[CentOS-devel] Help Clair Support CentOS

Mon Apr 12 13:46:34 UTC 2021
Johnny Hughes <johnny at centos.org>

On 4/9/21 12:46 PM, Louis DeLosSantos wrote:
> Thanks for this info, this is very helpful for us.
> I'm gaining that any matching between CentOS packages and RHEL packages
> will be a "best guess" effort at best.
> This is good information, and is what I sought out to gather.
> Appreciate your response.

Well, WRT items that are a exact match, they are built from the exact
same source code and the build systems .. while not exactly the same,
are similar.

So the packages should WORK the same .. and the SHOULD link the same
named libraries.  But users need to test for vulnerabilities themselves,
as no testing directly for security is done by the CentOS Project.

That does not mean I would EXPECT major differences.  Just that everyone
needs to do their own validation.