From b423eed4e99941e03adbeeb9c5707e75aca0090c Mon Sep 17 00:00:00 2001 From: "Sascha L. Teichmann" Date: Thu, 6 Jul 2023 12:34:52 +0200 Subject: [PATCH] Dont use string comparison to rank labels. (#393) --- cmd/csaf_checker/roliecheck.go | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/cmd/csaf_checker/roliecheck.go b/cmd/csaf_checker/roliecheck.go index 5d44534..fd52323 100644 --- a/cmd/csaf_checker/roliecheck.go +++ b/cmd/csaf_checker/roliecheck.go @@ -107,7 +107,7 @@ func (rlc *rolieLabelChecker) checkProtection( // the data again with the open client. // If this does not result in status forbidden the // server may be wrongly configured. - case label >= csaf.TLPLabelAmber: + case tlpLevel(label) >= tlpLevel(csaf.TLPLabelAmber): p.badAmberRedPermissions.use() // It is an error if we downloaded the advisory with // an unauthorized client.