dnf5 advisory <subcommand> [options] [<advisory-spec>...]
The advisory command in DNF5 offers several queries for getting information about advisories and packages related to them.
Optional advisory-spec arguments could be passed to filter only advisories with given names.
Note:
List advisories matching the specified criteria. Displays a table with the following columns: Name (advisory ID), Type, Severity, Package (NEVRA), and Issued (date). When --with-bz or --with-cve is specified, the first column shows the Bugzilla or CVE reference ID instead of the advisory name. Installed advisory packages are highlighted in green.
Print detailed information about advisories. For each matching advisory, displays: Name, Title, Severity, Type, Status, Vendor, Issued date, Description, Message, Rights, References (with Title, Id, Type, and URL), and affected packages/modules organized by collection.
Print a summary count of advisories by type and severity. Displays a hierarchical summary showing the number of advisories in each category: Security (with subcategories: Critical, Important, Moderate, Low, Other), Bugfix, Enhancement, and Other. The output header indicates the filter mode: Available (default), All, Installed, or Updates.
Show advisories containing any version of installed packages.
Show advisories containing newer versions of installed packages. This is the default behavior.
Show advisories containing equal and older versions of installed packages.
Show advisories containing newer versions of installed packages for which a newer version is available.
Show only advisories containing packages with specified names. This is a list option. Only installed packages are matched. Globs are supported.
Include content contained in security advisories.
Include content contained in bugfix advisories.
Include content contained in enhancement advisories.
Include content contained in newpackage advisories.
Include content contained in advisories with specified severity. This is a list option. Accepted values are: critical, important, moderate, low, none.
Include content contained in advisories that fix a ticket of the given Bugzilla ID. This is a list option. Expected values are numeric IDs, e.g. 123123. Any transaction command (install, upgrade) will fail with an error if there is no advisory fixing the given ticket; this can be bypassed by using the --skip-unavailable switch.
Include content contained in advisories that fix a ticket of the given CVE (Common Vulnerabilities and Exposures) ID. This is a list option. Expected values are string IDs in CVE format, e.g. CVE-2201-0123. Any transaction command (install, upgrade) will fail with an error if there is no advisory fixing the given ticket; this can be bypassed by using the --skip-unavailable switch.
Show only advisories referencing a Bugzilla ticket.
Show only advisories referencing a CVE ticket.
Request JSON output format for machine-readable results. Available for list and info subcommands only.
Show detailed info about advisory with given name.
Show a summary of advisories containing kernel or kernel-core packages and referencing any Bugzilla ticket.
Show a list of security advisories or advisories with important severity.
List all advisories in JSON format for programmatic processing.
List advisories with CVE references in JSON format (extended format).
Show detailed info about advisory in JSON format.
The command returns a JSON array, each element describing one advisory.
Basic format (without --with-cve or --with-bz):
Extended format (with --with-cve or --with-bz):
The command returns a JSON array, each element containing detailed advisory information. Each advisory object contains the following fields:
For empty results:
See AUTHORS.md in dnf5 source distribution.
Contributors to the dnf5 project.