Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

nushell/0.101.0-r0: cve remediation #41239

Closed
wants to merge 2 commits into from

Conversation

octo-sts[bot]
Copy link
Contributor

@octo-sts octo-sts bot commented Feb 4, 2025

nushell/0.101.0-r0: fix GHSA-rpmj-rpgj-qmpm

Advisory data: https://github.com/wolfi-dev/advisories/blob/main/nushell.advisories.yaml

Source code for this service: https://go/cve-remedy-automation-source

Logs for this execution: https://go/cve-remedy-automation-logs

Docs for this service: (not provided yet)

@jamie-albert jamie-albert self-assigned this Feb 5, 2025
@jamie-albert
Copy link
Member

new build does not have CVE listed above (which is not even itself the CVE featured in the PR) : https://github.com/wolfi-dev/os/runs/36697227330

@philroche
Copy link
Member

@jamie-albert CVE remediation PRs will never auto close due to a CVE being remediated. They will close after 30 days of inactivity but not because of a CVE remediation. Please verify the advisory has been filed or the CVE has been remediated elsewhere - if so please close this PR. Marking in progress

@jamie-albert
Copy link
Member

parent package and subpackage have no CVEs: 🔎 Scanning "/var/folders/j6/tvqbksvn577gp3sr0_k3m0hc0000gn/T/packages.wolfi.dev-os-aarch64-nushell-plugins-0.102.0-r0.apk428068812"
✅ No vulnerabilities found
🔎 Scanning "/var/folders/j6/tvqbksvn577gp3sr0_k3m0hc0000gn/T/packages.wolfi.dev-os-x86_64-nushell-plugins-0.102.0-r0.apk3925768823"
✅ No vulnerabilities found
jamie.albert@Jamies-MacBook-Pro os % wolfictl scan --remote nushell
📡 Finding remote packages

Updates are available for chainctl (current version: 0.2.31; latest: 0.2.40). To install, please run:
$ chainctl update

🔎 Scanning "/var/folders/j6/tvqbksvn577gp3sr0_k3m0hc0000gn/T/packages.wolfi.dev-os-aarch64-nushell-0.102.0-r0.apk2313128384"
✅ No vulnerabilities found
🔎 Scanning "/var/folders/j6/tvqbksvn577gp3sr0_k3m0hc0000gn/T/packages.wolfi.dev-os-x86_64-nushell-0.102.0-r0.apk2987990394"
✅ No vulnerabilities found

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants