-
Notifications
You must be signed in to change notification settings - Fork 406
fluent-plugin-systemd/1.1.0 package update #28105
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
|
Open AI suggestions to solve the build error: |
|
First release in 3 years: |
Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com>
5217527 to
20ae984
Compare
|
Open AI suggestions to solve the build error: |
systemd-journal is a dependency of fluent-plugin-systemd. The test begain failing when systemd-journal released version 2.0.0 and the 'gem install' that was being done in the test began to fail.
|
Open AI suggestions to solve the build error: |
|
Open AI suggestions to solve the build error: |
There is currently not a tag in the upstream git repo for version 2.0.0 ledbettj/systemd-journal#101 But 2.0.0 is required for fluent-plugin-systemd v1.1.0. So for the time being, checkout a branch. This cause fail to build from source (FTBFS) at the point when there is a new commit on master. Hopefully at that point there will be an upstream tag.
Package ruby3.2-systemd-journal: Click to expand/collapsePackage ruby3.2-systemd-journal: Package fluent-plugin-systemd: Click to expand/collapsePackage fluent-plugin-systemd: bincapz found differences: Click to expand/collapseDeleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/lib/fluent/plugin/systemd/entry_mutator.rb [✅ LOW]
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/specifications/fluent-plugin-systemd-1.0.5.gemspec [✅ LOW]
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/LICENCE [✅ LOW]
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/lib/fluent/plugin/filter_systemd_entry.rb [✅ LOW]
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/lib/fluent/plugin/in_systemd.rb [
|
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| -MEDIUM | ref/path/var/log | path reference within /var/log | /var/log/journal |
| -LOW | ref/path/var | path reference within /var | /var/log/journal |
| -LOW | ref/site/url | contains embedded HTTPS URLs | https://bugs.freedesktop.org/show_bug.cgi?id=64614 ledbettj/systemd-journal#64 |
| -LOW | ref/words/plugin | references a 'plugin' | module Plugin plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | exec/shell_command | execute a shell command | system |
| +LOW | ref/path/var | path reference within /var | /var/log/journal/5f5777e46c5f4131bd9b71cbed6b9abf |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/filterable.rb [🔥 HIGH]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +HIGH | ref/program/sshd | Mentions the SSH daemon by path | /usr/bin/sshd |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/sshd |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/specifications/systemd-journal-2.0.0.gemspec [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/ledbettj/systemd-journal |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/LICENCE [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/examples/ssh_watcher.rb [🔥 HIGH]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +HIGH | ref/program/sshd | Mentions the SSH daemon by path | /usr/bin/sshd |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/env /usr/bin/sshd |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/writable.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/zonque/systemd-journal.gem |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/extensions/x86_64-linux-gnu/3.2.0/systemd-journal-2.0.0/gem_make.out [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/ruby |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/spec/spec_helper.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | encoding/json/decode | Decodes JSON messages | JSON.parse |
Added: ruby3.2-systemd-journal/var/lib/db/sbom/ruby3.2-systemd-journal-2.0.0-r0.spdx.json [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | net/download | download files | downloadLocation |
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://spdx.org/spdxdocs/chainguard/melange/88e02b057a1307388d3ac3e62109 |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/lib/fluent/plugin/systemd/entry_mutator.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
| +LOW | ref/words/plugin | references a 'plugin' | module Plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/ext/shim/Makefile [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | shell/exec | executes shell | /bin/sh |
| +LOW | env/SHELL | path to active shell | SHELL |
| +LOW | fs/directory/create | creates directories | mkdir |
| +LOW | fs/directory/remove | Uses libc functions to remove directories | rmdir |
| +LOW | fs/file/delete/forcibly | Forcibly deletes files using rm | rm -fr |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/install |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/fields.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | security_controls/linux/selinux | selinux | SELINUX |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/spec/fixtures/test.journal [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/daemon | Run as a background daemon | daemon |
| +MEDIUM | ref/path/dev | path reference within /dev | /dev/dri/card0 /dev/initctl /dev/input/event1 /dev/vda1 |
| +MEDIUM | ref/path/root | path reference within /root | /root/1 |
| +MEDIUM | security_controls/linux/selinux | selinux | SELINUX |
| +LOW | kernel/netlink | communicate with kernel services | netlink |
