Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

lksctp-tools/1.0.20 package update #29152

Merged
merged 1 commit into from
Sep 22, 2024

Conversation

octo-sts[bot]
Copy link
Contributor

@octo-sts octo-sts bot commented Sep 22, 2024

@octo-sts octo-sts bot added request-version-update request for a newer version of a package automated pr labels Sep 22, 2024
Copy link
Contributor

Package libsctp-doc: Click to expand/collapse

Package libsctp-doc:
Unchanged

Package libsctp: Click to expand/collapse

Package libsctp:
Added: /usr/lib/libsctp.so.1.0.20
Deleted: /usr/lib/libsctp.so.1.0.19

Package lksctp-tools: Click to expand/collapse

Package lksctp-tools:
Added: /usr/lib/lksctp-tools/libwithsctp.so.1.0.20
Modified: /usr/bin/checksctp
Modified: /usr/bin/sctp_darn
Modified: /usr/bin/sctp_status
Modified: /usr/bin/sctp_test
Modified: /usr/bin/withsctp
Deleted: /usr/lib/lksctp-tools/libwithsctp.so.1.0.19

Package libsctp-dev: Click to expand/collapse

Package libsctp-dev:
Modified: /usr/lib/libsctp.a
Modified: /usr/lib/lksctp-tools/libwithsctp.a
Modified: /usr/lib/pkgconfig/libsctp.pc

bincapz found differences: Click to expand/collapse

Deleted: libsctp-dev/var/lib/db/sbom/libsctp-dev-1.0.20-r0.spdx.json [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
-MEDIUM net/download download files downloadLocation
-LOW ref/site/url contains embedded HTTPS URLs https://spdx.org/spdxdocs/chainguard/melange/7e275c15a0473a31c89b2b45ef2c

Deleted: libsctp/usr/lib/libsctp.so.1.0.19 [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
-MEDIUM net/socket/connect initiate a connection on a socket _connectx
-LOW net/socket/receive receive a message from a socket recvmsg
-LOW net/socket/send send a message to a socket sendmsg

Deleted: libsctp/var/lib/db/sbom/libsctp-1.0.20-r0.spdx.json [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
-MEDIUM net/download download files downloadLocation
-LOW ref/site/url contains embedded HTTPS URLs https://spdx.org/spdxdocs/chainguard/melange/87acfb001e17f2c8245d5a96fe92

Deleted: lksctp-tools/usr/lib/lksctp-tools/libwithsctp.so.1.0.19 [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
-MEDIUM dylib/symbol/address get the address of a symbol dlsym

Deleted: lksctp-tools/var/lib/db/sbom/lksctp-tools-1.0.20-r0.spdx.json [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
-MEDIUM net/download download files downloadLocation
-LOW ref/site/url contains embedded HTTPS URLs https://spdx.org/spdxdocs/chainguard/melange/bc9f319310335fbb4291cd40edbb

Added: libsctp/usr/lib/libsctp.so.1.0.20 [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM net/socket/connect initiate a connection on a socket _connectx
+LOW net/socket/receive receive a message from a socket recvmsg
+LOW net/socket/send send a message to a socket sendmsg

Added: lksctp-tools/usr/lib/lksctp-tools/libwithsctp.so.1.0.20 [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM dylib/symbol/address get the address of a symbol dlsym

Added: lksctp-tools/var/lib/db/sbom/lksctp-tools-1.0.20-r1.spdx.json [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM net/download download files downloadLocation
+LOW ref/site/url contains embedded HTTPS URLs https://spdx.org/spdxdocs/chainguard/melange/efde25fc32b525a9a3b248e960b4

Moved: libsctp-doc/var/lib/db/sbom/libsctp-doc-1.0.20-r0.spdx.json -> /tmp/wolfictl-apk-500356305/libsctp/var/lib/db/sbom/libsctp-1.0.20-r1.spdx.json (similarity: 0.91)

Moved: libsctp-doc/var/lib/db/sbom/libsctp-doc-1.0.20-r0.spdx.json -> /tmp/wolfictl-apk-500356305/libsctp-dev/var/lib/db/sbom/libsctp-dev-1.0.20-r1.spdx.json (similarity: 0.95)

Moved: libsctp-doc/var/lib/db/sbom/libsctp-doc-1.0.20-r0.spdx.json -> /tmp/wolfictl-apk-500356305/libsctp-doc/var/lib/db/sbom/libsctp-doc-1.0.20-r1.spdx.json (similarity: 0.99)

@octo-sts octo-sts bot added bincapz/pass bincapz/pass Bincapz (aka. malcontent) scan didn't detect any CRITICALs on the scanned packages. auto-approver-bot/approve labels Sep 22, 2024
@octo-sts octo-sts bot enabled auto-merge (squash) September 22, 2024 21:00
@octo-sts octo-sts bot merged commit 6c9b876 into main Sep 22, 2024
10 checks passed
@octo-sts octo-sts bot deleted the wolfictl-e146419f-8f04-4280-a091-9436ccee6e47 branch September 22, 2024 21:05
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
auto-approver-bot/approve automated pr bincapz/pass bincapz/pass Bincapz (aka. malcontent) scan didn't detect any CRITICALs on the scanned packages. request-version-update request for a newer version of a package
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant