Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

cadvisor/0.49.1-r1: cve remediation #15173

Merged
merged 4 commits into from Mar 15, 2024

Conversation

octo-sts[bot]
Copy link
Contributor

@octo-sts octo-sts bot commented Mar 15, 2024

chainguardian and others added 2 commits March 15, 2024 11:25
Signed-off-by: hectorj2f <hector@chainguard.dev>
@hectorj2f hectorj2f force-pushed the cve-cadvisor-4c3ee2a25d6a5a2023ecde74f146e1e7 branch from 15fc334 to b33dd08 Compare March 15, 2024 10:59
rawlingsj
rawlingsj previously approved these changes Mar 15, 2024
Copy link
Contributor

Package cadvisor: Click to expand/collapse

Package cadvisor:

.PKGINFO metadata:

  (
  	"""
- 	# Generated by melange v0.6.5-2-g0b257b0
+ 	# Generated by melange v0.6.9-24-gadd77db
  	pkgname = cadvisor
- 	pkgver = 0.49.1-r1
+ 	pkgver = 0.49.1-r2
  	arch = x86_64
- 	size = 36513729
+ 	size = 36513730
  	origin = cadvisor
  	pkgdesc = Analyzes resource usage and performance characteristics of running containers.
  	url = 
- 	commit = c1da1f3f8bc8ca0e6119db7db67107f348bbca89
- 	builddate = 1709363001
+ 	commit = 37ec273090280572f375e98fe66b4dc8092a5e5e
  	license = Apache-2.0
  	depend = so:ld-linux-x86-64.so.2
  	depend = so:libc.so.6
- 	provides = cmd:cadvisor=0.49.1-r1
- 	datahash = fc9cbbde1516e1d0884bea6e19ca9669688bb68eb0e050d605e028f5f485f1ef
+ 	provides = cmd:cadvisor=0.49.1-r2
+ 	datahash = 7232f72fec71cb007acac10d728cd612733e3870e7ec3d8ee81daeef3a2fe5ca
  	"""
  )

Modified: /usr/bin/cadvisor

@hectorj2f
Copy link
Contributor

Okay, it seems something didn't work as expected. I will check it again

Signed-off-by: dlorenc <lorenc.d@gmail.com>
hectorj2f
hectorj2f previously approved these changes Mar 15, 2024
@hectorj2f
Copy link
Contributor

@dlorenc we need to add it to the replaces block. It seems it gets downgraded by the installation scripts of cadvisor. I can make that change in a while if you don't fix it before.

Signed-off-by: debasishbsw <debasishbsws.dev@gmail.com>
Copy link
Contributor

Package cadvisor: Click to expand/collapse

Package cadvisor:

.PKGINFO metadata:

  (
  	"""
- 	# Generated by melange v0.6.5-2-g0b257b0
+ 	# Generated by melange v0.6.9-24-gadd77db
  	pkgname = cadvisor
- 	pkgver = 0.49.1-r1
+ 	pkgver = 0.49.1-r2
  	arch = x86_64
- 	size = 36513729
+ 	size = 36624554
  	origin = cadvisor
  	pkgdesc = Analyzes resource usage and performance characteristics of running containers.
  	url = 
- 	commit = c1da1f3f8bc8ca0e6119db7db67107f348bbca89
- 	builddate = 1709363001
+ 	commit = b9f2558f61f35a2d98be6b1e10e4fe9fc2167473
  	license = Apache-2.0
  	depend = so:ld-linux-x86-64.so.2
  	depend = so:libc.so.6
- 	provides = cmd:cadvisor=0.49.1-r1
- 	datahash = fc9cbbde1516e1d0884bea6e19ca9669688bb68eb0e050d605e028f5f485f1ef
+ 	provides = cmd:cadvisor=0.49.1-r2
+ 	datahash = a0a0ae4e377aea4bbdf5c47be4ca5d798467e1e2fca24f6856cde85ef03011bf
  	"""
  )

Modified: /usr/bin/cadvisor

@cpanato cpanato merged commit 73bc1a6 into main Mar 15, 2024
7 of 8 checks passed
@cpanato cpanato deleted the cve-cadvisor-4c3ee2a25d6a5a2023ecde74f146e1e7 branch March 15, 2024 14:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

6 participants