| +LOW | ref/path/etc | path reference within /etc | /etc/ifplugd/netcfg.action |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/ifplugd |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/systemd-journal.gemspec [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/ledbettj/systemd-journal |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/lib/fluent/plugin/filter_systemd_entry.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
| +LOW | ref/words/plugin | references a 'plugin' | journal filter plugin module Plugin |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/lib/fluent/plugin/in_systemd.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/path/var/log | path reference within /var/log | /var/log/journal |
| +LOW | ref/path/var | path reference within /var | /var/log/journal |
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://bugs.freedesktop.org/show_bug.cgi?id=64614 ledbettj/systemd-journal#64 |
| +LOW | ref/words/plugin | references a 'plugin' | module Plugin plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/extensions/x86_64-linux-gnu/3.2.0/systemd-journal-2.0.0/mkmf.log [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/words/exclamation | gets very excited | return !! |
| +LOW | env/LD_LIBRARY_PATH | ld library path | LD_LIBRARY_PATH |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/ffi_size_t.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | ffi/ffi#118 |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/specifications/fluent-plugin-systemd-1.1.0.gemspec [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/reevoo/fluent-plugin-systemd |
| +LOW | ref/words/plugin | references a 'plugin' | Input plugin to read This is a fluentd input plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/Gemfile [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://rubygems.org |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/examples/journal_directory.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/path/var/log | path reference within /var/log | /var/log/journal/ |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/env |
| +LOW | ref/path/var | path reference within /var | /var/log/journal/ |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/.gitignore [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | secrets/private_key | References private keys | private_key |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/waitable.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | fd/multiplex | monitor multiple file descriptors | select |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/spec/fixtures/test.json [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/daemon | Run as a background daemon | daemon |
| +MEDIUM | ref/path/dev | path reference within /dev | /dev/dri/card0 /dev/initctl /dev/input/event1 /dev/vda1 |
| +MEDIUM | ref/path/root | path reference within /root | /root/1 |
| +MEDIUM | security_controls/linux/selinux | selinux | SELINUX |
| +LOW | kernel/netlink | communicate with kernel services | netlink |
| +LOW | ref/path/etc | path reference within /etc | /etc/ifplugd/netcfg.action |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/ifplugd |
Moved: fluent-plugin-systemd/var/lib/db/sbom/fluent-plugin-systemd-1.0.5-r0.spdx.json -> /tmp/wolfictl-apk-2646196353/fluent-plugin-systemd/var/lib/db/sbom/fluent-plugin-systemd-1.1.0-r1.spdx.json (similarity: 0.98)
Package ruby3.2-systemd-journal: Click to expand/collapsePackage ruby3.2-systemd-journal: Package fluent-plugin-systemd: Click to expand/collapsePackage fluent-plugin-systemd: bincapz found differences: Click to expand/collapseDeleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/lib/fluent/plugin/filter_systemd_entry.rb [✅ LOW]
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/lib/fluent/plugin/in_systemd.rb [
|
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| -MEDIUM | ref/path/var/log | path reference within /var/log | /var/log/journal |
| -LOW | ref/path/var | path reference within /var | /var/log/journal |
| -LOW | ref/site/url | contains embedded HTTPS URLs | https://bugs.freedesktop.org/show_bug.cgi?id=64614 ledbettj/systemd-journal#64 |
| -LOW | ref/words/plugin | references a 'plugin' | module Plugin plugin |
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/lib/fluent/plugin/systemd/entry_mutator.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| -LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
| -LOW | ref/words/plugin | references a 'plugin' | module Plugin |
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/specifications/fluent-plugin-systemd-1.0.5.gemspec [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| -LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/reevoo/fluent-plugin-systemd |
| -LOW | ref/words/plugin | references a 'plugin' | Input plugin to read This is a fluentd input plugin |
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/LICENCE [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| -LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/LICENCE [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/specifications/fluent-plugin-systemd-1.1.0.gemspec [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/reevoo/fluent-plugin-systemd |
| +LOW | ref/words/plugin | references a 'plugin' | Input plugin to read This is a fluentd input plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/waitable.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | fd/multiplex | monitor multiple file descriptors | select |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/examples/journal_directory.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/path/var/log | path reference within /var/log | /var/log/journal/ |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/env |
