Skip to content

Conversation

@octo-sts
Copy link
Contributor

@octo-sts octo-sts bot commented Aug 28, 2024

@octo-sts octo-sts bot added request-version-update request for a newer version of a package automated pr labels Aug 28, 2024
@github-actions
Copy link
Contributor

Package external-secrets-operator: Click to expand/collapse

Package external-secrets-operator:

.PKGINFO metadata:

  (
  	"""
  	# Generated by melange
  	pkgname = external-secrets-operator
- 	pkgver = 0.10.0-r0
+ 	pkgver = 0.10.1-r0
  	arch = x86_64
- 	size = 147805274
+ 	size = 152929971
  	origin = external-secrets-operator
  	pkgdesc = Integrate external secret management systems with Kubernetes
  	url = 
- 	commit = 30a685647c21d75f38d9a9e8259adb975b5c4671
- 	builddate = 1722697669
+ 	commit = 5daa2afe3123255880f49f48be21306ec6373327
  	license = Apache-2.0
- 	provides = cmd:external-secrets=0.10.0-r0
- 	datahash = f7f485e555f03d38225353195d96a9ec8ae49f3a062164e4ec8268a4838ac6c2
+ 	provides = cmd:external-secrets=0.10.1-r0
+ 	datahash = 1ad58ef5460ee84465078585a700b1a0f81976c12788c27b122efbaddb39bfcb
  	"""
  )

Modified: /usr/bin/external-secrets

bincapz found differences: Click to expand/collapse

Deleted: external-secrets-operator/var/lib/db/sbom/external-secrets-operator-0.10.0-r0.spdx.json [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
-MEDIUM net/download download files downloadLocation
-LOW ref/site/url contains embedded HTTPS URLs https://spdx.org/spdxdocs/chainguard/melange/565ab6733148703d19816751787a

Added: external-secrets-operator/var/lib/db/sbom/external-secrets-operator-0.10.1-r0.spdx.json [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM net/download download files downloadLocation
+LOW ref/site/url contains embedded HTTPS URLs https://spdx.org/spdxdocs/chainguard/melange/63d958a82b8227a885a219859113

Changed: /tmp/wolfictl-apk-3253514988/external-secrets-operator/usr/bin/external-secrets

4 new behaviors

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM data/embedded/pem/private_key Contains PRIVATE KEY directive PRIVATE KEY-----
+MEDIUM kernel/sysinfo get system information (load, swap) sysinfo
+MEDIUM net/stat Uses 'netstat' for network information netstatpem
+LOW env/TERM Look up or override terminal settings TERM

1 removed behaviors

RISK KEY DESCRIPTION EVIDENCE
-MEDIUM procfs/self/exe gets executable associated to this process /proc/self/exe

@philroche philroche self-assigned this Aug 28, 2024
@philroche
Copy link
Member

Changes summay:
Total files changed: 165

Total changes: 5099
Total additions: 3630
Total deletions: 1469

Total commits: 41

GitHub compare URL: external-secrets/external-secrets@eae808d...bc97ae0

Copy link
Member

@philroche philroche left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This is a patch version bump.

All checks pass.

@philroche philroche enabled auto-merge (squash) August 28, 2024 09:16
@philroche philroche disabled auto-merge August 28, 2024 09:16
@philroche philroche enabled auto-merge (squash) August 28, 2024 09:16
@jamie-albert jamie-albert disabled auto-merge August 28, 2024 09:27
@jamie-albert jamie-albert enabled auto-merge (squash) August 28, 2024 09:27
@imjasonh imjasonh closed this Aug 28, 2024
auto-merge was automatically disabled August 28, 2024 09:45

Pull request was closed

@imjasonh imjasonh reopened this Aug 28, 2024
@github-actions
Copy link
Contributor

Package external-secrets-operator: Click to expand/collapse

Package external-secrets-operator:

.PKGINFO metadata:

  (
  	"""
  	# Generated by melange
  	pkgname = external-secrets-operator
- 	pkgver = 0.10.0-r0
+ 	pkgver = 0.10.1-r0
  	arch = x86_64
- 	size = 147805274
+ 	size = 152929971
  	origin = external-secrets-operator
  	pkgdesc = Integrate external secret management systems with Kubernetes
  	url = 
- 	commit = 30a685647c21d75f38d9a9e8259adb975b5c4671
- 	builddate = 1722697669
+ 	commit = 1ed10f5f8ecf9608aa1f69c37037417dd69f0554
  	license = Apache-2.0
- 	provides = cmd:external-secrets=0.10.0-r0
- 	datahash = f7f485e555f03d38225353195d96a9ec8ae49f3a062164e4ec8268a4838ac6c2
+ 	provides = cmd:external-secrets=0.10.1-r0
+ 	datahash = 04098674d4a9c95350afd93ad76dc9d4982298c63ec95d06edc37c715b9c93a2
  	"""
  )

Modified: /usr/bin/external-secrets

bincapz found differences: Click to expand/collapse

Deleted: external-secrets-operator/var/lib/db/sbom/external-secrets-operator-0.10.0-r0.spdx.json [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
-MEDIUM net/download download files downloadLocation
-LOW ref/site/url contains embedded HTTPS URLs https://spdx.org/spdxdocs/chainguard/melange/565ab6733148703d19816751787a

Added: external-secrets-operator/var/lib/db/sbom/external-secrets-operator-0.10.1-r0.spdx.json [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM net/download download files downloadLocation
+LOW ref/site/url contains embedded HTTPS URLs https://spdx.org/spdxdocs/chainguard/melange/63d958a82b8227a885a219859113

Changed: /tmp/wolfictl-apk-3285932745/external-secrets-operator/usr/bin/external-secrets

4 new behaviors

RISK KEY DESCRIPTION EVIDENCE
+MEDIUM data/embedded/pem/private_key Contains PRIVATE KEY directive PRIVATE KEY-----
+MEDIUM kernel/sysinfo get system information (load, swap) sysinfo
+MEDIUM net/stat Uses 'netstat' for network information netstatpem
+LOW env/TERM Look up or override terminal settings TERM

1 removed behaviors

RISK KEY DESCRIPTION EVIDENCE
-MEDIUM procfs/self/exe gets executable associated to this process /proc/self/exe

@philroche philroche merged commit d72ce34 into main Aug 28, 2024
@philroche philroche deleted the wolfictl-ff824575-0c5e-4764-afd5-1597ec3b4f21 branch August 28, 2024 15:44
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants