CVE Checking an Offline System

Posted on

Hello all,
I currently administer a redhat8 system that is isolated from the internet and therefore is unable to access the redhat repos. What would be the best way to check the currently installed packages for vulnerabilities against the redhat CVE DB? I had thought about writing a script that pulls the installed packages and compares it against the CVE DB, but I don't see anyway to that in the CVE DB. Any help or guidance you could provide on this would be much appreciated.

Responses