Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

gitlab-kas-17.4/17.4.2 package update #30458

Merged
merged 1 commit into from
Oct 9, 2024

Conversation

octo-sts[bot]
Copy link
Contributor

@octo-sts octo-sts bot commented Oct 9, 2024

@octo-sts octo-sts bot added request-version-update request for a newer version of a package automated pr labels Oct 9, 2024
Copy link
Contributor

github-actions bot commented Oct 9, 2024

Package gitlab-kas-17.4: Click to expand/collapse

Package gitlab-kas-17.4:
Modified: /usr/bin/kas

Package gitlab-agent-17.4: Click to expand/collapse

Package gitlab-agent-17.4:
Modified: /usr/bin/agentk

malcontent found differences: Click to expand/collapse

Deleted: gitlab-agent-17.4/var/lib/db/sbom/gitlab-agent-17.4-17.4.1-r2.spdx.json [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
-MEDIUM net/download download files downloadLocation
-MEDIUM ref/words/agent references an 'agent' agent
-LOW ref/site/url contains embedded HTTPS URLs https://spdx.org/spdxdocs/chainguard/melange/a52c76927927d8730a915ba4a0fd

Added: gitlab-agent-17.4/var/lib/db/sbom/gitlab-agent-17.4-17.4.2-r0.spdx.json [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM net/download download files downloadLocation
+MEDIUM ref/words/agent references an 'agent' agent
+LOW ref/site/url contains embedded HTTPS URLs https://spdx.org/spdxdocs/chainguard/melange/c69a50b3b004f30367e9ccf44098

Moved: gitlab-kas-17.4/var/lib/db/sbom/gitlab-kas-17.4-17.4.1-r2.spdx.json -> /tmp/wolfictl-apk-2787621427/gitlab-kas-17.4/var/lib/db/sbom/gitlab-kas-17.4-17.4.2-r0.spdx.json (similarity: 0.98)

@octo-sts octo-sts bot added the bincapz/pass bincapz/pass Bincapz (aka. malcontent) scan didn't detect any CRITICALs on the scanned packages. label Oct 9, 2024
@mamccorm mamccorm merged commit 710232d into main Oct 9, 2024
15 checks passed
@mamccorm mamccorm deleted the wolfictl-379ba32d-39ce-491e-9efe-71e65de43f87 branch October 9, 2024 19:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
automated pr bincapz/pass bincapz/pass Bincapz (aka. malcontent) scan didn't detect any CRITICALs on the scanned packages. request-version-update request for a newer version of a package
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants