From f66425eae810051abe1ff828b01592875dd05e4b Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 13:46:08 +0100 Subject: [PATCH 01/41] ruby3.2-net-imap/0.5.4 package update (#38216)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- ruby3.2-net-imap.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/ruby3.2-net-imap.yaml b/ruby3.2-net-imap.yaml index efb17f2efd2..79647ed0d0b 100644 --- a/ruby3.2-net-imap.yaml +++ b/ruby3.2-net-imap.yaml @@ -1,6 +1,6 @@ package: name: ruby3.2-net-imap - version: 0.5.3 + version: 0.5.4 epoch: 0 description: Ruby client api for Internet Message Access Protocol copyright: @@ -24,7 +24,7 @@ environment: pipeline: - uses: git-checkout with: - expected-commit: 3d3f6589f4b8a3071f220f1e9c00ed564e590f72 + expected-commit: 45c66281daaded06e2b45c471a9559d4c53aac66 repository: https://github.com/ruby/net-imap tag: v${{package.version}} From 1c34cf50755d96efbe6d03de2846fc4c7e521ab5 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 13:46:25 +0100 Subject: [PATCH 02/41] ruby3.3-net-imap/0.5.4 package update (#38215)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- ruby3.3-net-imap.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/ruby3.3-net-imap.yaml b/ruby3.3-net-imap.yaml index 76106fe4699..a49f86e3903 100644 --- a/ruby3.3-net-imap.yaml +++ b/ruby3.3-net-imap.yaml @@ -1,6 +1,6 @@ package: name: ruby3.3-net-imap - version: 0.5.3 + version: 0.5.4 epoch: 0 description: Ruby client api for Internet Message Access Protocol copyright: @@ -24,7 +24,7 @@ environment: pipeline: - uses: git-checkout with: - expected-commit: 3d3f6589f4b8a3071f220f1e9c00ed564e590f72 + expected-commit: 45c66281daaded06e2b45c471a9559d4c53aac66 repository: https://github.com/ruby/net-imap tag: v${{package.version}} From 91db0e042497139fc76a977c9ab9efb8cc5a7856 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 13:46:34 +0100 Subject: [PATCH 03/41] ruby3.4-net-imap/0.5.4 package update (#38214)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- ruby3.4-net-imap.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/ruby3.4-net-imap.yaml b/ruby3.4-net-imap.yaml index 5474fc22e48..7e6a7a18fbd 100644 --- a/ruby3.4-net-imap.yaml +++ b/ruby3.4-net-imap.yaml @@ -1,6 +1,6 @@ package: name: ruby3.4-net-imap - version: 0.5.3 + version: 0.5.4 epoch: 0 description: Ruby client api for Internet Message Access Protocol copyright: @@ -24,7 +24,7 @@ environment: pipeline: - uses: git-checkout with: - expected-commit: 3d3f6589f4b8a3071f220f1e9c00ed564e590f72 + expected-commit: 45c66281daaded06e2b45c471a9559d4c53aac66 repository: https://github.com/ruby/net-imap tag: v${{package.version}} From 07fdf1e23d8b157de400df7dc261ddbf6f09c224 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 13:46:57 +0100 Subject: [PATCH 04/41] py3-astroid/3.3.7 package update (#38179) From ec0d3a4a5eb732ba5cd51f9d4dff557dcafacf01 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 13:07:42 +0000 Subject: [PATCH 05/41] newrelic-nri-kube-events/2.11.4 package update (#38239)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- newrelic-nri-kube-events.yaml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/newrelic-nri-kube-events.yaml b/newrelic-nri-kube-events.yaml index 09b21e5560f..59a3e406d2a 100644 --- a/newrelic-nri-kube-events.yaml +++ b/newrelic-nri-kube-events.yaml @@ -1,7 +1,7 @@ package: name: newrelic-nri-kube-events - version: 2.11.3 - epoch: 2 + version: 2.11.4 + epoch: 0 description: New Relic integration that forwards Kubernetes events to New Relic copyright: - license: Apache-2.0 @@ -20,7 +20,7 @@ pipeline: with: repository: https://github.com/newrelic/nri-kube-events tag: v${{package.version}} - expected-commit: f60af575f77b58c6bf85e1ad187d255230f31c57 + expected-commit: 816e48963eeff5e268722c57a220bbe14d6a2795 - uses: go/bump with: From d16477c0b7c5ae4e5bdcb8722c0ae87589381ffd Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 13:07:55 +0000 Subject: [PATCH 06/41] nri-kubernetes/3.32.2 package update (#38236)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- nri-kubernetes.yaml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/nri-kubernetes.yaml b/nri-kubernetes.yaml index 1b20768e9b4..d314d050f47 100644 --- a/nri-kubernetes.yaml +++ b/nri-kubernetes.yaml @@ -1,7 +1,7 @@ package: name: nri-kubernetes - version: 3.32.1 - epoch: 1 + version: 3.32.2 + epoch: 0 description: New Relic integration for Kubernetes copyright: - license: Apache-2.0 @@ -19,7 +19,7 @@ pipeline: with: repository: https://github.com/newrelic/nri-kubernetes tag: v${{package.version}} - expected-commit: 3259a9d3f7cb613ab6fcd1dcdc5763e3b3b78d50 + expected-commit: d33d5fb6f4f5fe84e07055a6d17c4c376f56f3c4 - uses: go/bump with: From aae8de7d2887b1d7b476a994f1fdcc732c7e10f2 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 13:08:12 +0000 Subject: [PATCH 07/41] external-secrets-operator/0.12.0 package update (#38235)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- external-secrets-operator.yaml | 10 +++------- 1 file changed, 3 insertions(+), 7 deletions(-) diff --git a/external-secrets-operator.yaml b/external-secrets-operator.yaml index 09e0523c6d9..8e2d1a90016 100644 --- a/external-secrets-operator.yaml +++ b/external-secrets-operator.yaml @@ -1,7 +1,7 @@ package: name: external-secrets-operator - version: 0.11.0 - epoch: 2 + version: 0.12.0 + epoch: 0 description: Integrate external secret management systems with Kubernetes copyright: - license: Apache-2.0 @@ -11,11 +11,7 @@ pipeline: with: repository: https://github.com/external-secrets/external-secrets tag: v${{package.version}} - expected-commit: 0656bf33c5bde3b54afe6c5d21e246e58fb19be7 - - - uses: go/bump - with: - deps: golang.org/x/crypto@v0.31.0 golang.org/x/net@v0.33.0 + expected-commit: 2b4e4a3bc7c458b8c7405ad0c56a4a45fe088687 - uses: go/build with: From 6713076cc2e82bc4ec2270648a0381061867f8be Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 13:08:25 +0000 Subject: [PATCH 08/41] newrelic-prometheus-configurator/1.18.5 package update (#38234)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- newrelic-prometheus-configurator.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/newrelic-prometheus-configurator.yaml b/newrelic-prometheus-configurator.yaml index 800d92661e4..4ed3f31717f 100644 --- a/newrelic-prometheus-configurator.yaml +++ b/newrelic-prometheus-configurator.yaml @@ -1,6 +1,6 @@ package: name: newrelic-prometheus-configurator - version: 1.18.4 + version: 1.18.5 epoch: 0 description: New Relic Prometheus Configurator copyright: @@ -20,7 +20,7 @@ pipeline: with: repository: https://github.com/newrelic/newrelic-prometheus-configurator tag: v${{package.version}} - expected-commit: 124b26d98d127efb129c54c224b6d0d1cd4c5a53 + expected-commit: 50727240f5b8e5a4410dfac4ffe735e746e1cc42 - runs: | GOOS=$(go env GOOS) From 3d32605d1913c1fa052a7977a866021a5121d365 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 13:08:51 +0000 Subject: [PATCH 09/41] newrelic-k8s-metadata-injection/1.30.4 package update (#38238)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- newrelic-k8s-metadata-injection.yaml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/newrelic-k8s-metadata-injection.yaml b/newrelic-k8s-metadata-injection.yaml index 2d3e6119e00..663083933a8 100644 --- a/newrelic-k8s-metadata-injection.yaml +++ b/newrelic-k8s-metadata-injection.yaml @@ -1,7 +1,7 @@ package: name: newrelic-k8s-metadata-injection - version: 1.30.3 - epoch: 1 + version: 1.30.4 + epoch: 0 description: Kubernetes metadata injection for New Relic APM to make a linkage between APM and Infrastructure data. copyright: - license: Apache-2.0 @@ -9,7 +9,7 @@ package: pipeline: - uses: git-checkout with: - expected-commit: 63a2ba733366a697e8486a3b01fbb662234318b0 + expected-commit: 81b2ea1e22295dcfafa40a32fba6d98c8cb7d5ef repository: https://github.com/newrelic/k8s-metadata-injection tag: v${{package.version}} From e534f3dffd5003778481ebbd839bb2de42fd50e2 Mon Sep 17 00:00:00 2001 From: Debasish Biswas Date: Mon, 23 Dec 2024 18:51:14 +0530 Subject: [PATCH 10/41] Fix: x11vnc broken binary (#38240) current x11vnc binary is not working probably due to recent update of its dependencies, ERROR: ``` x11vnc: symbol lookup error: x11vnc: undefined symbol: rfbInitServerWithPthreadsButWithoutZRLE ``` This can been seen in the build log of https://github.com/wolfi-dev/os/pull/35795/checks\?check_run_id\=34795532701 the epoch bump fix this Signed-off-by: Debasish Biswas --- x11vnc.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/x11vnc.yaml b/x11vnc.yaml index 86e8740526f..9d82de81c19 100644 --- a/x11vnc.yaml +++ b/x11vnc.yaml @@ -1,7 +1,7 @@ package: name: x11vnc version: 0.9.16 - epoch: 1 + epoch: 2 description: VNC server for real X displays copyright: - license: GPL-2.0-or-later From 7853ab6d53b084cfe00534734ca5e9b03c6ee4bc Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 14:32:41 +0100 Subject: [PATCH 11/41] spark-3.5-scala-2.13/3.5.4 package update (#37961)

--------- Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Signed-off-by: Debasish Biswas Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: Debasish Biswas --- spark-3.5-scala-2.13.yaml | 7 ++++--- spark-3.5-scala-2.13/mvn.patch | 11 +---------- 2 files changed, 5 insertions(+), 13 deletions(-) diff --git a/spark-3.5-scala-2.13.yaml b/spark-3.5-scala-2.13.yaml index e333169f7a5..c945bd1371c 100644 --- a/spark-3.5-scala-2.13.yaml +++ b/spark-3.5-scala-2.13.yaml @@ -1,7 +1,7 @@ package: name: spark-3.5-scala-2.13 - version: 3.5.3 - epoch: 2 + version: 3.5.4 + epoch: 0 description: Unified engine for large-scale data analytics copyright: - license: Apache-2.0 @@ -45,8 +45,9 @@ pipeline: with: repository: https://github.com/apache/spark tag: v${{package.version}} - expected-commit: 32232e9ed33bb16b93ad58cfde8b82e0f07c0970 + expected-commit: a6f220d951742f4074b37772485ee0ec7a774e7d + # These are not CVE patches, but patches to make the build work. - uses: patch with: patches: make-distribution.patch mvn.patch diff --git a/spark-3.5-scala-2.13/mvn.patch b/spark-3.5-scala-2.13/mvn.patch index 33542b51635..93780935d58 100644 --- a/spark-3.5-scala-2.13/mvn.patch +++ b/spark-3.5-scala-2.13/mvn.patch @@ -1,16 +1,7 @@ diff --git a/build/mvn b/build/mvn -index 3179099304c..b0cb0a643d2 100755 +index 2c778fd6c71..993dc98a5e7 100755 --- a/build/mvn +++ b/build/mvn -@@ -56,7 +56,7 @@ install_app() { - local binary="${_DIR}/$6" - local remote_tarball="${mirror_host}/${url_path}${url_query}" - local local_checksum="${local_tarball}.${checksum_suffix}" -- local remote_checksum="https://archive.apache.org/dist/${url_path}.${checksum_suffix}" -+ local remote_checksum="${mirror_host}/${url_path}.${checksum_suffix}" - - local curl_opts="--silent --show-error -L" - local wget_opts="--no-verbose" @@ -121,7 +121,7 @@ install_mvn() { fi if [ $(version $MVN_DETECTED_VERSION) -ne $(version $MVN_VERSION) ]; then From b872b2dde75d746616bf072d9aede29300f396e1 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 14:33:04 +0100 Subject: [PATCH 12/41] nodejs-22/22.12.0 package update (#35767) A recent fix was added to our node-16 package as part of this PR: - https://github.com/wolfi-dev/os/pull/32816 Believe this should also fix the build error here, so i've ported over the change -----------

--------- Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Signed-off-by: Mark McCormick Signed-off-by: Debasish Biswas Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: Mark McCormick Co-authored-by: Debasish Biswas --- nodejs-22.yaml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/nodejs-22.yaml b/nodejs-22.yaml index fe7fa024be3..2c92d809e45 100644 --- a/nodejs-22.yaml +++ b/nodejs-22.yaml @@ -1,7 +1,7 @@ package: name: nodejs-22 - version: 22.11.0 - epoch: 1 + version: 22.12.0 + epoch: 0 description: "JavaScript runtime built on V8 engine" dependencies: provides: @@ -42,7 +42,7 @@ pipeline: with: repository: https://github.com/nodejs/node.git tag: v${{package.version}} - expected-commit: 4e0f2773ff9465148a654dd0a2c1668104c20fec + expected-commit: ccba1a1cc89fa57ef231ec74cf78baaf5e477621 - name: Configure and build runs: | From cb6a2ed56928b7b36d78a04e49f956a58be1593c Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 14:03:20 +0000 Subject: [PATCH 13/41] kyverno-notation-aws/1.0.1_git20241223 package update (#38249)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- kyverno-notation-aws.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/kyverno-notation-aws.yaml b/kyverno-notation-aws.yaml index 5bb0d3ba46c..f88d4759b12 100644 --- a/kyverno-notation-aws.yaml +++ b/kyverno-notation-aws.yaml @@ -1,8 +1,8 @@ #nolint:git-checkout-must-use-github-updates,valid-pipeline-git-checkout-tag package: name: kyverno-notation-aws - version: 1.0.1_git20241216 - epoch: 1 + version: 1.0.1_git20241223 + epoch: 0 description: Kyverno extension service for Notation and the AWS signer copyright: - license: Apache-2.0 From 9fa3b460b0809a6e60b89643d8c6e78c1c38e485 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 14:03:33 +0000 Subject: [PATCH 14/41] envoy-ratelimit/0.0.0_git20241223 package update (#38247)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- envoy-ratelimit.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/envoy-ratelimit.yaml b/envoy-ratelimit.yaml index ae942cae885..a0bbc1024a8 100644 --- a/envoy-ratelimit.yaml +++ b/envoy-ratelimit.yaml @@ -2,8 +2,8 @@ package: name: envoy-ratelimit # This project doesn't do releases and everything is commit based. - version: 0.0.0_git20241216 - epoch: 1 + version: 0.0.0_git20241223 + epoch: 0 description: Go/gRPC service designed to enable generic rate limit scenarios from different types of applications. copyright: - license: Apache-2.0 From e2251a7575ff999b2450d253976175d2de05f0f7 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 14:03:47 +0000 Subject: [PATCH 15/41] cloudnative-pg/1.25.0 package update (#38246)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- cloudnative-pg.yaml | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/cloudnative-pg.yaml b/cloudnative-pg.yaml index f0a56427bd8..78e66508ad7 100644 --- a/cloudnative-pg.yaml +++ b/cloudnative-pg.yaml @@ -1,7 +1,7 @@ package: name: cloudnative-pg - version: 1.24.1 - epoch: 2 + version: 1.25.0 + epoch: 0 description: CloudNativePG is a comprehensive platform designed to seamlessly manage PostgreSQL databases copyright: - license: Apache-2.0 @@ -11,7 +11,7 @@ pipeline: with: repository: https://github.com/cloudnative-pg/cloudnative-pg tag: v${{package.version}} - expected-commit: 3f96930d984ff7e795e013160afbc6d3012f8718 + expected-commit: bad5a251642655399eca392abf5d981668fbd8cc - name: Generate controller code runs: | @@ -19,7 +19,7 @@ pipeline: - uses: go/bump with: - deps: golang.org/x/crypto@v0.31.0 golang.org/x/net@v0.33.0 + deps: golang.org/x/net@v0.33.0 - uses: go/build with: From e2fb000b0e9e0a5a7625b6d6ab63e220d4b295c3 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 14:04:02 +0000 Subject: [PATCH 16/41] kubeadm-controlplane-controller/1.9.3 package update (#38245)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- kubeadm-controlplane-controller.yaml | 10 +++------- 1 file changed, 3 insertions(+), 7 deletions(-) diff --git a/kubeadm-controlplane-controller.yaml b/kubeadm-controlplane-controller.yaml index 591f64aa25d..ed51aef5c7f 100644 --- a/kubeadm-controlplane-controller.yaml +++ b/kubeadm-controlplane-controller.yaml @@ -1,7 +1,7 @@ package: name: kubeadm-controlplane-controller - version: 1.9.2 - epoch: 1 + version: 1.9.3 + epoch: 0 description: Cluster API kubeadm controlplane controller copyright: - license: Apache-2.0 @@ -18,14 +18,10 @@ environment: pipeline: - uses: git-checkout with: - expected-commit: 05ddeacc99fec22faf29b422f61e8efdb710c071 + expected-commit: cd279dd0c24c5472db45255e3805ae16c61e1432 repository: https://github.com/kubernetes-sigs/cluster-api tag: v${{package.version}} - - uses: go/bump - with: - deps: golang.org/x/net@v0.33.0 - - uses: go/build with: ldflags: -s -w From 5ee9ff29b475d7645ceb6c73a8f42f0a391324a2 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 14:04:17 +0000 Subject: [PATCH 17/41] opentelemetry-plugin-nginx/0_git20241223 package update (#38244)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- opentelemetry-plugin-nginx.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/opentelemetry-plugin-nginx.yaml b/opentelemetry-plugin-nginx.yaml index d4c63ff44db..eed302af14c 100644 --- a/opentelemetry-plugin-nginx.yaml +++ b/opentelemetry-plugin-nginx.yaml @@ -1,7 +1,7 @@ #nolint:valid-pipeline-git-checkout-tag package: name: opentelemetry-plugin-nginx - version: 0_git20241216 + version: 0_git20241223 epoch: 0 description: Adds OpenTelemetry distributed tracing support to nginx. This is the otel community plugin for nginx, not the official nginx plugin for otel. copyright: From 53348867e3fc87c1a5540e51dc66248f500c0999 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 14:04:41 +0000 Subject: [PATCH 18/41] kubeadm-bootstrap-controller/1.9.3 package update (#38242)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- kubeadm-bootstrap-controller.yaml | 8 ++------ 1 file changed, 2 insertions(+), 6 deletions(-) diff --git a/kubeadm-bootstrap-controller.yaml b/kubeadm-bootstrap-controller.yaml index b725fd154c7..4ce982ce6b9 100644 --- a/kubeadm-bootstrap-controller.yaml +++ b/kubeadm-bootstrap-controller.yaml @@ -1,6 +1,6 @@ package: name: kubeadm-bootstrap-controller - version: 1.9.2 + version: 1.9.3 epoch: 0 description: Cluster API kubeadm bootstrap controller copyright: @@ -18,14 +18,10 @@ environment: pipeline: - uses: git-checkout with: - expected-commit: 05ddeacc99fec22faf29b422f61e8efdb710c071 + expected-commit: cd279dd0c24c5472db45255e3805ae16c61e1432 repository: https://github.com/kubernetes-sigs/cluster-api tag: v${{package.version}} - - uses: go/bump - with: - deps: golang.org/x/net@v0.33.0 - - uses: go/build with: output: kubeadm-bootstrap-controller From 33ce038e0d6a83f6e8d3865fb83e771a9dd7652b Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 14:05:06 +0000 Subject: [PATCH 19/41] protoc-gen-go/1.36.1 package update (#38248)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- protoc-gen-go.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/protoc-gen-go.yaml b/protoc-gen-go.yaml index 16bf8efc57f..5e9e28d0482 100644 --- a/protoc-gen-go.yaml +++ b/protoc-gen-go.yaml @@ -1,6 +1,6 @@ package: name: protoc-gen-go - version: 1.36.0 + version: 1.36.1 epoch: 0 description: Go support for Google's protocol buffers copyright: @@ -11,7 +11,7 @@ pipeline: with: repository: https://github.com/protocolbuffers/protobuf-go tag: v${{package.version}} - expected-commit: 3b78ca86bdbb47b135364f251bde7db55fc7130d + expected-commit: 7fc5ff4e14aedbbbaab88f3a282551071c10e856 - uses: go/build with: From cc040b4da051614bc4ebcd1270667588ebe0cf29 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 15:03:25 +0000 Subject: [PATCH 20/41] clusterctl/1.9.3 package update (#38250)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- clusterctl.yaml | 8 ++------ 1 file changed, 2 insertions(+), 6 deletions(-) diff --git a/clusterctl.yaml b/clusterctl.yaml index 3d38d0a4dce..1c552f80443 100644 --- a/clusterctl.yaml +++ b/clusterctl.yaml @@ -1,6 +1,6 @@ package: name: clusterctl - version: 1.9.2 + version: 1.9.3 epoch: 0 description: A command line tool to manage clusters created by cluster API copyright: @@ -23,11 +23,7 @@ pipeline: with: repository: https://github.com/kubernetes-sigs/cluster-api tag: v${{package.version}} - expected-commit: 05ddeacc99fec22faf29b422f61e8efdb710c071 - - - uses: go/bump - with: - deps: golang.org/x/net@v0.33.0 + expected-commit: cd279dd0c24c5472db45255e3805ae16c61e1432 - uses: go/build with: From 2494bc14aba544a6091586bd988feef8e9d9a19b Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 17:03:10 +0000 Subject: [PATCH 21/41] hugo-extended/0.140.1 package update (#38254)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- hugo-extended.yaml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/hugo-extended.yaml b/hugo-extended.yaml index 2a4aa8cd139..70424f25d18 100644 --- a/hugo-extended.yaml +++ b/hugo-extended.yaml @@ -1,7 +1,7 @@ package: name: hugo-extended - version: 0.140.0 - epoch: 1 + version: 0.140.1 + epoch: 0 description: The world's fastest framework for building websites. copyright: - license: Apache-2.0 @@ -22,7 +22,7 @@ pipeline: with: repository: https://github.com/gohugoio/hugo tag: v${{package.version}} - expected-commit: 3f35721fb2c75a1f7cc5a7a14400b66e73d4b06e + expected-commit: a9b0b95ef402a1cc70bc5386d649d947e2bcc027 - uses: go/bump with: From 1794b58de4cee071d45c1fd53782897a1398a453 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 18:04:16 +0000 Subject: [PATCH 22/41] ruby3.1-bundler/2.6.2 package update (#38262)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- ruby3.1-bundler.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/ruby3.1-bundler.yaml b/ruby3.1-bundler.yaml index 6bcd6098918..458abb26e2d 100644 --- a/ruby3.1-bundler.yaml +++ b/ruby3.1-bundler.yaml @@ -1,6 +1,6 @@ package: name: ruby3.1-bundler - version: 2.6.1 + version: 2.6.2 epoch: 0 description: "Manage an application's gem dependencies" copyright: @@ -25,7 +25,7 @@ vars: pipeline: - uses: git-checkout with: - expected-commit: 00a344e02c88ba4bed84121aee2776d98d85509b + expected-commit: 90ebd47c7401b0a0aa8393ff97adff07b173a974 repository: https://github.com/rubygems/rubygems tag: bundler-v${{package.version}} From 1f3b5db14fca0fef8ebf5cf7c86694ac38dce476 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 18:04:31 +0000 Subject: [PATCH 23/41] nsc/2.10.2 package update (#38258)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- nsc.yaml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/nsc.yaml b/nsc.yaml index b9093317efc..daa608f3af7 100644 --- a/nsc.yaml +++ b/nsc.yaml @@ -1,7 +1,7 @@ package: name: nsc - version: 2.10.1 - epoch: 1 + version: 2.10.2 + epoch: 0 description: Tool for creating nkey/jwt based configurations copyright: - license: Apache-2.0 @@ -11,7 +11,7 @@ pipeline: with: repository: https://github.com/nats-io/nsc tag: v${{package.version}} - expected-commit: d2af91035880fe69d230afdbca0729d70d7eefef + expected-commit: 296ba908abf64070bc8f74532b541bdd09d74cef - uses: go/bump with: From c5ff794d63586bcb0c625b2c2bea44301d1c1924 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 18:04:44 +0000 Subject: [PATCH 24/41] brew/4.4.13 package update (#38256)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- brew.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/brew.yaml b/brew.yaml index 8a084be0b83..7e2aa94ab55 100644 --- a/brew.yaml +++ b/brew.yaml @@ -1,6 +1,6 @@ package: name: brew - version: 4.4.12 + version: 4.4.13 epoch: 0 description: "The homebrew package manager" copyright: @@ -49,7 +49,7 @@ pipeline: repository: https://github.com/Homebrew/brew tag: ${{package.version}} destination: ./brew - expected-commit: 3001afe88112c13b5aafdd92e097680897060881 + expected-commit: 6ea9df68df4868ce12ea7c51c85b57dce514f2e8 - runs: | set -x From ad43074e2150e659d9eda33c99b51976380c0785 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 18:04:58 +0000 Subject: [PATCH 25/41] ruby3.4-bundler/2.6.2 package update (#38260)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- ruby3.4-bundler.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/ruby3.4-bundler.yaml b/ruby3.4-bundler.yaml index 6b021c73cc8..2c97c9eb0b9 100644 --- a/ruby3.4-bundler.yaml +++ b/ruby3.4-bundler.yaml @@ -1,6 +1,6 @@ package: name: ruby3.4-bundler - version: 2.6.1 + version: 2.6.2 epoch: 0 description: "Manage an application's gem dependencies" copyright: @@ -25,7 +25,7 @@ vars: pipeline: - uses: git-checkout with: - expected-commit: 00a344e02c88ba4bed84121aee2776d98d85509b + expected-commit: 90ebd47c7401b0a0aa8393ff97adff07b173a974 repository: https://github.com/rubygems/rubygems tag: bundler-v${{package.version}} From f53d1f3ff03aa73748dd0015969bb60d2114a0e7 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 18:05:19 +0000 Subject: [PATCH 26/41] ruby3.2-bundler/2.6.2 package update (#38261)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- ruby3.2-bundler.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/ruby3.2-bundler.yaml b/ruby3.2-bundler.yaml index 2a17b286f36..687b91a20c5 100644 --- a/ruby3.2-bundler.yaml +++ b/ruby3.2-bundler.yaml @@ -1,6 +1,6 @@ package: name: ruby3.2-bundler - version: 2.6.1 + version: 2.6.2 epoch: 0 description: Manage an application's gem dependencies copyright: @@ -25,7 +25,7 @@ vars: pipeline: - uses: git-checkout with: - expected-commit: 00a344e02c88ba4bed84121aee2776d98d85509b + expected-commit: 90ebd47c7401b0a0aa8393ff97adff07b173a974 repository: https://github.com/rubygems/rubygems tag: bundler-v${{package.version}} From 2266f75d609ff1a3baa263ef38f2cbe2804c3481 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 18:05:38 +0000 Subject: [PATCH 27/41] ruby3.3-bundler/2.6.2 package update (#38257)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- ruby3.3-bundler.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/ruby3.3-bundler.yaml b/ruby3.3-bundler.yaml index 2bb5260e367..e5b207e708e 100644 --- a/ruby3.3-bundler.yaml +++ b/ruby3.3-bundler.yaml @@ -1,6 +1,6 @@ package: name: ruby3.3-bundler - version: 2.6.1 + version: 2.6.2 epoch: 0 description: "Manage an application's gem dependencies" copyright: @@ -25,7 +25,7 @@ vars: pipeline: - uses: git-checkout with: - expected-commit: 00a344e02c88ba4bed84121aee2776d98d85509b + expected-commit: 90ebd47c7401b0a0aa8393ff97adff07b173a974 repository: https://github.com/rubygems/rubygems tag: bundler-v${{package.version}} From c3b9963023fa526025d4a3e498888069a116bf49 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 18:06:03 +0000 Subject: [PATCH 28/41] hugo/0.140.1 package update (#38255)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- hugo.yaml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/hugo.yaml b/hugo.yaml index 11e728c39de..b2cef4fbb73 100644 --- a/hugo.yaml +++ b/hugo.yaml @@ -1,7 +1,7 @@ package: name: hugo - version: 0.140.0 - epoch: 1 + version: 0.140.1 + epoch: 0 description: The world's fastest framework for building websites. copyright: - license: Apache-2.0 @@ -18,7 +18,7 @@ pipeline: with: repository: https://github.com/gohugoio/hugo tag: v${{package.version}} - expected-commit: 3f35721fb2c75a1f7cc5a7a14400b66e73d4b06e + expected-commit: a9b0b95ef402a1cc70bc5386d649d947e2bcc027 - uses: go/bump with: From a6dac4941577b8cf7f1f33d7b1f3e60d195ea8ce Mon Sep 17 00:00:00 2001 From: Evan Gibler <20933572+egibs@users.noreply.github.com> Date: Mon, 23 Dec 2024 12:37:28 -0600 Subject: [PATCH 29/41] yara-x: new package (#38264) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit This PR adds a new package for `yara-x` which is a replacement for Yara written in Rust. We plan on leveraging this for malcontent at some point, but its general availability would be nice since it takes a while to build and install locally. ### Pre-review Checklist `make package/yara-x` runs successfully `make test/yara-x` runs successfully #### For new package PRs only - [ ] This PR is marked as fixing a pre-existing package request bug - [ ] Alternatively, the PR is marked as related to a pre-existing package request bug, such as a dependency - [x] REQUIRED - The package is available under an OSI-approved or FSF-approved license - [x] REQUIRED - The version of the package is still receiving security updates - [ ] This PR links to the upstream project's support policy (e.g. `endoflife.date`) Signed-off-by: egibs <20933572+egibs@users.noreply.github.com> --- yara-x.yaml | 69 +++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 69 insertions(+) create mode 100644 yara-x.yaml diff --git a/yara-x.yaml b/yara-x.yaml new file mode 100644 index 00000000000..f8471535dd8 --- /dev/null +++ b/yara-x.yaml @@ -0,0 +1,69 @@ +package: + name: yara-x + version: 0.12.0 + epoch: 0 + description: "A rewrite of YARA in Rust." + copyright: + - license: BSD-3-Clause + +environment: + contents: + packages: + - build-base + - ca-certificates-bundle + - openssl-dev + - perl + - rust + - wolfi-base + +pipeline: + - uses: git-checkout + with: + repository: https://github.com/VirusTotal/yara-x + expected-commit: d2b8358879c009f41f0e14847681f2f8dbe624cf + tag: v${{package.version}} + + - runs: cargo install cargo-c --features=vendored-openssl + + - runs: cargo cinstall -p yara-x-capi --release --prefix=/usr --pkgconfigdir=/usr/lib/pkgconfig --includedir=/usr/include --libdir=/usr/lib + +subpackages: + - name: yara-x-compat + dependencies: + runtime: + - ${{package.name}} + pipeline: + - runs: | + mkdir -p ${{targets.subpkgdir}}/usr/local/include + mkdir -p ${{targets.subpkgdir}}/usr/local/lib + mkdir -p ${{targets.subpkgdir}}/usr/local/lib/pkgconfig + cp -a /usr/lib/libyara_x_capi* ${{targets.subpkgdir}}/usr/local/lib/ + cp /usr/lib/pkgconfig/yara_x_capi.pc ${{targets.subpkgdir}}/usr/local/lib/pkgconfig/ + cp /usr/include/yara_x.h ${{targets.subpkgdir}}/usr/local/include/ + +update: + enabled: true + github: + identifier: VirusTotal/yara-x + strip-prefix: v + +test: + environment: + contents: + packages: + - gcc + - glibc-dev + - pkgconf-dev + - ${{package.name}}-compat + pipeline: + - runs: | + cat < test.c + #include + int main() { + YRX_RULES* rules; + yrx_compile("rule dummy { condition: true }", &rules); + yrx_rules_destroy(rules); + } + EOF + + gcc `pkg-config --cflags yara_x_capi` `pkg-config --libs yara_x_capi` test.c From 13644f25abd7e31da5ca7871f6d2494adb95afd1 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 19:03:12 +0000 Subject: [PATCH 30/41] temporal-server/1.26.2 package update (#38268)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- temporal-server.yaml | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/temporal-server.yaml b/temporal-server.yaml index 757b3ffd062..be5eb50772c 100644 --- a/temporal-server.yaml +++ b/temporal-server.yaml @@ -1,7 +1,7 @@ package: name: temporal-server - version: 1.25.2 - epoch: 2 + version: 1.26.2 + epoch: 0 description: Temporal server executes units of application logic, Workflows, in a resilient manner that automatically handles intermittent failures, and retries failed operations copyright: - license: MIT @@ -26,11 +26,11 @@ pipeline: with: repository: https://github.com/temporalio/temporal tag: v${{package.version}} - expected-commit: 9129d9c7e9870e132e09db679562d0217f1dfb39 + expected-commit: 4151e25df8096ca254b79518c1eb7fc125871756 - uses: go/bump with: - deps: github.com/golang-jwt/jwt/v4@v4.5.1 golang.org/x/crypto@v0.31.0 golang.org/x/net@v0.33.0 + deps: golang.org/x/crypto@v0.31.0 golang.org/x/net@v0.33.0 - runs: | make bins From 694e571e88f5ec63f2af3c7942baa1a69ef8f99b Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 20:03:33 +0000 Subject: [PATCH 31/41] external-secrets-operator/0.12.1 package update (#38272)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- external-secrets-operator.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/external-secrets-operator.yaml b/external-secrets-operator.yaml index 8e2d1a90016..e8d60ac85af 100644 --- a/external-secrets-operator.yaml +++ b/external-secrets-operator.yaml @@ -1,6 +1,6 @@ package: name: external-secrets-operator - version: 0.12.0 + version: 0.12.1 epoch: 0 description: Integrate external secret management systems with Kubernetes copyright: @@ -11,7 +11,7 @@ pipeline: with: repository: https://github.com/external-secrets/external-secrets tag: v${{package.version}} - expected-commit: 2b4e4a3bc7c458b8c7405ad0c56a4a45fe088687 + expected-commit: 21205d3a093f9081ec79a7b0d1a8703363e95f2f - uses: go/build with: From 8f60afdd3d14a2910eee3e8a19f0899603cb0f67 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 20:03:49 +0000 Subject: [PATCH 32/41] pluto/5.21.0 package update (#38269)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- pluto.yaml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/pluto.yaml b/pluto.yaml index 3109bb294e9..dc033d2569a 100644 --- a/pluto.yaml +++ b/pluto.yaml @@ -1,7 +1,7 @@ package: name: pluto - version: 5.20.3 - epoch: 1 + version: 5.21.0 + epoch: 0 description: A cli tool to help discover deprecated apiVersions in Kubernetes copyright: - license: Apache-2.0 @@ -11,7 +11,7 @@ pipeline: with: repository: https://github.com/FairwindsOps/pluto tag: v${{package.version}} - expected-commit: bed05e30b6932aec8ee6615ddc88310fc959e248 + expected-commit: 8f45ff5c56e1142fb39ba422f9dee52f8309d214 - uses: go/bump with: From 1e030c5660507615fb28ffba46ef93539bd57293 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 20:04:15 +0000 Subject: [PATCH 33/41] opentelemetry-operator/0.116.0 package update (#38270)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- opentelemetry-operator.yaml | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/opentelemetry-operator.yaml b/opentelemetry-operator.yaml index adf4d12539f..6bb7c298b26 100644 --- a/opentelemetry-operator.yaml +++ b/opentelemetry-operator.yaml @@ -1,7 +1,7 @@ package: name: opentelemetry-operator - version: 0.115.0 - epoch: 1 + version: 0.116.0 + epoch: 0 description: Kubernetes Operator for OpenTelemetry Collector copyright: - license: Apache-2.0 @@ -11,11 +11,11 @@ pipeline: with: repository: https://github.com/open-telemetry/opentelemetry-operator tag: v${{package.version}} - expected-commit: 1f6d499a188bb785104c0467ebdbd382c870672e + expected-commit: 2b0f9d3843b416860fa3b2b175c575dc81e7d64e - uses: go/bump with: - deps: golang.org/x/crypto@v0.31.0 golang.org/x/net@v0.33.0 + deps: golang.org/x/net@v0.33.0 modroot: . - uses: go/build From 59a008c3acdb3ca9b4d3042f5a71aaf2e570ed77 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 20:04:33 +0000 Subject: [PATCH 34/41] victoriametrics-operator/0.51.2 package update (#38271)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- victoriametrics-operator.yaml | 8 ++------ 1 file changed, 2 insertions(+), 6 deletions(-) diff --git a/victoriametrics-operator.yaml b/victoriametrics-operator.yaml index 768d0ec3527..00602c85662 100644 --- a/victoriametrics-operator.yaml +++ b/victoriametrics-operator.yaml @@ -1,6 +1,6 @@ package: name: victoriametrics-operator - version: 0.51.1 + version: 0.51.2 epoch: 0 description: Kubernetes operator for Victoria Metrics copyright: @@ -9,14 +9,10 @@ package: pipeline: - uses: git-checkout with: - expected-commit: a8b149e583be38e2c2795b0e10aca0018f71fea6 + expected-commit: 985552d731a6957fd6d737ad3186ebf41d6e8270 repository: https://github.com/VictoriaMetrics/operator tag: v${{package.version}} - - uses: go/bump - with: - deps: golang.org/x/net@v0.33.0 - - uses: go/build with: modroot: ./cmd From d47b0c7acc08688843957721836cdc855a2d5f55 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 21:03:13 +0000 Subject: [PATCH 35/41] aws-cli-2/2.22.23 package update (#38275)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- aws-cli-2.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/aws-cli-2.yaml b/aws-cli-2.yaml index 8ca2d8bd77d..deff5c21b1d 100644 --- a/aws-cli-2.yaml +++ b/aws-cli-2.yaml @@ -2,7 +2,7 @@ #nolint:documentation package: name: aws-cli-2 - version: 2.22.22 + version: 2.22.23 epoch: 0 description: "Universal Command Line Interface for Amazon Web Services (v2)" copyright: @@ -33,7 +33,7 @@ pipeline: - uses: git-checkout with: repository: https://github.com/aws/aws-cli - expected-commit: d1051fc853f830d0b57f65c41965fa02da90062e + expected-commit: de43a3e9ba637457f6e8e73e87c42cdef103e916 tag: ${{package.version}} - runs: | From 85ad87dab673e1df109dc85a5dab2375ab4b052e Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 21:03:28 +0000 Subject: [PATCH 36/41] py3-boto3/1.35.87 package update (#38273)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- py3-boto3.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/py3-boto3.yaml b/py3-boto3.yaml index 3228f3dd62e..b6fc12542cc 100644 --- a/py3-boto3.yaml +++ b/py3-boto3.yaml @@ -1,6 +1,6 @@ package: name: py3-boto3 - version: 1.35.86 + version: 1.35.87 epoch: 0 description: The AWS SDK for Python copyright: @@ -28,7 +28,7 @@ environment: pipeline: - uses: fetch with: - expected-sha256: d61476fdd5a5388503b72c897083310d2329ce088593c4332b571a860be5d155 + expected-sha256: 341c58602889078a4a25dc4331b832b5b600a33acd73471d2532c6f01b16fbb4 uri: https://files.pythonhosted.org/packages/source/b/boto3/boto3-${{package.version}}.tar.gz subpackages: From 0fcaa73768f2fca533574d311f51fa09670914dd Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 21:03:42 +0000 Subject: [PATCH 37/41] py3-botocore/1.35.87 package update (#38274)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- py3-botocore.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/py3-botocore.yaml b/py3-botocore.yaml index 0abe134dcaa..e997d2e5c7c 100644 --- a/py3-botocore.yaml +++ b/py3-botocore.yaml @@ -1,6 +1,6 @@ package: name: py3-botocore - version: 1.35.86 + version: 1.35.87 epoch: 0 description: The low-level, core functionality of Boto3 copyright: @@ -29,7 +29,7 @@ pipeline: - uses: fetch with: uri: https://files.pythonhosted.org/packages/source/b/botocore/botocore-${{package.version}}.tar.gz - expected-sha256: 951e944eb30284b4593d4da98f70f7b5292ea237e4de0c5a2852946a549b8347 + expected-sha256: 3062d073ce4170a994099270f469864169dc1a1b8b3d4a21c14ce0ae995e0f89 subpackages: - range: py-versions From ead9fd53fd5fab5404868d3701ac73014563442f Mon Sep 17 00:00:00 2001 From: Juan Mesaglio Date: Mon, 23 Dec 2024 18:09:33 -0300 Subject: [PATCH 38/41] package: perl-mozilla-ca (#37470) Signed-off-by: Juan Mesaglio --- perl-mozilla-ca.yaml | 68 ++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 68 insertions(+) create mode 100644 perl-mozilla-ca.yaml diff --git a/perl-mozilla-ca.yaml b/perl-mozilla-ca.yaml new file mode 100644 index 00000000000..6c9e8420fc0 --- /dev/null +++ b/perl-mozilla-ca.yaml @@ -0,0 +1,68 @@ +package: + name: perl-mozilla-ca + version: "20240924" + epoch: 0 + description: Mozilla's CA cert bundle in PEM format + copyright: + - license: MPL-2.0 + +environment: + contents: + packages: + - autoconf + - automake + - build-base + - ca-certificates-bundle + - openssf-compiler-options + - perl + +pipeline: + - uses: fetch + with: + expected-sha256: c4b1412bbc37dff8cf29af6f92cb47defbe90eebcbc29e407a98638f7a31bcd0 + uri: https://cpan.metacpan.org/authors/id/L/LW/LWP/Mozilla-CA-${{package.version}}.tar.gz + + - uses: perl/make + + - uses: autoconf/make + + - uses: autoconf/make-install + + - uses: perl/cleanup + + - uses: strip + +subpackages: + - name: perl-mozilla-ca-doc + pipeline: + - uses: split/manpages + description: perl-mozilla-ca manpages + +test: + environment: + contents: + packages: + - perl + pipeline: + - name: Test + runs: | + cat < mozilla-ca.pl + use strict; + use warnings; + + eval { + require Mozilla::CA; + Mozilla::CA->import(); + }; + if (\$@) { + print "Failed to load Mozilla::CA\n"; + exit 1; + } + EOF + + perl mozilla-ca.pl + +update: + enabled: true + release-monitor: + identifier: 3136 From dc6fb7fa4177b964817f5928c750aa5a4f875979 Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 13:31:04 -0800 Subject: [PATCH 39/41] Delete VersionStream for mattermost-10.2 (#38152) Co-authored-by: octo-sts[bot] <157150467+octo-sts@users.noreply.github.com> --- mattermost-10.2.yaml | 226 ------------------------------------------- 1 file changed, 226 deletions(-) delete mode 100644 mattermost-10.2.yaml diff --git a/mattermost-10.2.yaml b/mattermost-10.2.yaml deleted file mode 100644 index aefe992bead..00000000000 --- a/mattermost-10.2.yaml +++ /dev/null @@ -1,226 +0,0 @@ -package: - name: mattermost-10.2 - # Note the npm version has been pinned to 10.8.3 to avoid the error: - # "npm error notsup Required: {"node":">=18.10.0","npm":"^9.0.0 || ^10.0.0"}" - version: 10.2.1 - epoch: 2 - description: "Mattermost is an open source platform for secure collaboration across the entire software development lifecycle." - copyright: - - license: MIT - - license: Apache-2.0 - - license: AGPL-3.0-only - dependencies: - provides: - - mattermost=${{package.full-version}} - runtime: - - bash - - tzdata - -environment: - contents: - packages: - - autoconf - - automake - - bash - - build-base - - ca-certificates-bundle - - curl - - gnupg-scdaemon - - go - - gpg - - libimagequant-dev - - libpng-dev - - libtool - - nodejs-20 - - npm=10.8.3 # Have to specify older version, or: "npm error notsup Required: {"node":">=18.10.0","npm":"^9.0.0 || ^10.0.0"}" - - pkgconf-dev - - posix-libc-utils - - wolfi-base - - xmlsec-openssl - - zlib-dev - -pipeline: - - uses: git-checkout - with: - repository: https://github.com/mattermost/mattermost - tag: v${{package.version}} - expected-commit: d5218ee031bcd31f69a027b183cac72a6142b351 - - - runs: | - mkdir -p ${{targets.contextdir}}/usr/bin - for dir in bin data logs config plugins fonts i18n templates client test; do - mkdir -p ${{targets.contextdir}}/etc/mattermost/$dir - done - - - working-directory: server - pipeline: - - uses: go/bump - with: - deps: golang.org/x/crypto@v0.31.0 golang.org/x/net@v0.33.0 - modroot: . - tidy: false # https://github.com/mattermost/mattermost/issues/26221 - - runs: make modules-tidy - - runs: | - # Our global LDFLAGS conflict with a Makefile parameter: `flag provided but not defined: -Wl,--as-needed,-O1,--sort-common` - unset LDFLAGS - - make GOFLAGS="" config-reset - make BUILD_ENTERPRISE=false BUILD_ENTERPRISE_READY=false BUILD_NUMBER=chainguard build-cmd - make BUILD_ENTERPRISE=false BUILD_ENTERPRISE_READY=false package-linux - - mv ./bin/mattermost ${{targets.contextdir}}/usr/bin/ - mv ./bin/mmctl ${{targets.contextdir}}/usr/bin/ - mv ./dist/mattermost/* ${{targets.contextdir}}/etc/mattermost/ - cp -a ./i18n/* ${{targets.contextdir}}/etc/mattermost/i18n/ - - mkdir -p ${{targets.contextdir}}/etc/mattermost/client/plugins - - cp ./config/config.json ${{targets.contextdir}}/etc/mattermost/config/config.json - cp ./build/MIT-COMPILED-LICENSE.md ${{targets.contextdir}}/etc/mattermost/MIT-COMPILED-LICENSE.md - cp ../LICENSE.txt ${{targets.contextdir}}/etc/mattermost/LICENSE.txt - cp ./build/entrypoint.sh ${{targets.contextdir}}/usr/bin/entrypoint.sh - - - uses: strip - -subpackages: - - name: ${{package.name}}-compat - description: Compatibility package to place binaries in the location expected by upstream Dockerfile - pipeline: - - runs: | - mkdir -p ${{targets.contextdir}}/mattermost - for dir in data logs config plugins fonts i18n templates client; do - ln -sf /etc/mattermost/$dir ${{targets.contextdir}}/mattermost/$dir - done - mkdir -p ${{targets.contextdir}}/mattermost/bin - ln -sf /usr/bin/mattermost ${{targets.contextdir}}/mattermost/bin/mattermost - ln -sf /usr/bin/mmctl ${{targets.contextdir}}/mattermost/bin/mmctl - ln -sf /usr/bin/entrypoint.sh ${{targets.contextdir}}/entrypoint.sh - -update: - enabled: true - github: - identifier: mattermost/mattermost - strip-prefix: v - tag-filter: v10.2 - -test: - environment: - contents: - packages: - - curl - - postgresql - - postgresql-client - - shadow - - sudo-rs - - glibc-locales - - ${{package.name}}-compat - - exim - environment: - PGDATA: /tmp/test_db - PGUSER: mmuser - PGPASS: mostest - PGDB: mattermost_test - pipeline: - - name: "Check binaries" - runs: | - mattermost version - mmctl version - entrypoint.sh --help - mattermost --help - mmctl --help - - name: "Fetch database dump" - runs: | - curl https://raw.githubusercontent.com/mattermost/mattermost/v${{package.version}}/server/scripts/mattermost-postgresql-6.0.0.sql -o /etc/mattermost/test/mattermost-postgresql-6.0.0.sql - - name: "Prepare database" - runs: | - useradd postgres - sudo -u postgres initdb -D ${PGDATA} - sudo -u postgres pg_ctl -D ${PGDATA} -l /tmp/logfile start - sudo -u postgres createdb ${PGDB} - sudo -u postgres psql -d postgres -c "CREATE USER ${PGUSER} WITH PASSWORD '${PGPASS}';" - sudo -u postgres psql -d ${PGDB} -c "GRANT ALL PRIVILEGES ON SCHEMA public TO ${PGUSER};" - sudo -u postgres psql -U $PGUSER -d $PGDB -f /etc/mattermost/test/mattermost-postgresql-6.0.0.sql - - name: "Prepare mailserver on port 10025" - runs: | - cat < /etc/exim/exim.conf - # Minimal Exim configuration - - # Main configuration - primary_hostname = localhost - daemon_smtp_ports = 10025 - spool_directory = /var/spool/exim - log_file_path = /var/log/exim/%s - - # Routers - begin routers - localuser: - driver = accept - check_local_user - transport = local_delivery - - # Transports - begin transports - remote_smtp: - driver = smtp - - local_delivery: - driver = appendfile - file = /var/mail/\${local_part} - delivery_date_add - envelope_to_add - return_path_add - EOF - mkdir -p /var/spool/exim /var/log/exim /var/mail - addgroup -S exim - adduser -S -G exim exim - chown -R exim:exim /var/spool/exim /var/log/exim /var/mail - exim -bd -oX 10025 & - - name: "Run application" - runs: | - cd /mattermost # Set working directory - - /entrypoint.sh mattermost > /tmp/logs.txt 2>&1 & - PID=$! - - sleep 15 # ensure that enough time is given for the logs to get written - - logs_to_expect=" - Server is initializing... - Starting websocket hubs - Loaded system translations - Loaded config - Starting workers - Starting schedulers. - Starting up plugins - Server is listening on - " - - echo "$logs_to_expect" | while IFS= read -r log; do - if [ -z "$log" ]; then - continue - fi - if ! grep -F -i "$log" /tmp/logs.txt; then - cat /tmp/logs.txt - echo "Expected log '$log' not found!" - exit 1 - fi - done - - logs_to_not_expect=" - connection refused - unable to load - " - - # Use a while loop with a read command to handle multi-line strings - echo "$logs_to_not_expect" | while IFS= read -r log; do - if [ -z "$log" ]; then - continue - fi - if grep -F -i "$log" /tmp/logs.txt; then - cat /tmp/logs.txt - echo "Unexpected log '$log' found!" - exit 1 - fi - done - - kill $PID From 8a0569ddd9a709ce3cda8b44bb92025490b17090 Mon Sep 17 00:00:00 2001 From: Brian Murray Date: Mon, 23 Dec 2024 13:54:34 -0800 Subject: [PATCH 40/41] Add the ldd-check test pipeline to a bunch of packages (#38276) --- apk-tools.yaml | 3 +++ btrfs-progs.yaml | 9 +++++++++ cyrus-sasl.yaml | 38 ++++++++++++++++++++++++++++++++++++++ gcc.yaml | 33 +++++++++++++++++++++++++++++++++ gdbm.yaml | 5 +++++ glibc.yaml | 20 ++++++++++++++++++++ gmp.yaml | 10 ++++++++++ inih.yaml | 8 ++++++++ iptables.yaml | 11 +++++++++++ isl.yaml | 8 ++++++++ jq.yaml | 5 +++++ libcap.yaml | 10 ++++++++++ libevent.yaml | 16 ++++++++++++++++ libffi.yaml | 9 +++++++++ libgcrypt.yaml | 5 +++++ libgpg-error.yaml | 5 +++++ libidn2.yaml | 8 ++++++++ libmnl.yaml | 8 ++++++++ libnftnl.yaml | 5 +++++ libpipeline.yaml | 8 ++++++++ libpsl.yaml | 8 ++++++++ libseccomp.yaml | 5 +++++ libtirpc.yaml | 8 ++++++++ libunistring.yaml | 8 ++++++++ libuv.yaml | 5 +++++ libxcrypt.yaml | 8 ++++++++ libxml2.yaml | 8 ++++++++ linux-pam.yaml | 9 +++++++++ lua-luv.yaml | 8 ++++++++ luajit.yaml | 5 +++++ mpc.yaml | 8 ++++++++ mpdecimal.yaml | 10 ++++++++++ mpfr.yaml | 8 ++++++++ msgpack-c.yaml | 8 ++++++++ ncurses.yaml | 13 +++++++++++++ oniguruma.yaml | 8 ++++++++ pkgconf.yaml | 5 +++++ popt.yaml | 8 ++++++++ readline.yaml | 10 ++++++++++ shadow.yaml | 5 +++++ tree-sitter.yaml | 5 +++++ unibilium.yaml | 5 +++++ userspace-rcu.yaml | 19 +++++++++++++++++++ xfsprogs.yaml | 3 +++ xz.yaml | 4 +++- zfs.yaml | 8 +++++++- zlib.yaml | 4 +++- 47 files changed, 424 insertions(+), 3 deletions(-) diff --git a/apk-tools.yaml b/apk-tools.yaml index aba0d19fcab..898af12a413 100644 --- a/apk-tools.yaml +++ b/apk-tools.yaml @@ -79,6 +79,9 @@ test: wget https://raw.githubusercontent.com/chainguard-dev/apko/71f1961fde53a10c5bd40b80dd4c00a9250dd9f7/pkg/apk/apk/testdata/rsa256-signed/APKINDEX.tar.gz -O packages/aarch64/APKINDEX.tar.gz apk --arch aarch64 --repository ./packages/ info --all alpine-baselayout apk --version + - uses: test/ldd-check + with: + files: /lib/libapk.so.2.14.0 update: enabled: false diff --git a/btrfs-progs.yaml b/btrfs-progs.yaml index 28240fd37ef..10a0b208556 100644 --- a/btrfs-progs.yaml +++ b/btrfs-progs.yaml @@ -114,3 +114,12 @@ test: # Show filesystem info btrfs inspect-internal dump-super test.img + - uses: test/ldd-check + with: + files: |- + /usr/lib/libbtrfs.so.0 + /usr/lib/libbtrfs.so.0.1 + /usr/lib/libbtrfs.so.0.1.4 + /usr/lib/libbtrfsutil.so.1 + /usr/lib/libbtrfsutil.so.1.3 + /usr/lib/libbtrfsutil.so.1.3.2 diff --git a/cyrus-sasl.yaml b/cyrus-sasl.yaml index a371695501d..ad5191c50f4 100644 --- a/cyrus-sasl.yaml +++ b/cyrus-sasl.yaml @@ -112,3 +112,41 @@ test: saslpasswd2 --version saslauthd --help sasldblistusers2 help + - uses: test/ldd-check + with: + files: |- + /usr/lib/libsasl2.so.3 + /usr/lib/libsasl2.so.3.0.0 + /usr/lib/sasl2/libanonymous.so + /usr/lib/sasl2/libanonymous.so.3 + /usr/lib/sasl2/libanonymous.so.3.0.0 + /usr/lib/sasl2/libcrammd5.so + /usr/lib/sasl2/libcrammd5.so.3 + /usr/lib/sasl2/libcrammd5.so.3.0.0 + /usr/lib/sasl2/libdigestmd5.so + /usr/lib/sasl2/libdigestmd5.so.3 + /usr/lib/sasl2/libdigestmd5.so.3.0.0 + /usr/lib/sasl2/libgs2.so + /usr/lib/sasl2/libgs2.so.3 + /usr/lib/sasl2/libgs2.so.3.0.0 + /usr/lib/sasl2/libgssapiv2.so + /usr/lib/sasl2/libgssapiv2.so.3 + /usr/lib/sasl2/libgssapiv2.so.3.0.0 + /usr/lib/sasl2/liblogin.so + /usr/lib/sasl2/liblogin.so.3 + /usr/lib/sasl2/liblogin.so.3.0.0 + /usr/lib/sasl2/libntlm.so + /usr/lib/sasl2/libntlm.so.3 + /usr/lib/sasl2/libntlm.so.3.0.0 + /usr/lib/sasl2/libplain.so + /usr/lib/sasl2/libplain.so.3 + /usr/lib/sasl2/libplain.so.3.0.0 + /usr/lib/sasl2/libsasldb.so + /usr/lib/sasl2/libsasldb.so.3 + /usr/lib/sasl2/libsasldb.so.3.0.0 + /usr/lib/sasl2/libscram.so + /usr/lib/sasl2/libscram.so.3 + /usr/lib/sasl2/libscram.so.3.0.0 + /usr/lib/sasl2/libsql.so + /usr/lib/sasl2/libsql.so.3 + /usr/lib/sasl2/libsql.so.3.0.0 diff --git a/gcc.yaml b/gcc.yaml index 5ad0c7f7e46..3e69ea6055b 100644 --- a/gcc.yaml +++ b/gcc.yaml @@ -350,6 +350,39 @@ test: - uses: test/compiler-hardening-check with: cc: gcc + - uses: test/ldd-check + with: + files: |- + /usr/lib/gcc/x86_64-pc-linux-gnu/14/plugin/libcc1plugin.so + /usr/lib/gcc/x86_64-pc-linux-gnu/14/plugin/libcc1plugin.so.0 + /usr/lib/gcc/x86_64-pc-linux-gnu/14/plugin/libcc1plugin.so.0.0.0 + /usr/lib/gcc/x86_64-pc-linux-gnu/14/plugin/libcp1plugin.so + /usr/lib/gcc/x86_64-pc-linux-gnu/14/plugin/libcp1plugin.so.0 + /usr/lib/gcc/x86_64-pc-linux-gnu/14/plugin/libcp1plugin.so.0.0.0 + /usr/lib/libasan.so + /usr/lib/libasan.so.8 + /usr/lib/libasan.so.8.0.0 + /usr/lib/libatomic.so + /usr/lib/libcc1.so + /usr/lib/libcc1.so.0 + /usr/lib/libcc1.so.0.0.0 + /usr/lib/libgomp.so + /usr/lib/libhwasan.so + /usr/lib/libhwasan.so.0 + /usr/lib/libhwasan.so.0.0.0 + /usr/lib/libitm.so + /usr/lib/libitm.so.1 + /usr/lib/libitm.so.1.0.0 + /usr/lib/liblsan.so + /usr/lib/liblsan.so.0 + /usr/lib/liblsan.so.0.0.0 + /usr/lib/libquadmath.so + /usr/lib/libtsan.so + /usr/lib/libtsan.so.2 + /usr/lib/libtsan.so.2.0.0 + /usr/lib/libubsan.so + /usr/lib/libubsan.so.1 + /usr/lib/libubsan.so.1.0.0 update: enabled: true diff --git a/gdbm.yaml b/gdbm.yaml index c2c151f8df8..552e53c8566 100644 --- a/gdbm.yaml +++ b/gdbm.yaml @@ -58,3 +58,8 @@ test: gdbm_dump --help gdbm_load --help gdbmtool --help + - uses: test/ldd-check + with: + files: |- + /usr/lib/libgdbm.so.6 + /usr/lib/libgdbm.so.6.0.0 diff --git a/glibc.yaml b/glibc.yaml index 881d76ab00b..daab1ebb929 100644 --- a/glibc.yaml +++ b/glibc.yaml @@ -614,6 +614,26 @@ test: ldconfig --help ld.so --version ld.so --help + - uses: test/ldd-check + with: + files: |- + /lib/libBrokenLocale.so.1 + /lib/libanl.so.1 + /lib/libc.so.6 + /lib/libc_malloc_debug.so.0 + /lib/libdl.so.2 + /lib/libm.so.6 + /lib/libmvec.so.1 + /lib/libnsl.so.1 + /lib/libnss_compat.so.2 + /lib/libnss_dns.so.2 + /lib/libnss_files.so.2 + /lib/libpthread.so.0 + /lib/libresolv.so.2 + /lib/librt.so.1 + /lib/libthread_db.so.1 + /lib/libutil.so.1 + /usr/bin/ld.so update: enabled: true diff --git a/gmp.yaml b/gmp.yaml index 316dc668dae..3096b61f9c7 100644 --- a/gmp.yaml +++ b/gmp.yaml @@ -54,3 +54,13 @@ update: enabled: true release-monitor: identifier: 1186 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libgmp.so.10 + /usr/lib/libgmp.so.10.5.0 + /usr/lib/libgmpxx.so.4 + /usr/lib/libgmpxx.so.4.7.0 diff --git a/inih.yaml b/inih.yaml index 9e0b56b780a..4962abcb71c 100644 --- a/inih.yaml +++ b/inih.yaml @@ -62,3 +62,11 @@ update: strip-prefix: r use-tag: true tag-filter: r + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libINIReader.so.0 + /usr/lib/libinih.so.0 diff --git a/iptables.yaml b/iptables.yaml index b0a9641fc21..c1a8cd962fe 100644 --- a/iptables.yaml +++ b/iptables.yaml @@ -178,3 +178,14 @@ test: iptables-nft-restore --help iptables-restore --help iptables-translate --help + - uses: test/ldd-check + with: + files: |- + /usr/lib/libip4tc.so.2 + /usr/lib/libip4tc.so.2.0.0 + /usr/lib/libip6tc.so.2 + /usr/lib/libip6tc.so.2.0.0 + /usr/lib/libipq.so.0 + /usr/lib/libipq.so.0.0.0 + /usr/lib/libxtables.so.12 + /usr/lib/libxtables.so.12.7.0 diff --git a/isl.yaml b/isl.yaml index 4d5cb40dd83..faff5dbfa35 100644 --- a/isl.yaml +++ b/isl.yaml @@ -60,3 +60,11 @@ update: manual: true # originally skipped, let's be careful upgrading this package release-monitor: identifier: 13286 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libisl.so.23 + /usr/lib/libisl.so.23.4.0 diff --git a/jq.yaml b/jq.yaml index ad7b67910b7..fb078d4f36a 100644 --- a/jq.yaml +++ b/jq.yaml @@ -76,3 +76,8 @@ test: - name: Using jq to transform JSON structure runs: | echo '[{"id":1,"name":"John"},{"id":2,"name":"Jane"}]' | jq '{users: map({userId: .id, userName: .name})}' | grep -E '"userId": 1|"userId": 2' || exit 1 + - uses: test/ldd-check + with: + files: |- + /usr/lib/libjq.so.1 + /usr/lib/libjq.so.1.0.4 diff --git a/libcap.yaml b/libcap.yaml index bb40099ded1..904ab040523 100644 --- a/libcap.yaml +++ b/libcap.yaml @@ -79,3 +79,13 @@ update: enabled: true release-monitor: identifier: 1569 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libcap.so.2 + /usr/lib/libcap.so.2.71 + /usr/lib/libpsx.so.2 + /usr/lib/libpsx.so.2.71 diff --git a/libevent.yaml b/libevent.yaml index 635b78961af..57e78784280 100644 --- a/libevent.yaml +++ b/libevent.yaml @@ -70,3 +70,19 @@ update: identifier: libevent/libevent strip-prefix: release- strip-suffix: -stable + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libevent-2.1.so.7 + /usr/lib/libevent-2.1.so.7.0.1 + /usr/lib/libevent_core-2.1.so.7 + /usr/lib/libevent_core-2.1.so.7.0.1 + /usr/lib/libevent_extra-2.1.so.7 + /usr/lib/libevent_extra-2.1.so.7.0.1 + /usr/lib/libevent_openssl-2.1.so.7 + /usr/lib/libevent_openssl-2.1.so.7.0.1 + /usr/lib/libevent_pthreads-2.1.so.7 + /usr/lib/libevent_pthreads-2.1.so.7.0.1 diff --git a/libffi.yaml b/libffi.yaml index 30a1bd228f7..e9f16c05c94 100644 --- a/libffi.yaml +++ b/libffi.yaml @@ -72,3 +72,12 @@ update: github: identifier: libffi/libffi strip-prefix: v + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib64/libffi.so + /usr/lib64/libffi.so.8 + /usr/lib64/libffi.so.8.1.4 diff --git a/libgcrypt.yaml b/libgcrypt.yaml index a2e4bac3f22..6a60f168fde 100644 --- a/libgcrypt.yaml +++ b/libgcrypt.yaml @@ -81,3 +81,8 @@ test: hmac256 --help mpicalc --version mpicalc --help + - uses: test/ldd-check + with: + files: |- + /usr/lib/libgcrypt.so.20 + /usr/lib/libgcrypt.so.20.5.0 diff --git a/libgpg-error.yaml b/libgpg-error.yaml index 5554e6f4e5c..4d28194e473 100644 --- a/libgpg-error.yaml +++ b/libgpg-error.yaml @@ -78,3 +78,8 @@ test: yat2m --version gpg-error --help yat2m --help + - uses: test/ldd-check + with: + files: |- + /usr/lib/libgpg-error.so.0 + /usr/lib/libgpg-error.so.0.38.0 diff --git a/libidn2.yaml b/libidn2.yaml index 5180830c6b1..68a63fe54c2 100644 --- a/libidn2.yaml +++ b/libidn2.yaml @@ -75,3 +75,11 @@ update: enabled: true release-monitor: identifier: 5597 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libidn2.so.0 + /usr/lib/libidn2.so.0.4.0 diff --git a/libmnl.yaml b/libmnl.yaml index b114d5ec6a7..3c743225cb6 100644 --- a/libmnl.yaml +++ b/libmnl.yaml @@ -61,3 +61,11 @@ update: enabled: true release-monitor: identifier: 1663 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libmnl.so.0 + /usr/lib/libmnl.so.0.2.0 diff --git a/libnftnl.yaml b/libnftnl.yaml index 96bd8da1b72..c53d2b9f065 100644 --- a/libnftnl.yaml +++ b/libnftnl.yaml @@ -78,3 +78,8 @@ test: # Run the application ./test + - uses: test/ldd-check + with: + files: |- + /usr/lib/libnftnl.so.11 + /usr/lib/libnftnl.so.11.6.0 diff --git a/libpipeline.yaml b/libpipeline.yaml index 00a2dbf1268..9cb3c74ec0e 100644 --- a/libpipeline.yaml +++ b/libpipeline.yaml @@ -51,3 +51,11 @@ update: enabled: true release-monitor: identifier: 1704 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libpipeline.so.1 + /usr/lib/libpipeline.so.1.5.8 diff --git a/libpsl.yaml b/libpsl.yaml index 2245b932b9e..28ca9f7eaab 100644 --- a/libpsl.yaml +++ b/libpsl.yaml @@ -85,3 +85,11 @@ update: - "^debian.*" github: identifier: rockdaboot/libpsl + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libpsl.so.5 + /usr/lib/libpsl.so.5.3.5 diff --git a/libseccomp.yaml b/libseccomp.yaml index 8b1f8063816..5c8342f14c6 100644 --- a/libseccomp.yaml +++ b/libseccomp.yaml @@ -70,3 +70,8 @@ test: - runs: | scmp_sys_resolver version scmp_sys_resolver help + - uses: test/ldd-check + with: + files: |- + /usr/lib/libseccomp.so.2 + /usr/lib/libseccomp.so.2.5.5 diff --git a/libtirpc.yaml b/libtirpc.yaml index 186f7f16a71..54b31e70111 100644 --- a/libtirpc.yaml +++ b/libtirpc.yaml @@ -91,3 +91,11 @@ update: enabled: true release-monitor: identifier: 1740 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libtirpc.so.3 + /usr/lib/libtirpc.so.3.0.0 diff --git a/libunistring.yaml b/libunistring.yaml index f40e090cbab..230ddafad6f 100644 --- a/libunistring.yaml +++ b/libunistring.yaml @@ -66,3 +66,11 @@ update: enabled: true release-monitor: identifier: 1747 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libunistring.so.5 + /usr/lib/libunistring.so.5.2.0 diff --git a/libuv.yaml b/libuv.yaml index c64327fd2a4..489104bd782 100644 --- a/libuv.yaml +++ b/libuv.yaml @@ -81,3 +81,8 @@ test: gcc test_libuv.c -o test_libuv -luv || (echo "libuv test compilation failed!" && exit 1) ./test_libuv || (echo "libuv test failed!" && exit 1) + - uses: test/ldd-check + with: + files: |- + /usr/lib/libuv.so.1 + /usr/lib/libuv.so.1.0.0 diff --git a/libxcrypt.yaml b/libxcrypt.yaml index 57c800ab903..fe0c33c8c3e 100644 --- a/libxcrypt.yaml +++ b/libxcrypt.yaml @@ -84,3 +84,11 @@ update: identifier: besser82/libxcrypt strip-prefix: v use-tag: true + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libcrypt.so.1 + /usr/lib/libcrypt.so.1.1.0 diff --git a/libxml2.yaml b/libxml2.yaml index 8fcfc8d7a71..09372b945e7 100644 --- a/libxml2.yaml +++ b/libxml2.yaml @@ -144,3 +144,11 @@ update: enabled: true release-monitor: identifier: 1783 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libxml2.so.2 + /usr/lib/libxml2.so.2.13.5 diff --git a/linux-pam.yaml b/linux-pam.yaml index 7136babdd7b..7b38858fcac 100644 --- a/linux-pam.yaml +++ b/linux-pam.yaml @@ -93,3 +93,12 @@ test: fi pam_namespace_helper --version pam_namespace_helper --help + - uses: test/ldd-check + with: + files: |- + /usr/lib/libpam.so.0 + /usr/lib/libpam.so.0.85.1 + /usr/lib/libpam_misc.so.0 + /usr/lib/libpam_misc.so.0.82.1 + /usr/lib/libpamc.so.0 + /usr/lib/libpamc.so.0.82.1 diff --git a/lua-luv.yaml b/lua-luv.yaml index 509d62b983e..0913147f54b 100644 --- a/lua-luv.yaml +++ b/lua-luv.yaml @@ -71,3 +71,11 @@ update: identifier: luvit/luv strip-prefix: v use-tag: true + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libluv.so.1 + /usr/lib/libluv.so.1.48.0 diff --git a/luajit.yaml b/luajit.yaml index 108980c2a3e..0efd39111ae 100644 --- a/luajit.yaml +++ b/luajit.yaml @@ -53,3 +53,8 @@ test: lua -v luajit -v luajit-2.1.0-beta3 -v + - uses: test/ldd-check + with: + files: |- + /usr/lib/libluajit-5.1.so.2 + /usr/lib/libluajit-5.1.so.2.1.0 diff --git a/mpc.yaml b/mpc.yaml index 4e1c25d6f1f..175f8054cb4 100644 --- a/mpc.yaml +++ b/mpc.yaml @@ -61,3 +61,11 @@ update: enabled: true release-monitor: identifier: 1667 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libmpc.so.3 + /usr/lib/libmpc.so.3.3.1 diff --git a/mpdecimal.yaml b/mpdecimal.yaml index b35aecf8127..5a669aa975f 100644 --- a/mpdecimal.yaml +++ b/mpdecimal.yaml @@ -49,3 +49,13 @@ update: enabled: true release-monitor: identifier: 11578 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libmpdec++.so.4 + /usr/lib/libmpdec++.so.4.0.0 + /usr/lib/libmpdec.so.4 + /usr/lib/libmpdec.so.4.0.0 diff --git a/mpfr.yaml b/mpfr.yaml index 010cb79252d..81a9e900d1b 100644 --- a/mpfr.yaml +++ b/mpfr.yaml @@ -60,3 +60,11 @@ update: enabled: true release-monitor: identifier: 2019 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libmpfr.so.6 + /usr/lib/libmpfr.so.6.2.1 diff --git a/msgpack-c.yaml b/msgpack-c.yaml index 6fd56d89374..7539fdd26ae 100644 --- a/msgpack-c.yaml +++ b/msgpack-c.yaml @@ -55,3 +55,11 @@ update: enabled: true release-monitor: identifier: 235285 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libmsgpack-c.so.2 + /usr/lib/libmsgpack-c.so.2.0.0 diff --git a/ncurses.yaml b/ncurses.yaml index e75f6643274..a5e1a8072e9 100644 --- a/ncurses.yaml +++ b/ncurses.yaml @@ -173,3 +173,16 @@ test: tput -V tset -V toe help + - uses: test/ldd-check + with: + files: |- + /usr/lib/libformw.so.6 + /usr/lib/libformw.so.6.5 + /usr/lib/libmenuw.so.6 + /usr/lib/libmenuw.so.6.5 + /usr/lib/libncursesw.so.6 + /usr/lib/libncursesw.so.6.5 + /usr/lib/libpanelw.so.6 + /usr/lib/libpanelw.so.6.5 + /usr/lib/libtinfo.so.6 + /usr/lib/libtinfo.so.6.5 diff --git a/oniguruma.yaml b/oniguruma.yaml index 137d739d85d..1f696e75fb4 100644 --- a/oniguruma.yaml +++ b/oniguruma.yaml @@ -58,3 +58,11 @@ update: identifier: kkos/oniguruma strip-prefix: v use-tag: true + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libonig.so.5 + /usr/lib/libonig.so.5.4.0 diff --git a/pkgconf.yaml b/pkgconf.yaml index 63cd9fe343f..8079ea7635a 100644 --- a/pkgconf.yaml +++ b/pkgconf.yaml @@ -158,3 +158,8 @@ test: runs: | pkgconf --libs --static zlib pkgconf --libs --shared zlib + - uses: test/ldd-check + with: + files: |- + /usr/lib/libpkgconf.so.5 + /usr/lib/libpkgconf.so.5.0.0 diff --git a/popt.yaml b/popt.yaml index 84d28fc14b1..3c31146bee8 100644 --- a/popt.yaml +++ b/popt.yaml @@ -54,3 +54,11 @@ update: enabled: true release-monitor: identifier: 3689 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libpopt.so.0 + /usr/lib/libpopt.so.0.0.2 diff --git a/readline.yaml b/readline.yaml index 4f8e5b5625a..c4034be1f17 100644 --- a/readline.yaml +++ b/readline.yaml @@ -68,3 +68,13 @@ update: enabled: true release-monitor: identifier: 4173 + +test: + pipeline: + - uses: test/ldd-check + with: + files: |- + /usr/lib/libhistory.so.8 + /usr/lib/libhistory.so.8.2 + /usr/lib/libreadline.so.8 + /usr/lib/libreadline.so.8.2 diff --git a/shadow.yaml b/shadow.yaml index a02ee8d42b1..e3dc09fd38c 100644 --- a/shadow.yaml +++ b/shadow.yaml @@ -202,3 +202,8 @@ test: logoutd --help useradd version userdel version + - uses: test/ldd-check + with: + files: |- + /usr/lib/libsubid.so.5 + /usr/lib/libsubid.so.5.0.0 diff --git a/tree-sitter.yaml b/tree-sitter.yaml index 55066b7740f..57a0d8a977b 100644 --- a/tree-sitter.yaml +++ b/tree-sitter.yaml @@ -73,3 +73,8 @@ test: $(pkg-config --libs tree-sitter) \ -o test_parser ./test_parser + - uses: test/ldd-check + with: + files: |- + /usr/lib/libtree-sitter.so.0 + /usr/lib/libtree-sitter.so.0.24 diff --git a/unibilium.yaml b/unibilium.yaml index 6be682d7974..9902f7b534d 100644 --- a/unibilium.yaml +++ b/unibilium.yaml @@ -78,3 +78,8 @@ test: # Run the test program ./test_unibilium 2>&1 | grep -q "Failed to read terminfo" + - uses: test/ldd-check + with: + files: |- + /usr/lib/libunibilium.so.4 + /usr/lib/libunibilium.so.4.0.1 diff --git a/userspace-rcu.yaml b/userspace-rcu.yaml index cdc8c36e6e8..4e3b72806ae 100644 --- a/userspace-rcu.yaml +++ b/userspace-rcu.yaml @@ -86,3 +86,22 @@ test: grep "RCU read lock acquired" output.log grep "RCU read lock released" output.log grep "RCU thread unregistered successfully" output.log + - uses: test/ldd-check + with: + files: |- + /usr/lib/liburcu-bp.so.8 + /usr/lib/liburcu-bp.so.8.1.0 + /usr/lib/liburcu-cds.so.8 + /usr/lib/liburcu-cds.so.8.1.0 + /usr/lib/liburcu-common.so.8 + /usr/lib/liburcu-common.so.8.1.0 + /usr/lib/liburcu-mb.so.8 + /usr/lib/liburcu-mb.so.8.1.0 + /usr/lib/liburcu-memb.so.8 + /usr/lib/liburcu-memb.so.8.1.0 + /usr/lib/liburcu-qsbr.so.8 + /usr/lib/liburcu-qsbr.so.8.1.0 + /usr/lib/liburcu-signal.so.8 + /usr/lib/liburcu-signal.so.8.1.0 + /usr/lib/liburcu.so.8 + /usr/lib/liburcu.so.8.1.0 diff --git a/xfsprogs.yaml b/xfsprogs.yaml index 85192ec1682..52ed44c5fd5 100644 --- a/xfsprogs.yaml +++ b/xfsprogs.yaml @@ -133,3 +133,6 @@ test: mkfs.xfs xfs.img xfs_admin -L "TestXFS" xfs.img xfs_admin -l xfs.img | grep 'TestXFS' + - uses: test/ldd-check + with: + files: /usr/lib64/libhandle.so diff --git a/xz.yaml b/xz.yaml index f0380ec9996..6a54010a247 100644 --- a/xz.yaml +++ b/xz.yaml @@ -115,7 +115,9 @@ test: cmp data.txt data.bak - uses: test/ldd-check with: - files: /usr/lib/liblzma.so.5 + files: |- + /usr/lib/liblzma.so.5 + /usr/lib/liblzma.so.5.6.3 update: enabled: true diff --git a/zfs.yaml b/zfs.yaml index 268f60b3d1d..401bf566b92 100644 --- a/zfs.yaml +++ b/zfs.yaml @@ -119,10 +119,16 @@ test: zstreamdump -v - uses: test/ldd-check with: - files: | + files: |- /usr/lib/libnvpair.so.3 + /usr/lib/libnvpair.so.3.0.0 /usr/lib/libuutil.so.3 + /usr/lib/libuutil.so.3.0.0 /usr/lib/libzfs.so.4 + /usr/lib/libzfs.so.4.1.0 /usr/lib/libzfs_core.so.3 + /usr/lib/libzfs_core.so.3.0.0 /usr/lib/libzfsbootenv.so.1 + /usr/lib/libzfsbootenv.so.1.0.0 /usr/lib/libzpool.so.5 + /usr/lib/libzpool.so.5.0.0 diff --git a/zlib.yaml b/zlib.yaml index bf0f9e456cd..eed340058c2 100644 --- a/zlib.yaml +++ b/zlib.yaml @@ -115,7 +115,9 @@ test: package-match: "zlib\\|minizip" - uses: test/ldd-check with: - files: /lib/libz.so.1 + files: |- + /lib/libz.so.1 + /lib/libz.so.1.3.1 update: enabled: true From b4beeff387067ad5aff3ec787263b65b1ea68c3c Mon Sep 17 00:00:00 2001 From: "octo-sts[bot]" <157150467+octo-sts[bot]@users.noreply.github.com> Date: Mon, 23 Dec 2024 22:03:13 +0000 Subject: [PATCH 41/41] frr-10.2/10.2.1 package update (#38279)

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com> --- frr-10.2.yaml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/frr-10.2.yaml b/frr-10.2.yaml index c99a68fc262..9ff22d40e45 100644 --- a/frr-10.2.yaml +++ b/frr-10.2.yaml @@ -1,7 +1,7 @@ package: name: frr-10.2 - version: "10.2" - epoch: 1 + version: 10.2.1 + epoch: 0 description: The FRRouting Protocol Suite copyright: - license: GPL-2.0-only @@ -44,7 +44,7 @@ environment: pipeline: - uses: git-checkout with: - expected-commit: 22746b8d59e6e6cb77ced61bc9e0cff2ead227b5 + expected-commit: 5f0beaa0fdd00b7a60c1765067d1b6fa65ce96c0 repository: https://github.com/FRRouting/frr tag: frr-${{package.version}}