BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//pretalx.com//hack-lu-2023//talk//Z7UP7B
BEGIN:VTIMEZONE
TZID:CET
BEGIN:STANDARD
DTSTART:20001029T040000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=10
TZNAME:CET
TZOFFSETFROM:+0200
TZOFFSETTO:+0100
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20000326T030000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=3
TZNAME:CEST
TZOFFSETFROM:+0100
TZOFFSETTO:+0200
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
UID:pretalx-hack-lu-2023-Z7UP7B@pretalx.com
DTSTART;TZID=CET:20231018T135500
DTEND;TZID=CET:20231018T140000
DESCRIPTION:Until now\, two worlds have mostly ignored each others: the res
 olution of a software package dependency tree or graph to meet functional 
 constraints and the search for package versions are not subject to known\,
  published vulnerabilities (aka. CVEs) . What if we could combine the func
 tional version range constraints from software developers with the known v
 ulnerable version ranges from security specialist?
DTSTAMP:20260519T221754Z
LOCATION:Salle Europe
SUMMARY:Non vulnerable package dependency resolution - Philippe Ombredanne
URL:https://pretalx.com/hack-lu-2023/talk/Z7UP7B/
END:VEVENT
END:VCALENDAR
