Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Remove clear deps as a test to fix dataplane CI #77

Merged
merged 1 commit into from
Feb 4, 2025

Conversation

daniel-noland
Copy link
Collaborator

No description provided.

@daniel-noland daniel-noland force-pushed the pr/daniel-noland/no-more-clear-deps branch from f208b44 to 10a26ce Compare January 27, 2025 00:22
Copy link
Contributor

Outdated packages (gnu64):

priority nix_package version_local version_nixpkgs version_upstream
11 mimalloc 2.1.8 2.1.8 3.0.1
11 llvm 19.1.6 17.0.6 19.1.7
11 llvm 19.1.6 19.1.6 19.1.7
10 coreutils 9.5 9.5 9.6
10 isl 0.20 0.24 0.27
7 openssl 3.3.2 1.1.1w 3.4.0
7 openssl 3.3.2 3.3.2 3.4.0
6 libxcrypt 4.4.36 4.4.36 4.4.38
5 xz 5.6.3 5.6.3 5.6.4
5 perl 5.40.0 5.40.0 5.40.1
5 ncurses 6.4.20221231 6.4.20221231 6.5
4 tzdata 2024b 2024b 2025a
4 sqlite 3.47.2 3.47.2 3.48.0
4 kmod 31 31 33
4 numactl 2.0.18 2.0.18 2.0.19
2 dpdk 24.11.1 24.07 24.11.1

Copy link
Contributor

Vulnerable packages (gnu64):

vuln_id url package severity version_local version_nixpkgs version_upstream package_repology sortcol classify
CVE-2024-13176 https://nvd.nist.gov/vuln/detail/CVE-2024-13176 openssl 3.3.2 3.3.2 3.4.0 openssl 2024A0000013176 err_not_vulnerable_based_on_repology
CVE-2024-9143 https://nvd.nist.gov/vuln/detail/CVE-2024-9143 openssl 4.3 3.3.2 3.3.2 3.4.0 openssl 2024A0000009143 err_not_vulnerable_based_on_repology
OSV-2024-1209 https://osv.dev/OSV-2024-1209 libxml2 2.13.5 2.13.5 2.13.5 libxml2 2024A0000001209 err_not_vulnerable_based_on_repology
OSV-2024-817 https://osv.dev/OSV-2024-817 libpcap 1.10.5 1.10.5 1.10.5 libpcap 2024A0000000817 err_not_vulnerable_based_on_repology
OSV-2024-395 https://osv.dev/OSV-2024-395 libpcap 1.10.5 1.10.5 1.10.5 libpcap 2024A0000000395 err_not_vulnerable_based_on_repology
OSV-2023-1307 https://osv.dev/OSV-2023-1307 libbpf 1.5.0 1.5.0 1.5.0 libbpf 2023A0000001307 err_not_vulnerable_based_on_repology
OSV-2023-877 https://osv.dev/OSV-2023-877 libbpf 1.5.0 1.5.0 1.5.0 libbpf 2023A0000000877 err_not_vulnerable_based_on_repology
MAL-2022-6425 https://osv.dev/MAL-2022-6425 tbb 2021.11.0 2022A0000006425 err_missing_repology_version
MAL-2022-4301 https://osv.dev/MAL-2022-4301 libidn2 2.3.7 2.3.7 2.3.7 libidn2 2022A0000004301 err_not_vulnerable_based_on_repology
OSV-2021-777 https://osv.dev/OSV-2021-777 libxml2 2.13.5 2.13.5 2.13.5 libxml2 2021A0000000777 err_not_vulnerable_based_on_repology
RUSTSEC-2019-0006 https://osv.dev/RUSTSEC-2019-0006 ncurses 6.4.20221231 6.4.20221231 6.5 ncurses 2019A0000000006 err_not_vulnerable_based_on_repology
CVE-2016-2781 https://nvd.nist.gov/vuln/detail/CVE-2016-2781 coreutils 6.5 9.5 9.5 9.6 coreutils 2016A0000002781 fix_not_available

@daniel-noland daniel-noland force-pushed the pr/daniel-noland/no-more-clear-deps branch from cf6850d to 3f90249 Compare January 27, 2025 01:03
Copy link
Contributor

Outdated packages (gnu64):

priority nix_package version_local version_nixpkgs version_upstream
11 llvm 19.1.6 17.0.6 19.1.7
11 llvm 19.1.6 19.1.6 19.1.7
11 mimalloc 2.1.8 2.1.8 3.0.1
10 isl 0.20 0.24 0.27
10 coreutils 9.5 9.5 9.6
7 openssl 3.3.2 1.1.1w 3.4.0
7 openssl 3.3.2 3.3.2 3.4.0
6 libxcrypt 4.4.36 4.4.36 4.4.38
5 xz 5.6.3 5.6.3 5.6.4
5 perl 5.40.0 5.40.0 5.40.1
5 ncurses 6.4.20221231 6.4.20221231 6.5
4 sqlite 3.47.2 3.47.2 3.48.0
4 numactl 2.0.18 2.0.18 2.0.19
4 kmod 31 31 33
4 tzdata 2024b 2024b 2025a
2 dpdk 24.11.1 24.07 24.11.1

Copy link
Contributor

Vulnerable packages (gnu64):

vuln_id url package severity version_local version_nixpkgs version_upstream package_repology sortcol classify
CVE-2024-13176 https://nvd.nist.gov/vuln/detail/CVE-2024-13176 openssl 3.3.2 3.3.2 3.4.0 openssl 2024A0000013176 err_not_vulnerable_based_on_repology
CVE-2024-9143 https://nvd.nist.gov/vuln/detail/CVE-2024-9143 openssl 4.3 3.3.2 3.3.2 3.4.0 openssl 2024A0000009143 err_not_vulnerable_based_on_repology
OSV-2024-1209 https://osv.dev/OSV-2024-1209 libxml2 2.13.5 2.13.5 2.13.5 libxml2 2024A0000001209 err_not_vulnerable_based_on_repology
OSV-2024-817 https://osv.dev/OSV-2024-817 libpcap 1.10.5 1.10.5 1.10.5 libpcap 2024A0000000817 err_not_vulnerable_based_on_repology
OSV-2024-395 https://osv.dev/OSV-2024-395 libpcap 1.10.5 1.10.5 1.10.5 libpcap 2024A0000000395 err_not_vulnerable_based_on_repology
OSV-2023-1307 https://osv.dev/OSV-2023-1307 libbpf 1.5.0 1.5.0 1.5.0 libbpf 2023A0000001307 err_not_vulnerable_based_on_repology
OSV-2023-877 https://osv.dev/OSV-2023-877 libbpf 1.5.0 1.5.0 1.5.0 libbpf 2023A0000000877 err_not_vulnerable_based_on_repology
MAL-2022-6425 https://osv.dev/MAL-2022-6425 tbb 2021.11.0 2022A0000006425 err_missing_repology_version
MAL-2022-4301 https://osv.dev/MAL-2022-4301 libidn2 2.3.7 2.3.7 2.3.7 libidn2 2022A0000004301 err_not_vulnerable_based_on_repology
OSV-2021-777 https://osv.dev/OSV-2021-777 libxml2 2.13.5 2.13.5 2.13.5 libxml2 2021A0000000777 err_not_vulnerable_based_on_repology
RUSTSEC-2019-0006 https://osv.dev/RUSTSEC-2019-0006 ncurses 6.4.20221231 6.4.20221231 6.5 ncurses 2019A0000000006 err_not_vulnerable_based_on_repology
CVE-2016-2781 https://nvd.nist.gov/vuln/detail/CVE-2016-2781 coreutils 6.5 9.5 9.5 9.6 coreutils 2016A0000002781 fix_not_available

Copy link
Contributor

Outdated packages (gnu64):

priority nix_package version_local version_nixpkgs version_upstream
11 mimalloc 2.1.8 2.1.8 3.0.1
11 llvm 19.1.6 17.0.6 19.1.7
11 llvm 19.1.6 19.1.6 19.1.7
10 coreutils 9.5 9.5 9.6
10 isl 0.20 0.24 0.27
7 openssl 3.3.2 1.1.1w 3.4.0
7 openssl 3.3.2 3.3.2 3.4.0
6 libxcrypt 4.4.36 4.4.36 4.4.38
5 perl 5.40.0 5.40.0 5.40.1
5 xz 5.6.3 5.6.3 5.6.4
5 ncurses 6.4.20221231 6.4.20221231 6.5
4 kmod 31 31 33
4 sqlite 3.47.2 3.47.2 3.48.0
4 tzdata 2024b 2024b 2025a
4 numactl 2.0.18 2.0.18 2.0.19
2 dpdk 24.11.1 24.07 24.11.1

Copy link
Contributor

Vulnerable packages (gnu64):

vuln_id url package severity version_local version_nixpkgs version_upstream package_repology sortcol classify
CVE-2024-13176 https://nvd.nist.gov/vuln/detail/CVE-2024-13176 openssl 3.3.2 3.3.2 3.4.0 openssl 2024A0000013176 err_not_vulnerable_based_on_repology
CVE-2024-9143 https://nvd.nist.gov/vuln/detail/CVE-2024-9143 openssl 4.3 3.3.2 3.3.2 3.4.0 openssl 2024A0000009143 err_not_vulnerable_based_on_repology
OSV-2024-1209 https://osv.dev/OSV-2024-1209 libxml2 2.13.5 2.13.5 2.13.5 libxml2 2024A0000001209 err_not_vulnerable_based_on_repology
OSV-2024-817 https://osv.dev/OSV-2024-817 libpcap 1.10.5 1.10.5 1.10.5 libpcap 2024A0000000817 err_not_vulnerable_based_on_repology
OSV-2024-395 https://osv.dev/OSV-2024-395 libpcap 1.10.5 1.10.5 1.10.5 libpcap 2024A0000000395 err_not_vulnerable_based_on_repology
OSV-2023-1307 https://osv.dev/OSV-2023-1307 libbpf 1.5.0 1.5.0 1.5.0 libbpf 2023A0000001307 err_not_vulnerable_based_on_repology
OSV-2023-877 https://osv.dev/OSV-2023-877 libbpf 1.5.0 1.5.0 1.5.0 libbpf 2023A0000000877 err_not_vulnerable_based_on_repology
MAL-2022-6425 https://osv.dev/MAL-2022-6425 tbb 2021.11.0 2022A0000006425 err_missing_repology_version
MAL-2022-4301 https://osv.dev/MAL-2022-4301 libidn2 2.3.7 2.3.7 2.3.7 libidn2 2022A0000004301 err_not_vulnerable_based_on_repology
OSV-2021-777 https://osv.dev/OSV-2021-777 libxml2 2.13.5 2.13.5 2.13.5 libxml2 2021A0000000777 err_not_vulnerable_based_on_repology
RUSTSEC-2019-0006 https://osv.dev/RUSTSEC-2019-0006 ncurses 6.4.20221231 6.4.20221231 6.5 ncurses 2019A0000000006 err_not_vulnerable_based_on_repology
CVE-2016-2781 https://nvd.nist.gov/vuln/detail/CVE-2016-2781 coreutils 6.5 9.5 9.5 9.6 coreutils 2016A0000002781 fix_not_available

Copy link
Contributor

Outdated packages (gnu64):

priority nix_package version_local version_nixpkgs version_upstream
11 llvm 19.1.6 17.0.6 19.1.7
11 llvm 19.1.6 19.1.6 19.1.7
11 mimalloc 2.1.8 2.1.8 3.0.1
10 coreutils 9.5 9.5 9.6
10 isl 0.20 0.24 0.27
7 openssl 3.3.2 1.1.1w 3.4.0
7 openssl 3.3.2 3.3.2 3.4.0
6 libxcrypt 4.4.36 4.4.36 4.4.38
5 perl 5.40.0 5.40.0 5.40.1
5 xz 5.6.3 5.6.3 5.6.4
5 ncurses 6.4.20221231 6.4.20221231 6.5
4 sqlite 3.47.2 3.47.2 3.48.0
4 kmod 31 31 33
4 tzdata 2024b 2024b 2025a
4 numactl 2.0.18 2.0.18 2.0.19
2 dpdk 24.11.1 24.07 24.11.1

Copy link
Contributor

Vulnerable packages (gnu64):

vuln_id url package severity version_local version_nixpkgs version_upstream package_repology sortcol classify
CVE-2024-13176 https://nvd.nist.gov/vuln/detail/CVE-2024-13176 openssl 3.3.2 3.3.2 3.4.0 openssl 2024A0000013176 err_not_vulnerable_based_on_repology
CVE-2024-9143 https://nvd.nist.gov/vuln/detail/CVE-2024-9143 openssl 4.3 3.3.2 3.3.2 3.4.0 openssl 2024A0000009143 err_not_vulnerable_based_on_repology
OSV-2024-1209 https://osv.dev/OSV-2024-1209 libxml2 2.13.5 2.13.5 2.13.5 libxml2 2024A0000001209 err_not_vulnerable_based_on_repology
OSV-2024-817 https://osv.dev/OSV-2024-817 libpcap 1.10.5 1.10.5 1.10.5 libpcap 2024A0000000817 err_not_vulnerable_based_on_repology
OSV-2024-395 https://osv.dev/OSV-2024-395 libpcap 1.10.5 1.10.5 1.10.5 libpcap 2024A0000000395 err_not_vulnerable_based_on_repology
OSV-2023-1307 https://osv.dev/OSV-2023-1307 libbpf 1.5.0 1.5.0 1.5.0 libbpf 2023A0000001307 err_not_vulnerable_based_on_repology
OSV-2023-877 https://osv.dev/OSV-2023-877 libbpf 1.5.0 1.5.0 1.5.0 libbpf 2023A0000000877 err_not_vulnerable_based_on_repology
MAL-2022-6425 https://osv.dev/MAL-2022-6425 tbb 2021.11.0 2022A0000006425 err_missing_repology_version
MAL-2022-4301 https://osv.dev/MAL-2022-4301 libidn2 2.3.7 2.3.7 2.3.7 libidn2 2022A0000004301 err_not_vulnerable_based_on_repology
OSV-2021-777 https://osv.dev/OSV-2021-777 libxml2 2.13.5 2.13.5 2.13.5 libxml2 2021A0000000777 err_not_vulnerable_based_on_repology
RUSTSEC-2019-0006 https://osv.dev/RUSTSEC-2019-0006 ncurses 6.4.20221231 6.4.20221231 6.5 ncurses 2019A0000000006 err_not_vulnerable_based_on_repology
CVE-2016-2781 https://nvd.nist.gov/vuln/detail/CVE-2016-2781 coreutils 6.5 9.5 9.5 9.6 coreutils 2016A0000002781 fix_not_available

@daniel-noland daniel-noland force-pushed the pr/daniel-noland/no-more-clear-deps branch from 92f404d to 7654567 Compare February 4, 2025 01:37
`clearDeps` is a bit of a bug factory as it turns out.

It is not necessary anyway; all it does is shrink the development containers a bit, which we can very much live without.

Signed-off-by: Daniel Noland <daniel@githedgehog.com>
@daniel-noland daniel-noland force-pushed the pr/daniel-noland/no-more-clear-deps branch from 7654567 to 034e886 Compare February 4, 2025 01:38
@daniel-noland daniel-noland self-assigned this Feb 4, 2025
Copy link
Contributor

github-actions bot commented Feb 4, 2025

Outdated packages (gnu64):

priority nix_package version_local version_nixpkgs version_upstream
13 glibc 2.40-36 2.40-36 2.41
11 binutils 2.43.1 2.43.1 2.44
11 mimalloc 2.1.8 2.1.8 3.0.1
11 llvm 19.1.6 17.0.6 19.1.7
11 llvm 19.1.6 19.1.6 19.1.7
10 isl 0.20 0.24 0.27
10 coreutils 9.5 9.5 9.6
10 compiler-rt-libc 19.1.6 19.1.6
7 openssl 3.3.2 1.1.1w 3.4.0
7 openssl 3.3.2 3.3.2 3.4.0
6 libxcrypt 4.4.36 4.4.36 4.4.38
5 ncurses 6.4.20221231 6.4.20221231 6.5
5 xz 5.6.3 5.6.3 5.6.4
5 perl 5.40.0 5.40.0 5.40.1
4 tzdata 2024b 2024b 2025a
4 numactl 2.0.18 2.0.18 2.0.19
4 sqlite 3.47.2 3.47.2 3.48.0
4 kmod 31 31 33
2 dpdk 24.11.1 24.07 24.11.1

Copy link
Contributor

github-actions bot commented Feb 4, 2025

Vulnerable packages (gnu64):

vuln_id url package severity version_local version_nixpkgs version_upstream package_repology sortcol classify
CVE-2024-13176 https://nvd.nist.gov/vuln/detail/CVE-2024-13176 openssl 4.1 3.3.2 3.3.2 3.4.0 openssl 2024A0000013176 err_not_vulnerable_based_on_repology
CVE-2024-9143 https://nvd.nist.gov/vuln/detail/CVE-2024-9143 openssl 4.3 3.3.2 3.3.2 3.4.0 openssl 2024A0000009143 err_not_vulnerable_based_on_repology
OSV-2024-1209 https://osv.dev/OSV-2024-1209 libxml2 2.13.5 2.13.5 2.13.5 libxml2 2024A0000001209 err_not_vulnerable_based_on_repology
OSV-2024-817 https://osv.dev/OSV-2024-817 libpcap 1.10.5 1.10.5 1.10.5 libpcap 2024A0000000817 err_not_vulnerable_based_on_repology
OSV-2024-395 https://osv.dev/OSV-2024-395 libpcap 1.10.5 1.10.5 1.10.5 libpcap 2024A0000000395 err_not_vulnerable_based_on_repology
OSV-2023-1307 https://osv.dev/OSV-2023-1307 libbpf 1.5.0 1.5.0 1.5.0 libbpf 2023A0000001307 err_not_vulnerable_based_on_repology
OSV-2023-877 https://osv.dev/OSV-2023-877 libbpf 1.5.0 1.5.0 1.5.0 libbpf 2023A0000000877 err_not_vulnerable_based_on_repology
MAL-2022-6425 https://osv.dev/MAL-2022-6425 tbb 2021.11.0 2022A0000006425 err_missing_repology_version
MAL-2022-4301 https://osv.dev/MAL-2022-4301 libidn2 2.3.7 2.3.7 2.3.7 libidn2 2022A0000004301 err_not_vulnerable_based_on_repology
OSV-2021-777 https://osv.dev/OSV-2021-777 libxml2 2.13.5 2.13.5 2.13.5 libxml2 2021A0000000777 err_not_vulnerable_based_on_repology
RUSTSEC-2019-0006 https://osv.dev/RUSTSEC-2019-0006 ncurses 6.4.20221231 6.4.20221231 6.5 ncurses 2019A0000000006 err_not_vulnerable_based_on_repology
CVE-2016-2781 https://nvd.nist.gov/vuln/detail/CVE-2016-2781 coreutils 6.5 9.5 9.5 9.6 coreutils 2016A0000002781 fix_not_available

Copy link

@mvachhar mvachhar left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I don't know enough about Nix to know that this is right, but I don't think anyone else on the team does either, so I am approving.

@daniel-noland daniel-noland marked this pull request as ready for review February 4, 2025 03:12
@daniel-noland daniel-noland added this pull request to the merge queue Feb 4, 2025
Merged via the queue into main with commit e8a896e Feb 4, 2025
4 checks passed
@daniel-noland daniel-noland deleted the pr/daniel-noland/no-more-clear-deps branch February 4, 2025 03:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants