Re: [Rd] Security assessment

2023-08-30 Thread Ivan Krylov
В Tue, 29 Aug 2023 15:43:24 + "Jones, Jonathan D [US] (SP)" пишет: > Has any consideration or work been done to document or perform > vulnerability testing for the R packages? Is is specifically about third-party R packages or about R ecosystem as a whole, including R itself? This depends o

[Rd] Security assessment

2023-08-29 Thread Jones, Jonathan D [US] (SP)
Hello, Has any consideration or work been done to document or perform vulnerability testing for the R packages? In order to bring in software to my environments, I need to research known vulnerabilities (I usually use MITRE's CVE page) and also perform local Fortify and Nessus scans to determi