Blueprints that have vulnerabilities with a CVSS score >= 9.0 and meet the following criteria should submit their information in the chart below to have the vulnerability considered for an exception:


CVE #BlueprintBlueprint OS/VerURL Showing OS Patch Not AvailableContact NameContact EmailComment
CVE-2019-12900Connected Vehicle Blueprint (CVB)Centos 7.8https://access.redhat.com/security/cve/CVE-2019-12900abhimanyuabhimanyu@parserlabs.comWe need exception request for this CVE as it is not yet fixed for 7.X version
CVE-2019-12900IEC Type4-AR/VVR oriented Edge StackCentos 7.8https://access.redhat.com/security/cve/CVE-2019-12900abhimanyuabhimanyu@parserlabs.comWe need exception request for this CVE as it is not yet fixed for 7.X version
CVE-2016-1585KubeEdge Edge Service BlueprintUbuntu 20.04https://nvd.nist.gov/vuln/detail/CVE-2016-1585yin.ding@futurewei.com
CVE-2017-8283KubeEdge Edge Service BlueprintUbuntu 20.04https://nvd.nist.gov/vuln/detail/CVE-2017-8283yin.ding@futurewei.com
CVE-2018-20839KubeEdge Edge Service BlueprintUbuntu 20.04https://nvd.nist.gov/vuln/detail/CVE-2018-20839yin.ding@futurewei.com
CVE-2019-19814KubeEdge Edge Service BlueprintUbuntu 20.04https://nvd.nist.gov/vuln/detail/CVE-2019-19814yin.ding@futurewei.com