Large overnight size increase of com.ubuntu.xenial.cve.oval.xml

Bug #1827497 reported by Gunnsteinn Hall
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
openscap (Ubuntu)
Won't Fix
Undecided
Unassigned

Bug Description

Yesterday the size of com.ubuntu.xenial.cve.oval.xml was around 40MB, today (May 3rd) the size has increased to 226MB. I am guessing that is not normal?

Revision history for this message
Gunnsteinn Hall (gunnsth) wrote :

There seems to be a lot of duplication of tests:

$ grep dpkginfo_test com.ubuntu.xenial.cve.oval.xml | grep -e "Does the '.*'" -o | sort | uniq -c | sort -n -r | head
   1216 Does the 'linux-image-4.15.0-48-lowlatency' package exist and is the version less than '4.8.0-36.36~16.04.1'
   1216 Does the 'linux-image-4.15.0-48-generic' package exist and is the version less than '4.8.0-36.36~16.04.1'
   1122 Does the 'linux-image-3.4.0-7-mako'
   1122 Does the 'linux-image-3.4.0-5-flo'
    890 Does the 'linux-image-4.4.0-146-lowlatency' package exist and is the version less than '4.2.0-16.19'
    890 Does the 'linux-image-4.4.0-146-generic' package exist and is the version less than '4.2.0-16.19'
    866 Does the 'libqtwebkit4'
    866 Does the 'libqtwebkit-qmlwebkitplugin'
    843 Does the 'linux-image-3.4.0-4-goldfish'
    608 Does the 'linux-image-virtual-hwe-16.04' package exist and is the version less than '4.8.0.36'

So there are for example 1216 copies of tests checking Does the 'linux-image-4.15.0-48-lowlatency' package exist and is the version less than '4.8.0-36.36~16.04.1'

Also running `oscap oval validate` on the file crashed as oscap depleted the system memory.

summary: - Large size increase of com.ubuntu.xenial.cve.oval.xml
+ Large overnight size increase of com.ubuntu.xenial.cve.oval.xml
Revision history for this message
Eduardo Barretto (ebarretto) wrote :

Thanks for reporting this issue.
It has been more than two years since this was reported, so I believe this might not be a problem anymore and since you mentioned this oscap could not validate it, it could be a one-of corrupted file.
Also this bug doesn't relate at all to openscap package itself, therefore if you have any issues with OVAL files I recommend trying to send an email to <email address hidden> and we will take a look for sure.

Changed in openscap (Ubuntu):
status: New → Won't Fix
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.