bison | bluez | boa | boinc |
233
- | botan | bro | bubblewrap | busybox | bwm_ng | bzip2 | c_ares |
234
- | cairo | capnproto | captive_portal | ceph | cflow | chess | chrony |
235
- | civetweb | clamav | clang | collectd | commons_compress | connman | coreutils |
236
- | corosync | cpio | cpp_httplib | cronie | cryptsetup | cups | cups_filters |
237
- | curl | cvs | darkhttpd | dav1d | davfs2 | dbus | debianutils |
238
- | dhclient | dhcpcd | dhcpd | djvulibre | dlt_daemon | dmidecode | dnsmasq |
239
- | docker | domoticz | dosfstools | dotnet | dovecot | doxygen | dpkg |
240
- | dropbear | e2fsprogs | ed | elfutils | emacs | enscript | exfatprogs |
241
- | exim | exiv2 | f2fs_tools | faad2 | fastd | ffmpeg | file |
242
- | firefox | firejail | flac | fluidsynth | freeradius | freerdp | fribidi |
243
- | frr | fuse | gawk | gcc | gdal | gdb | gdk_pixbuf |
244
- | gettext | ghostscript | gimp | git | glib | glibc | gmp |
245
- | gnomeshell | gnupg | gnutls | go | gpgme | gpsd | graphicsmagick |
246
- | grep | grub2 | gsasl | gstreamer | guile | gupnp | gvfs |
247
- | gzip | haproxy | harfbuzz | haserl | hdf5 | heimdal | hostapd |
248
- | hunspell | hwloc | i2pd | icecast | icu | imagemagick | indent |
249
- | inetutils | iperf3 | ipmitool | ipsec_tools | iptables | irssi | iucode_tool |
250
- | iwd | jack2 | jacksondatabind | janus | jasper | jbig | jhead |
251
- | jq | json_c | kbd | keepalived | kerberos | kexectools | kodi |
252
- | kubernetes | ldns | lftp | libarchive | libass | libbpg | libcap |
253
- | libcoap | libconfuse | libcurl | libdb | libde265 | libebml | libevent |
254
- | libexpat | libgcrypt | libgd | libgit2 | libheif | libical | libidn2 |
255
- | libinput | libjpeg | libjpeg_turbo | libksba | liblas | liblouis | libmatroska |
256
- | libmemcached | libmicrohttpd | libmodbus | libnss | libopenmpt | libpcap | libraw |
257
- | libreoffice | libreswan | librsvg | librsync | libsamplerate | libseccomp | libsndfile |
229
+ | ---------------- | --------------- | ----------------- | ------------------ | ------------ | -------------- | ------------ |
230
+ | accountsservice | acpid | aomedia | apache_http_server | apcupsd | apparmor | apr |
231
+ | asn1c | assimp | asterisk | atftp | augeas | avahi | axel |
232
+ | bash | bind | binutils | bird | bison | bluez | boa |
233
+ | boinc | botan | bro | bubblewrap | busybox | bwm_ng | bzip2 |
234
+ | c_ares | cairo | capnproto | captive_portal | catdoc | ceph | cflow |
235
+ | chess | chrony | cifs_utils | civetweb | clamav | clang | collectd |
236
+ | commons_compress | connman | coreutils | corosync | cpio | cpp_httplib | cronie |
237
+ | cryptsetup | cups | cups_filters | curl | cvs | darkhttpd | dav1d |
238
+ | davfs2 | dbus | debianutils | dhclient | dhcpcd | dhcpd | djvulibre |
239
+ | dlt_daemon | dmidecode | dnsmasq | docker | domoticz | dosfstools | dotnet |
240
+ | dovecot | doxygen | dpkg | dropbear | e2fsprogs | ed | elfutils |
241
+ | emacs | enscript | exfatprogs | exim | exiv2 | f2fs_tools | faad2 |
242
+ | fastd | fastnetmon | ffmpeg | file | firefox | firejail | flac |
243
+ | fluidsynth | freeradius | freerdp | fribidi | frr | fuse | gawk |
244
+ | gcc | gdal | gdb | gdk_pixbuf | gettext | ghostscript | gimp |
245
+ | git | glib | glibc | gmp | gnomeshell | gnupg | gnutls |
246
+ | go | gpgme | gpsd | graphicsmagick | grep | grub2 | gsasl |
247
+ | gstreamer | guile | gupnp | gvfs | gzip | haproxy | harfbuzz |
248
+ | haserl | hdf5 | heimdal | hostapd | hunspell | hwloc | i2pd |
249
+ | icecast | icu | imagemagick | indent | inetutils | iperf3 | ipmitool |
250
+ | ipsec_tools | iptables | iputils | irssi | iucode_tool | iwd | jack2 |
251
+ | jacksondatabind | janus | jasper | jbig | jhead | jq | json_c |
252
+ | kbd | keepalived | kerberos | kexectools | kodi | kubernetes | ldns |
253
+ | lftp | libarchive | libass | libbpg | libcap | libcoap | libconfuse |
254
+ | libcurl | libdb | libde265 | libebml | libevent | libexpat | libgcrypt |
255
+ | libgd | libgit2 | libheif | libhtp | libical | libidn2 | libinput |
256
+ | libjpeg | libjpeg_turbo | libksba | liblas | liblouis | libmatroska | libmemcached |
257
+ | libmicrohttpd | libmodbus | libnss | libopenmpt | libpcap | libraw | libreoffice |
258
+ | libreswan | librsvg | librsync | libsamplerate | libseccomp | libsixel | libsndfile |
258
259
| libsolv | libsoup | libsrtp | libssh | libssh2 | libtasn1 | libtiff |
259
260
| libtomcrypt | libupnp | libuv | libvips | libvirt | libvncserver | libvorbis |
260
261
| libvpx | libxslt | libyaml | libyang | lighttpd | linux_kernel | linuxptp |
@@ -275,18 +276,18 @@ The following checkers are available for finding components in binary files:
275
276
| qpdf | qt | quagga | radare2 | radvd | raptor | rauc |
276
277
| rdesktop | readline | redis | rpm | rsync | rsyslog | rtl_433 |
277
278
| rtmpdump | ruby | runc | rust | samba | sane_backends | sasl |
278
- | sdl | seahorse | shadowsocks_libev | snapd | sngrep | snort | socat |
279
- | sofia_sip | speex | spice | sqlite | squashfs | squid | sslh |
280
- | stellarium | strongswan | stunnel | subversion | sudo | suricata | sylpheed |
281
- | syslogng | sysstat | systemd | tar | tbb | tcpdump | tcpreplay |
282
- | terminology | tesseract | thrift | thttpd | thunderbird | timescaledb | tinyproxy |
283
- | tor | toybox | tpm2_tss | traceroute | traffic_server | transmission | trousers |
284
- | ttyd | twonky_server | u_boot | udisks | unbound | unixodbc | upx |
285
- | util_linux | uwsgi | varnish | vim | vlc | vorbis_tools | vsftpd |
286
- | wavpack | webkitgtk | wget | wireshark | wolfssl | wpa_supplicant | xerces |
287
- | xml2 | xpdf | xscreensaver | xwayland | xz | yasm | zabbix |
288
- | zbar | zchunk | zeek | zlib | znc | zsh | zstandard |
289
- | zziplib | | | | | | |
279
+ | sdl | seahorse | shadowsocks_libev | snapcast | snapd | sngrep | snort |
280
+ | socat | sofia_sip | speex | spice | sqlite | squashfs | squid |
281
+ | sslh | stellarium | strongswan | stunnel | subversion | sudo | suricata |
282
+ | sylpheed | syslogng | sysstat | systemd | tar | tbb | tcpdump |
283
+ | tcpreplay | terminology | tesseract | thrift | thttpd | thunderbird | timescaledb |
284
+ | tinyproxy | tor | toybox | tpm2_tss | traceroute | traffic_server | transmission |
285
+ | trousers | ttyd | twonky_server | u_boot | udisks | unbound | unixodbc |
286
+ | upx | util_linux | uwsgi | varnish | vim | vlc | vorbis_tools |
287
+ | vsftpd | wabt | wavpack | webkitgtk | wget | wireshark | wolfssl |
288
+ | wpa_supplicant | xerces | xml2 | xpdf | xscreensaver | xwayland | xz |
289
+ | yasm | zabbix | zbar | zchunk | zeek | zlib | znc |
290
+ | zsh | zstandard | zziplib | | | | |
290
291
<!-- CHECKERS TABLE END-->
291
292
292
293
All the checkers can be found in the checkers directory, as can the
0 commit comments