| +LOW | ref/path/var | path reference within /var | /var/log/journal/ |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/extensions/x86_64-linux-gnu/3.2.0/systemd-journal-2.0.0/mkmf.log [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/words/exclamation | gets very excited | return !! |
| +LOW | env/LD_LIBRARY_PATH | ld library path | LD_LIBRARY_PATH |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/examples/ssh_watcher.rb [🔥 HIGH]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +HIGH | ref/program/sshd | Mentions the SSH daemon by path | /usr/bin/sshd |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/env /usr/bin/sshd |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/lib/fluent/plugin/systemd/entry_mutator.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
| +LOW | ref/words/plugin | references a 'plugin' | module Plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/ffi_size_t.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | ffi/ffi#118 |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/fields.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | security_controls/linux/selinux | selinux | SELINUX |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/filterable.rb [🔥 HIGH]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +HIGH | ref/program/sshd | Mentions the SSH daemon by path | /usr/bin/sshd |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/sshd |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/specifications/systemd-journal-2.0.0.gemspec [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/ledbettj/systemd-journal |
Added: ruby3.2-systemd-journal/var/lib/db/sbom/ruby3.2-systemd-journal-2.0.0-r0.spdx.json [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | net/download | download files | downloadLocation |
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://spdx.org/spdxdocs/chainguard/melange/88e02b057a1307388d3ac3e62109 |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/Gemfile [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://rubygems.org |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | exec/shell_command | execute a shell command | system |
| +LOW | ref/path/var | path reference within /var | /var/log/journal/5f5777e46c5f4131bd9b71cbed6b9abf |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/spec/spec_helper.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | encoding/json/decode | Decodes JSON messages | JSON.parse |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/lib/fluent/plugin/in_systemd.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/path/var/log | path reference within /var/log | /var/log/journal |
| +LOW | ref/path/var | path reference within /var | /var/log/journal |
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://bugs.freedesktop.org/show_bug.cgi?id=64614 ledbettj/systemd-journal#64 |
| +LOW | ref/words/plugin | references a 'plugin' | module Plugin plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/extensions/x86_64-linux-gnu/3.2.0/systemd-journal-2.0.0/gem_make.out [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/ruby |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/spec/fixtures/test.journal [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/daemon | Run as a background daemon | daemon |
| +MEDIUM | ref/path/dev | path reference within /dev | /dev/dri/card0 /dev/initctl /dev/input/event1 /dev/vda1 |
| +MEDIUM | ref/path/root | path reference within /root | /root/1 |
| +MEDIUM | security_controls/linux/selinux | selinux | SELINUX |
| +LOW | kernel/netlink | communicate with kernel services | netlink |
| +LOW | ref/path/etc | path reference within /etc | /etc/ifplugd/netcfg.action |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/ifplugd |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/ext/shim/Makefile [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | shell/exec | executes shell | /bin/sh |
| +LOW | env/SHELL | path to active shell | SHELL |
| +LOW | fs/directory/create | creates directories | mkdir |
| +LOW | fs/directory/remove | Uses libc functions to remove directories | rmdir |
| +LOW | fs/file/delete/forcibly | Forcibly deletes files using rm | rm -fr |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/install |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/systemd-journal.gemspec [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/ledbettj/systemd-journal |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/spec/fixtures/test.json [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/daemon | Run as a background daemon | daemon |
| +MEDIUM | ref/path/dev | path reference within /dev | /dev/dri/card0 /dev/initctl /dev/input/event1 /dev/vda1 |
| +MEDIUM | ref/path/root | path reference within /root | /root/1 |
| +MEDIUM | security_controls/linux/selinux | selinux | SELINUX |
| +LOW | kernel/netlink | communicate with kernel services | netlink |
| +LOW | ref/path/etc | path reference within /etc | /etc/ifplugd/netcfg.action |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/ifplugd |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/lib/fluent/plugin/filter_systemd_entry.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
| +LOW | ref/words/plugin | references a 'plugin' | journal filter plugin module Plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/.gitignore [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | secrets/private_key | References private keys | private_key |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/writable.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/zonque/systemd-journal.gem |
