Add CPE translation mapping for IntelliJ CE for Windows (#25971)

Won't solve the false positive issues due to version number mismatches,
but will fix the false negative where CE wasn't matching at all, and
this is a full fix for IJ CE installed via JetBrains Toolbox.

For #25662.

# Checklist for submitter

If some of the following don't apply, delete the relevant line.

<!-- Note that API documentation changes are now addressed by the
product design team. -->

- [x] Changes file added for user-visible changes in `changes/`,
`orbit/changes/` or `ee/fleetd-chrome/changes`.
See [Changes
files](https://github.com/fleetdm/fleet/blob/main/docs/Contributing/Committing-Changes.md#changes-files)
for more information.
- [x] Added/updated automated tests
- [x] A detailed QA plan exists on the associated ticket (if it isn't
there, work with the product group's QA engineer to add it)
- [x] Manual QA for all new/changed functionality
This commit is contained in:
Ian Littman
2025-02-05 17:07:34 -06:00
committed by GitHub
parent 232f1ac4c2
commit 136e5f8a6e
3 changed files with 20 additions and 0 deletions
+1
View File
@@ -0,0 +1 @@
* Resolved false negatives on vulnerabilities for IntelliJ IDEA Community Edition on Windows.
+9
View File
@@ -1341,6 +1341,15 @@ func TestCPEFromSoftwareIntegration(t *testing.T) {
},
cpe: "cpe:2.3:a:jetbrains:goland:2022.3.99.123.456:*:*:*:*:macos:*:*",
},
{
software: fleet.Software{
Name: "IntelliJ IDEA Community Edition 2022.3.2",
Source: "programs",
Version: "223.8617.56",
Vendor: "",
},
cpe: "cpe:2.3:a:jetbrains:intellij_idea:223.8617.56:*:*:*:*:windows:*:*",
},
{
software: fleet.Software{
Name: "IntelliJ IDEA.app",
@@ -169,6 +169,16 @@
"vendor": ["jetbrains"]
}
},
{
"software": {
"name": ["/^IntelliJ IDEA Community Edition/"],
"source": ["programs"]
},
"filter": {
"product": ["intellij_idea"],
"vendor": ["jetbrains"]
}
},
{
"software": {
"bundle_identifier": ["/^com\\.jetbrains\\.pycharm/"],