From 7a653abf228820ba274569ec2417f8e6da7dadb4 Mon Sep 17 00:00:00 2001 From: Jeremy Long Date: Wed, 14 May 2014 18:01:12 -0400 Subject: [PATCH] Update JarAnalyze to resolve issue #127 Updated JarAnalyzer to resolve issue #127 - duplicate package and package name evidence in the report. Former-commit-id: ed40398c0b00e5fd5065705772ad15afaf5c7e0c --- .../java/org/owasp/dependencycheck/analyzer/JarAnalyzer.java | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/dependency-check-core/src/main/java/org/owasp/dependencycheck/analyzer/JarAnalyzer.java b/dependency-check-core/src/main/java/org/owasp/dependencycheck/analyzer/JarAnalyzer.java index 08b7fb9d7..f3765a5ea 100644 --- a/dependency-check-core/src/main/java/org/owasp/dependencycheck/analyzer/JarAnalyzer.java +++ b/dependency-check-core/src/main/java/org/owasp/dependencycheck/analyzer/JarAnalyzer.java @@ -648,7 +648,7 @@ public class JarAnalyzer extends AbstractFileTypeAnalyzer { //TODO remove weighting vendor.addWeighting(entry.getKey()); if (addPackagesAsEvidence && entry.getKey().length() > 1) { - vendor.addEvidence("jar", "package", entry.getKey(), Confidence.LOW); + vendor.addEvidence("jar", "package name", entry.getKey(), Confidence.LOW); } } } @@ -657,7 +657,7 @@ public class JarAnalyzer extends AbstractFileTypeAnalyzer { if (ratio > 0.5) { product.addWeighting(entry.getKey()); if (addPackagesAsEvidence && entry.getKey().length() > 1) { - product.addEvidence("jar", "package", entry.getKey(), Confidence.LOW); + product.addEvidence("jar", "package name", entry.getKey(), Confidence.LOW); } } }