Moved: fluent-plugin-systemd/var/lib/db/sbom/fluent-plugin-systemd-1.0.5-r0.spdx.json -> /tmp/wolfictl-apk-10642610/fluent-plugin-systemd/var/lib/db/sbom/fluent-plugin-systemd-1.1.0-r1.spdx.json (similarity: 0.98)
Package ruby3.2-systemd-journal: Click to expand/collapsePackage ruby3.2-systemd-journal: Package fluent-plugin-systemd: Click to expand/collapsePackage fluent-plugin-systemd: bincapz found differences: Click to expand/collapseDeleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/specifications/fluent-plugin-systemd-1.0.5.gemspec [✅ LOW]
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/LICENCE [✅ LOW]
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/lib/fluent/plugin/filter_systemd_entry.rb [✅ LOW]
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/lib/fluent/plugin/in_systemd.rb [
|
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| -MEDIUM | ref/path/var/log | path reference within /var/log | /var/log/journal |
| -LOW | ref/path/var | path reference within /var | /var/log/journal |
| -LOW | ref/site/url | contains embedded HTTPS URLs | https://bugs.freedesktop.org/show_bug.cgi?id=64614 ledbettj/systemd-journal#64 |
| -LOW | ref/words/plugin | references a 'plugin' | module Plugin plugin |
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/lib/fluent/plugin/systemd/entry_mutator.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| -LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
| -LOW | ref/words/plugin | references a 'plugin' | module Plugin |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/LICENCE [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/lib/fluent/plugin/in_systemd.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/path/var/log | path reference within /var/log | /var/log/journal |
| +LOW | ref/path/var | path reference within /var | /var/log/journal |
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://bugs.freedesktop.org/show_bug.cgi?id=64614 ledbettj/systemd-journal#64 |
| +LOW | ref/words/plugin | references a 'plugin' | module Plugin plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/spec/fixtures/test.journal [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/daemon | Run as a background daemon | daemon |
| +MEDIUM | ref/path/dev | path reference within /dev | /dev/dri/card0 /dev/initctl /dev/input/event1 /dev/vda1 |
| +MEDIUM | ref/path/root | path reference within /root | /root/1 |
| +MEDIUM | security_controls/linux/selinux | selinux | SELINUX |
| +LOW | kernel/netlink | communicate with kernel services | netlink |
| +LOW | ref/path/etc | path reference within /etc | /etc/ifplugd/netcfg.action |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/ifplugd |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/specifications/fluent-plugin-systemd-1.1.0.gemspec [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/reevoo/fluent-plugin-systemd |
| +LOW | ref/words/plugin | references a 'plugin' | Input plugin to read This is a fluentd input plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/extensions/x86_64-linux-gnu/3.2.0/systemd-journal-2.0.0/mkmf.log [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/words/exclamation | gets very excited | return !! |
| +LOW | env/LD_LIBRARY_PATH | ld library path | LD_LIBRARY_PATH |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/examples/ssh_watcher.rb [🔥 HIGH]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +HIGH | ref/program/sshd | Mentions the SSH daemon by path | /usr/bin/sshd |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/env /usr/bin/sshd |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/waitable.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | fd/multiplex | monitor multiple file descriptors | select |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/Gemfile [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://rubygems.org |
Added: ruby3.2-systemd-journal/var/lib/db/sbom/ruby3.2-systemd-journal-2.0.0-r0.spdx.json [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | net/download | download files | downloadLocation |
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://spdx.org/spdxdocs/chainguard/melange/88e02b057a1307388d3ac3e62109 |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/extensions/x86_64-linux-gnu/3.2.0/systemd-journal-2.0.0/gem_make.out [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/ruby |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/filterable.rb [🔥 HIGH]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +HIGH | ref/program/sshd | Mentions the SSH daemon by path | /usr/bin/sshd |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/sshd |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/writable.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/zonque/systemd-journal.gem |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | exec/shell_command | execute a shell command | system |
| +LOW | ref/path/var | path reference within /var | /var/log/journal/5f5777e46c5f4131bd9b71cbed6b9abf |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/examples/journal_directory.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/path/var/log | path reference within /var/log | /var/log/journal/ |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/env |
| +LOW | ref/path/var | path reference within /var | /var/log/journal/ |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/ext/shim/Makefile [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | shell/exec | executes shell | /bin/sh |
| +LOW | env/SHELL | path to active shell | SHELL |
| +LOW | fs/directory/create | creates directories | mkdir |
| +LOW | fs/directory/remove | Uses libc functions to remove directories | rmdir |
| +LOW | fs/file/delete/forcibly | Forcibly deletes files using rm | rm -fr |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/install |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/ffi_size_t.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | ffi/ffi#118 |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/lib/fluent/plugin/systemd/entry_mutator.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
| +LOW | ref/words/plugin | references a 'plugin' | module Plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/fields.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | security_controls/linux/selinux | selinux | SELINUX |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/spec/spec_helper.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | encoding/json/decode | Decodes JSON messages | JSON.parse |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/systemd-journal.gemspec [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/ledbettj/systemd-journal |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/lib/fluent/plugin/filter_systemd_entry.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
| +LOW | ref/words/plugin | references a 'plugin' | journal filter plugin module Plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/.gitignore [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | secrets/private_key | References private keys | private_key |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/spec/fixtures/test.json [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/daemon | Run as a background daemon | daemon |
| +MEDIUM | ref/path/dev | path reference within /dev | /dev/dri/card0 /dev/initctl /dev/input/event1 /dev/vda1 |
| +MEDIUM | ref/path/root | path reference within /root | /root/1 |
| +MEDIUM | security_controls/linux/selinux | selinux | SELINUX |
| +LOW | kernel/netlink | communicate with kernel services | netlink |
| +LOW | ref/path/etc | path reference within /etc | /etc/ifplugd/netcfg.action |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/ifplugd |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/specifications/systemd-journal-2.0.0.gemspec [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/ledbettj/systemd-journal |
Moved: fluent-plugin-systemd/var/lib/db/sbom/fluent-plugin-systemd-1.0.5-r0.spdx.json -> /tmp/wolfictl-apk-3830835606/fluent-plugin-systemd/var/lib/db/sbom/fluent-plugin-systemd-1.1.0-r1.spdx.json (similarity: 0.98)
Package ruby3.2-systemd-journal: Click to expand/collapsePackage ruby3.2-systemd-journal: Package fluent-plugin-systemd: Click to expand/collapsePackage fluent-plugin-systemd: bincapz found differences: Click to expand/collapseDeleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/LICENCE [✅ LOW]
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/lib/fluent/plugin/filter_systemd_entry.rb [✅ LOW]
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/lib/fluent/plugin/in_systemd.rb [
|
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| -MEDIUM | ref/path/var/log | path reference within /var/log | /var/log/journal |
| -LOW | ref/path/var | path reference within /var | /var/log/journal |
| -LOW | ref/site/url | contains embedded HTTPS URLs | https://bugs.freedesktop.org/show_bug.cgi?id=64614 ledbettj/systemd-journal#64 |
| -LOW | ref/words/plugin | references a 'plugin' | module Plugin plugin |
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.0.5/lib/fluent/plugin/systemd/entry_mutator.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| -LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
| -LOW | ref/words/plugin | references a 'plugin' | module Plugin |
Deleted: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/specifications/fluent-plugin-systemd-1.0.5.gemspec [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| -LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/reevoo/fluent-plugin-systemd |
| -LOW | ref/words/plugin | references a 'plugin' | Input plugin to read This is a fluentd input plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/spec/spec_helper.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | encoding/json/decode | Decodes JSON messages | JSON.parse |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/extensions/x86_64-linux-gnu/3.2.0/systemd-journal-2.0.0/gem_make.out [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/ruby |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/extensions/x86_64-linux-gnu/3.2.0/systemd-journal-2.0.0/mkmf.log [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/words/exclamation | gets very excited | return !! |
| +LOW | env/LD_LIBRARY_PATH | ld library path | LD_LIBRARY_PATH |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/ext/shim/Makefile [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | shell/exec | executes shell | /bin/sh |
| +LOW | env/SHELL | path to active shell | SHELL |
| +LOW | fs/directory/create | creates directories | mkdir |
| +LOW | fs/directory/remove | Uses libc functions to remove directories | rmdir |
| +LOW | fs/file/delete/forcibly | Forcibly deletes files using rm | rm -fr |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/install |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/writable.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/zonque/systemd-journal.gem |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/lib/fluent/plugin/in_systemd.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/path/var/log | path reference within /var/log | /var/log/journal |
| +LOW | ref/path/var | path reference within /var | /var/log/journal |
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://bugs.freedesktop.org/show_bug.cgi?id=64614 ledbettj/systemd-journal#64 |
| +LOW | ref/words/plugin | references a 'plugin' | module Plugin plugin |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/specifications/fluent-plugin-systemd-1.1.0.gemspec [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/reevoo/fluent-plugin-systemd |
| +LOW | ref/words/plugin | references a 'plugin' | Input plugin to read This is a fluentd input plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/Gemfile [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://rubygems.org |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/ffi_size_t.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | ffi/ffi#118 |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/fields.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | security_controls/linux/selinux | selinux | SELINUX |
Added: ruby3.2-systemd-journal/var/lib/db/sbom/ruby3.2-systemd-journal-2.0.0-r0.spdx.json [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | net/download | download files | downloadLocation |
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://spdx.org/spdxdocs/chainguard/melange/88e02b057a1307388d3ac3e62109 |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/specifications/systemd-journal-2.0.0.gemspec [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/ledbettj/systemd-journal |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/lib/fluent/plugin/systemd/entry_mutator.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
| +LOW | ref/words/plugin | references a 'plugin' | module Plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/.gitignore [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | secrets/private_key | References private keys | private_key |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/filterable.rb [🔥 HIGH]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +HIGH | ref/program/sshd | Mentions the SSH daemon by path | /usr/bin/sshd |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/sshd |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal/waitable.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | fd/multiplex | monitor multiple file descriptors | select |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/examples/ssh_watcher.rb [🔥 HIGH]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +HIGH | ref/program/sshd | Mentions the SSH daemon by path | /usr/bin/sshd |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/env /usr/bin/sshd |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/lib/systemd/journal.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | exec/shell_command | execute a shell command | system |
| +LOW | ref/path/var | path reference within /var | /var/log/journal/5f5777e46c5f4131bd9b71cbed6b9abf |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/LICENCE [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
Added: fluent-plugin-systemd/usr/lib/ruby/gems/3.2.0/gems/fluent-plugin-systemd-1.1.0/lib/fluent/plugin/filter_systemd_entry.rb [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTP URLs | http://www.apache.org/licenses/LICENSE-2.0 |
| +LOW | ref/words/plugin | references a 'plugin' | journal filter plugin module Plugin |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/spec/fixtures/test.journal [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/daemon | Run as a background daemon | daemon |
| +MEDIUM | ref/path/dev | path reference within /dev | /dev/dri/card0 /dev/initctl /dev/input/event1 /dev/vda1 |
| +MEDIUM | ref/path/root | path reference within /root | /root/1 |
| +MEDIUM | security_controls/linux/selinux | selinux | SELINUX |
| +LOW | kernel/netlink | communicate with kernel services | netlink |
| +LOW | ref/path/etc | path reference within /etc | /etc/ifplugd/netcfg.action |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/ifplugd |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/spec/fixtures/test.json [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/daemon | Run as a background daemon | daemon |
| +MEDIUM | ref/path/dev | path reference within /dev | /dev/dri/card0 /dev/initctl /dev/input/event1 /dev/vda1 |
| +MEDIUM | ref/path/root | path reference within /root | /root/1 |
| +MEDIUM | security_controls/linux/selinux | selinux | SELINUX |
| +LOW | kernel/netlink | communicate with kernel services | netlink |
| +LOW | ref/path/etc | path reference within /etc | /etc/ifplugd/netcfg.action |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/ifplugd |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/systemd-journal.gemspec [✅ LOW]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +LOW | ref/site/url | contains embedded HTTPS URLs | https://github.com/ledbettj/systemd-journal |
Added: ruby3.2-systemd-journal/usr/lib/ruby/gems/3.2.0/gems/systemd-journal-2.0.0/examples/journal_directory.rb [⚠️ MEDIUM]
| RISK | KEY | DESCRIPTION | EVIDENCE |
|---|---|---|---|
| +MEDIUM | ref/path/var/log | path reference within /var/log | /var/log/journal/ |
| +LOW | ref/path/usr/bin | path reference within /usr/bin | /usr/bin/env |
| +LOW | ref/path/var | path reference within /var | /var/log/journal/ |
Moved: fluent-plugin-systemd/var/lib/db/sbom/fluent-plugin-systemd-1.0.5-r0.spdx.json -> /tmp/wolfictl-apk-768661167/fluent-plugin-systemd/var/lib/db/sbom/fluent-plugin-systemd-1.1.0-r1.spdx.json (similarity: 0.98)
|
Changes summay: Total changes: 92 Total commits: 9
GitHub compare URL: fluent-plugins-nursery/fluent-plugin-systemd@216547e...92dec83 |
fluent-plugin-systemd:
ruby3.2-systemd-journal: