Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

opentelemetry-collector/0.115.0-r0: cve remediation #36751

Merged

fix the cve GHSA-v778-237x-gjrc

10243be
Select commit
Loading
Failed to load commit list.
Merged

opentelemetry-collector/0.115.0-r0: cve remediation #36751

fix the cve GHSA-v778-237x-gjrc
10243be
Select commit
Loading
Failed to load commit list.
Octo STS / ci-diff-report succeeded Dec 14, 2024 in 0s

Package diff

Package diff

Details

Package Diffs

aarch64/opentelemetry-collector-0.115.0-r0.apk -> aarch64/opentelemetry-collector-0.115.0-r1.apk

📦 Package diff:

  &apk.Package{
  	Name:        "opentelemetry-collector",
- 	Version:     "0.115.0-r0",
+ 	Version:     "0.115.0-r1",
  	Arch:        "aarch64",
  	Description: "OpenTelemetry Collector",
  	... // 2 identical fields
  	Maintainer: "",
  	URL:        "",
  	Checksum: []uint8{
- 		0xe7, 0x2d, 0x86, 0x0b, 0xd7, 0x39, 0x8f, 0xbf, 0x49, 0xe4, 0xc2, 0xc1, 0x7c, 0xf2, 0xe7, 0x79, // -|.-...9..I...|..y|
- 		0x9b, 0xe4, 0x49, 0x06,                                                                         // -|..I.|
+ 		0x35, 0x93, 0xa3, 0xcf, 0x1b, 0x64, 0x5d, 0x95, 0x2e, 0xf0, 0xd8, 0x6a, 0x9f, 0xce, 0x99, 0xeb, // +|5....d]....j....|
+ 		0x6a, 0x4e, 0xb5, 0x2e,                                                                         // +|jN..|
  	},
  	Dependencies:     {"so:ld-linux-aarch64.so.1", "so:libc.so.6", "so:libresolv.so.2"},
- 	Provides:         []string{"cmd:otelcol=0.115.0-r0"},
+ 	Provides:         []string{"cmd:otelcol=0.115.0-r1"},
  	InstallIf:        nil,
- 	Size:             30113750,
+ 	Size:             30127115,
- 	InstalledSize:    108502053,
+ 	InstalledSize:    108502085,
  	ProviderPriority: 0,
- 	BuildTime:        s"2024-12-08 17:47:25 +0000 UTC",
+ 	BuildTime:        s"2024-12-14 19:52:23 +0000 UTC",
- 	BuildDate:        1733680045,
+ 	BuildDate:        1734205943,
  	RepoCommit: strings.Join({
- 		"0955264ebf869f12ef2cf83248444ac99dd829d5",
+ 		"9a5ece4d609e98e17dc8858220799a4d9da6063a",
  	}, ""),
  	Replaces: nil,
  	DataHash: "",
  }

➕ Added:

  • var/lib/db/sbom/opentelemetry-collector-0.115.0-r1.spdx.json

➖ Removed:

  • var/lib/db/sbom/opentelemetry-collector-0.115.0-r0.spdx.json

🔺 Changed:

.PKGINFO
- -rw-r--r-- 470 2024-12-08 17:47:25 .PKGINFO
+ -rw-r--r-- 470 2024-12-14 19:52:23 .PKGINFO
.melange.yaml
- -rw-r--r-- 12128 2024-12-08 17:47:25 .melange.yaml
+ -rw-r--r-- 12268 2024-12-14 19:52:23 .melange.yaml
usr/bin/otelcol
- -rwxr-xr-x 108470184 2024-12-08 17:47:25 otelcol
-   APK-TOOLS.checksum.SHA1: "31a5ee817689cdc8b749f4b5d1c58bb71647b88d"
+ -rwxr-xr-x 108470216 2024-12-14 19:52:23 otelcol
+   APK-TOOLS.checksum.SHA1: "e34c91174d1b73298d6fa9154725178082436c5c"

aarch64/opentelemetry-collector-compat-0.115.0-r0.apk -> aarch64/opentelemetry-collector-compat-0.115.0-r1.apk

📦 Package diff:

  &apk.Package{
  	Name:        "opentelemetry-collector-compat",
- 	Version:     "0.115.0-r0",
+ 	Version:     "0.115.0-r1",
  	Arch:        "aarch64",
  	Description: "Compatability package to place binary in the location expected b"...,
  	... // 2 identical fields
  	Maintainer: "",
  	URL:        "",
  	Checksum: []uint8{
- 		0x41, 0xb6, 0xbf, 0x10, 0xcf, 0x89, 0x29, 0x78, 0xbd, 0xac, 0x6c, 0xef, 0x31, 0x55, 0xd3, 0x48, // -|A.....)x..l.1U.H|
- 		0xb0, 0x66, 0x38, 0x1b,                                                                         // -|.f8.|
+ 		0x8f, 0xb5, 0x09, 0xb7, 0x39, 0xc6, 0x87, 0xbe, 0x83, 0x38, 0xa1, 0xf9, 0xe3, 0xe9, 0xc7, 0x27, // +|....9....8.....'|
+ 		0x38, 0xa4, 0x50, 0xaa,                                                                         // +|8.P.|
  	},
  	Dependencies:     nil,
  	Provides:         nil,
  	InstallIf:        nil,
- 	Size:             5533,
+ 	Size:             5595,
  	InstalledSize:    23746,
  	ProviderPriority: 0,
- 	BuildTime:        s"2024-12-08 17:47:25 +0000 UTC",
+ 	BuildTime:        s"2024-12-14 19:52:23 +0000 UTC",
- 	BuildDate:        1733680045,
+ 	BuildDate:        1734205943,
  	RepoCommit: strings.Join({
- 		"0955264ebf869f12ef2cf83248444ac99dd829d5",
+ 		"9a5ece4d609e98e17dc8858220799a4d9da6063a",
  	}, ""),
  	Replaces: nil,
  	DataHash: "",
  }

➕ Added:

  • var/lib/db/sbom/opentelemetry-collector-compat-0.115.0-r1.spdx.json

➖ Removed:

  • var/lib/db/sbom/opentelemetry-collector-compat-0.115.0-r0.spdx.json

🔺 Changed:

.PKGINFO
- -rw-r--r-- 418 2024-12-08 17:47:25 .PKGINFO
+ -rw-r--r-- 418 2024-12-14 19:52:23 .PKGINFO
.melange.yaml
- -rw-r--r-- 12128 2024-12-08 17:47:25 .melange.yaml
+ -rw-r--r-- 12268 2024-12-14 19:52:23 .melange.yaml

x86_64/opentelemetry-collector-0.115.0-r0.apk -> x86_64/opentelemetry-collector-0.115.0-r1.apk

📦 Package diff:

  &apk.Package{
  	Name:        "opentelemetry-collector",
- 	Version:     "0.115.0-r0",
+ 	Version:     "0.115.0-r1",
  	Arch:        "x86_64",
  	Description: "OpenTelemetry Collector",
  	... // 2 identical fields
  	Maintainer: "",
  	URL:        "",
  	Checksum: []uint8{
- 		0x0b, 0xc9, 0x21, 0xef, 0xe8, 0xb1, 0x15, 0xe4, 0xe3, 0xaf, 0x5e, 0x07, 0x20, 0xd3, 0xa7, 0xa8, // -|..!.......^. ...|
- 		0x94, 0x1b, 0x66, 0x90,                                                                         // -|..f.|
+ 		0xa5, 0xe2, 0x5d, 0x3f, 0x69, 0x19, 0xbe, 0xb4, 0xc3, 0x31, 0x19, 0x73, 0x29, 0x05, 0x2e, 0x77, // +|..]?i....1.s)..w|
+ 		0xd4, 0xc7, 0x8b, 0x46,                                                                         // +|...F|
  	},
  	Dependencies:     {"so:ld-linux-x86-64.so.2", "so:libc.so.6", "so:libresolv.so.2"},
- 	Provides:         []string{"cmd:otelcol=0.115.0-r0"},
+ 	Provides:         []string{"cmd:otelcol=0.115.0-r1"},
  	InstallIf:        nil,
- 	Size:             32982434,
+ 	Size:             32956062,
- 	InstalledSize:    111381188,
+ 	InstalledSize:    111381220,
  	ProviderPriority: 0,
- 	BuildTime:        s"2024-12-08 17:47:25 +0000 UTC",
+ 	BuildTime:        s"2024-12-14 19:52:23 +0000 UTC",
- 	BuildDate:        1733680045,
+ 	BuildDate:        1734205943,
  	RepoCommit: strings.Join({
- 		"0955264ebf869f12ef2cf83248444ac99dd829d5",
+ 		"9a5ece4d609e98e17dc8858220799a4d9da6063a",
  	}, ""),
  	Replaces: nil,
  	DataHash: "",
  }

➕ Added:

  • var/lib/db/sbom/opentelemetry-collector-0.115.0-r1.spdx.json

➖ Removed:

  • var/lib/db/sbom/opentelemetry-collector-0.115.0-r0.spdx.json

🔺 Changed:

.PKGINFO
- -rw-r--r-- 468 2024-12-08 17:47:25 .PKGINFO
+ -rw-r--r-- 468 2024-12-14 19:52:23 .PKGINFO
.melange.yaml
- -rw-r--r-- 12092 2024-12-08 17:47:25 .melange.yaml
+ -rw-r--r-- 12232 2024-12-14 19:52:23 .melange.yaml
usr/bin/otelcol
- -rwxr-xr-x 111349320 2024-12-08 17:47:25 otelcol
-   APK-TOOLS.checksum.SHA1: "d0764f70eb50d0b5bba0f9eb84e02c881237e141"
+ -rwxr-xr-x 111349352 2024-12-14 19:52:23 otelcol
+   APK-TOOLS.checksum.SHA1: "d564c6099dfffe25db9ed97051ef4499429e71ae"

x86_64/opentelemetry-collector-compat-0.115.0-r0.apk -> x86_64/opentelemetry-collector-compat-0.115.0-r1.apk

📦 Package diff:

  &apk.Package{
  	Name:        "opentelemetry-collector-compat",
- 	Version:     "0.115.0-r0",
+ 	Version:     "0.115.0-r1",
  	Arch:        "x86_64",
  	Description: "Compatability package to place binary in the location expected b"...,
  	... // 2 identical fields
  	Maintainer: "",
  	URL:        "",
  	Checksum: []uint8{
- 		0x59, 0x6f, 0x8d, 0x00, 0xef, 0x69, 0x4b, 0x7a, 0x7b, 0x0d, 0xb0, 0x19, 0x4e, 0x81, 0xcc, 0x99, // -|Yo...iKz{...N...|
- 		0x8d, 0xd5, 0xcc, 0x52,                                                                         // -|...R|
+ 		0xaf, 0x38, 0xb4, 0xb0, 0xec, 0x74, 0x82, 0xb6, 0xfb, 0xe4, 0x1e, 0xf3, 0x16, 0x29, 0xb6, 0x91, // +|.8...t.......)..|
+ 		0xe3, 0xd3, 0xb9, 0x7f,                                                                         // +|....|
  	},
  	Dependencies:     nil,
  	Provides:         nil,
  	InstallIf:        nil,
- 	Size:             5506,
+ 	Size:             5562,
  	InstalledSize:    23745,
  	ProviderPriority: 0,
- 	BuildTime:        s"2024-12-08 17:47:25 +0000 UTC",
+ 	BuildTime:        s"2024-12-14 19:52:23 +0000 UTC",
- 	BuildDate:        1733680045,
+ 	BuildDate:        1734205943,
  	RepoCommit: strings.Join({
- 		"0955264ebf869f12ef2cf83248444ac99dd829d5",
+ 		"9a5ece4d609e98e17dc8858220799a4d9da6063a",
  	}, ""),
  	Replaces: nil,
  	DataHash: "",
  }

➕ Added:

  • var/lib/db/sbom/opentelemetry-collector-compat-0.115.0-r1.spdx.json

➖ Removed:

  • var/lib/db/sbom/opentelemetry-collector-compat-0.115.0-r0.spdx.json

🔺 Changed:

.PKGINFO
- -rw-r--r-- 417 2024-12-08 17:47:25 .PKGINFO
+ -rw-r--r-- 417 2024-12-14 19:52:23 .PKGINFO
.melange.yaml
- -rw-r--r-- 12092 2024-12-08 17:47:25 .melange.yaml
+ -rw-r--r-- 12232 2024-12-14 19:52:23 .melange.yaml