From 6762d91646afaa4b270eb5d7d6cc72ea2c552a2a Mon Sep 17 00:00:00 2001 From: Weston Steimel Date: Tue, 11 Feb 2025 10:18:23 +0000 Subject: [PATCH 1/2] adjust labels for CVE-2021-32610 and label new matches Signed-off-by: Weston Steimel --- .../058f8107-9683-40a3-91b9-8c37e45c3c4f.json | 1 - .../10458d06-82c4-416a-a445-b3600c8896fd.json | 1 + .../1a69711a-ae27-4078-adc1-3be68beb2469.json | 1 + .../1f086e85-274b-4d9b-919b-9544638d4f14.json | 1 + .../20407ea8-e580-4164-965a-69992940c469.json | 1 - .../31256057-0b64-440a-9bc2-9b505d41c83e.json | 1 + .../43dc574c-6f0c-412a-be67-15b515bdfcfe.json | 1 + .../5edcac60-b0dd-4c36-8e9a-0b0a7c968296.json | 1 + .../6e70d9e6-ce7e-48c8-9cc4-bb05ecd1ab1a.json | 1 - .../7036d8c5-f895-411a-b6e6-9f97e988f310.json | 1 - .../754bcc84-842c-4eb3-be4a-cdb54fd30670.json | 1 + .../9797102d-c234-4d9c-be5b-ebc5c396c2a7.json | 1 + .../979eb758-6ae9-48c9-8574-fb9c88230de0.json | 1 + .../baa60507-9e8f-453c-8910-c992f1c2769b.json | 1 + .../c175a74d-34e6-4497-a0a0-6a66ee984017.json | 1 - .../c5a5f6bd-ce12-472c-aed1-382ca23f7826.json | 1 - .../c68569b5-5acc-4179-abb2-2ae2b6a4bb1a.json | 1 - .../d240a161-cf54-4692-8550-820092f79be1.json | 1 + .../d626ed06-a909-4718-860d-712d4d46811c.json | 1 + .../e3b7d71c-0173-4159-a747-cfaa5a31e0ac.json | 1 + .../e5052f97-6c44-45ee-972d-9775102da643.json | 1 - .../e98a52ce-1ae2-48dc-bc1f-6eea10604934.json | 1 - .../f41235c1-1cca-45a4-babc-99f438aeab60.json | 1 + .../f6be3ad6-8447-4bc0-842a-3fddfb1fe791.json | 1 + .../fa713860-cbb1-4b7c-aacc-f956ab647945.json | 1 + 25 files changed, 16 insertions(+), 9 deletions(-) delete mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/058f8107-9683-40a3-91b9-8c37e45c3c4f.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/10458d06-82c4-416a-a445-b3600c8896fd.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/1a69711a-ae27-4078-adc1-3be68beb2469.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/1f086e85-274b-4d9b-919b-9544638d4f14.json delete mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/20407ea8-e580-4164-965a-69992940c469.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/31256057-0b64-440a-9bc2-9b505d41c83e.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/43dc574c-6f0c-412a-be67-15b515bdfcfe.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/5edcac60-b0dd-4c36-8e9a-0b0a7c968296.json delete mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/6e70d9e6-ce7e-48c8-9cc4-bb05ecd1ab1a.json delete mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/7036d8c5-f895-411a-b6e6-9f97e988f310.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/754bcc84-842c-4eb3-be4a-cdb54fd30670.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/9797102d-c234-4d9c-be5b-ebc5c396c2a7.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/979eb758-6ae9-48c9-8574-fb9c88230de0.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/baa60507-9e8f-453c-8910-c992f1c2769b.json delete mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/c175a74d-34e6-4497-a0a0-6a66ee984017.json delete mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/c5a5f6bd-ce12-472c-aed1-382ca23f7826.json delete mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/c68569b5-5acc-4179-abb2-2ae2b6a4bb1a.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/d240a161-cf54-4692-8550-820092f79be1.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/d626ed06-a909-4718-860d-712d4d46811c.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/e3b7d71c-0173-4159-a747-cfaa5a31e0ac.json delete mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/e5052f97-6c44-45ee-972d-9775102da643.json delete mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/e98a52ce-1ae2-48dc-bc1f-6eea10604934.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/f41235c1-1cca-45a4-babc-99f438aeab60.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/f6be3ad6-8447-4bc0-842a-3fddfb1fe791.json create mode 100644 labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/fa713860-cbb1-4b7c-aacc-f956ab647945.json diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/058f8107-9683-40a3-91b9-8c37e45c3c4f.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/058f8107-9683-40a3-91b9-8c37e45c3c4f.json deleted file mode 100644 index a1a58834..00000000 --- a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/058f8107-9683-40a3-91b9-8c37e45c3c4f.json +++ /dev/null @@ -1 +0,0 @@ -{"ID": "058f8107-9683-40a3-91b9-8c37e45c3c4f", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "php-cli", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2023-03-10T15:11:07.747824", "tool": "grype[custom-db]@v0.59.1", "user": "wagoodman", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/10458d06-82c4-416a-a445-b3600c8896fd.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/10458d06-82c4-416a-a445-b3600c8896fd.json new file mode 100644 index 00000000..7df5a3b4 --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/10458d06-82c4-416a-a445-b3600c8896fd.json @@ -0,0 +1 @@ +{"ID": "10458d06-82c4-416a-a445-b3600c8896fd", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "FP", "package": {"name": "php-opcache", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2025-02-11T17:02:04.397535+00:00", "tool": "grype@v0.87.0-33-g154fd9f", "user": "westonsteimel", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/1a69711a-ae27-4078-adc1-3be68beb2469.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/1a69711a-ae27-4078-adc1-3be68beb2469.json new file mode 100644 index 00000000..daf9fb25 --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/1a69711a-ae27-4078-adc1-3be68beb2469.json @@ -0,0 +1 @@ +{"ID": "1a69711a-ae27-4078-adc1-3be68beb2469", "effective_cve": "CVE-2020-21469", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "??", "package": {"name": "postgresql", "version": "12.11-2.module_el8.6.0+1153+eb826827"}, "timestamp": "2025-02-11T16:15:24.961130+00:00", "tool": "grype@v0.86.1-24-g2b2cd45", "user": "westonsteimel", "vulnerability_id": "CVE-2020-21469"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/1f086e85-274b-4d9b-919b-9544638d4f14.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/1f086e85-274b-4d9b-919b-9544638d4f14.json new file mode 100644 index 00000000..76a2364a --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/1f086e85-274b-4d9b-919b-9544638d4f14.json @@ -0,0 +1 @@ +{"ID": "1f086e85-274b-4d9b-919b-9544638d4f14", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "FP", "package": {"name": "php-common", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2025-02-11T17:02:02.694927+00:00", "tool": "grype@v0.87.0-33-g154fd9f", "user": "westonsteimel", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/20407ea8-e580-4164-965a-69992940c469.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/20407ea8-e580-4164-965a-69992940c469.json deleted file mode 100644 index 74491636..00000000 --- a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/20407ea8-e580-4164-965a-69992940c469.json +++ /dev/null @@ -1 +0,0 @@ -{"ID": "20407ea8-e580-4164-965a-69992940c469", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "php-fpm", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2023-03-10T15:11:04.084125", "tool": "grype[custom-db]@v0.59.1", "user": "wagoodman", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/31256057-0b64-440a-9bc2-9b505d41c83e.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/31256057-0b64-440a-9bc2-9b505d41c83e.json new file mode 100644 index 00000000..478611ef --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/31256057-0b64-440a-9bc2-9b505d41c83e.json @@ -0,0 +1 @@ +{"ID": "31256057-0b64-440a-9bc2-9b505d41c83e", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "FP", "package": {"name": "php", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2025-02-11T17:02:01.731894+00:00", "tool": "grype@v0.87.0-33-g154fd9f", "user": "westonsteimel", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/43dc574c-6f0c-412a-be67-15b515bdfcfe.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/43dc574c-6f0c-412a-be67-15b515bdfcfe.json new file mode 100644 index 00000000..75b4a554 --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/43dc574c-6f0c-412a-be67-15b515bdfcfe.json @@ -0,0 +1 @@ +{"ID": "43dc574c-6f0c-412a-be67-15b515bdfcfe", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "FP", "package": {"name": "php-pdo", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2025-02-11T17:02:05.218863+00:00", "tool": "grype@v0.87.0-33-g154fd9f", "user": "westonsteimel", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/5edcac60-b0dd-4c36-8e9a-0b0a7c968296.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/5edcac60-b0dd-4c36-8e9a-0b0a7c968296.json new file mode 100644 index 00000000..c3608598 --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/5edcac60-b0dd-4c36-8e9a-0b0a7c968296.json @@ -0,0 +1 @@ +{"ID": "5edcac60-b0dd-4c36-8e9a-0b0a7c968296", "effective_cve": "CVE-2020-18768", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "libtiff", "version": "4.0.9-23.el8"}, "timestamp": "2025-02-11T16:14:21.119875+00:00", "tool": "grype@v0.86.1-24-g2b2cd45", "user": "westonsteimel", "vulnerability_id": "CVE-2020-18768"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/6e70d9e6-ce7e-48c8-9cc4-bb05ecd1ab1a.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/6e70d9e6-ce7e-48c8-9cc4-bb05ecd1ab1a.json deleted file mode 100644 index 642d8722..00000000 --- a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/6e70d9e6-ce7e-48c8-9cc4-bb05ecd1ab1a.json +++ /dev/null @@ -1 +0,0 @@ -{"ID": "6e70d9e6-ce7e-48c8-9cc4-bb05ecd1ab1a", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "php-mbstring", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2023-03-10T15:10:43.468752", "tool": "grype[custom-db]@v0.59.1", "user": "wagoodman", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/7036d8c5-f895-411a-b6e6-9f97e988f310.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/7036d8c5-f895-411a-b6e6-9f97e988f310.json deleted file mode 100644 index ab5d2620..00000000 --- a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/7036d8c5-f895-411a-b6e6-9f97e988f310.json +++ /dev/null @@ -1 +0,0 @@ -{"ID": "7036d8c5-f895-411a-b6e6-9f97e988f310", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "php-pdo", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2023-03-10T15:10:14.220866", "tool": "grype[custom-db]@v0.59.1", "user": "wagoodman", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/754bcc84-842c-4eb3-be4a-cdb54fd30670.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/754bcc84-842c-4eb3-be4a-cdb54fd30670.json new file mode 100644 index 00000000..15cef8f7 --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/754bcc84-842c-4eb3-be4a-cdb54fd30670.json @@ -0,0 +1 @@ +{"ID": "754bcc84-842c-4eb3-be4a-cdb54fd30670", "effective_cve": "CVE-2020-11023", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "libstdc++", "version": "8.5.0-10.1.el8_6"}, "timestamp": "2025-02-11T16:14:06.216428+00:00", "tool": "grype@v0.86.1-24-g2b2cd45", "user": "westonsteimel", "vulnerability_id": "CVE-2020-11023"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/9797102d-c234-4d9c-be5b-ebc5c396c2a7.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/9797102d-c234-4d9c-be5b-ebc5c396c2a7.json new file mode 100644 index 00000000..8f604f23 --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/9797102d-c234-4d9c-be5b-ebc5c396c2a7.json @@ -0,0 +1 @@ +{"ID": "9797102d-c234-4d9c-be5b-ebc5c396c2a7", "effective_cve": "CVE-2020-15945", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "lua-libs", "version": "5.3.4-12.el8"}, "timestamp": "2025-02-11T16:14:45.409521+00:00", "tool": "grype@v0.86.1-24-g2b2cd45", "user": "westonsteimel", "vulnerability_id": "CVE-2020-15945"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/979eb758-6ae9-48c9-8574-fb9c88230de0.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/979eb758-6ae9-48c9-8574-fb9c88230de0.json new file mode 100644 index 00000000..1be12f7e --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/979eb758-6ae9-48c9-8574-fb9c88230de0.json @@ -0,0 +1 @@ +{"ID": "979eb758-6ae9-48c9-8574-fb9c88230de0", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "FP", "package": {"name": "php-xml", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2025-02-11T17:02:10.536584+00:00", "tool": "grype@v0.87.0-33-g154fd9f", "user": "westonsteimel", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/baa60507-9e8f-453c-8910-c992f1c2769b.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/baa60507-9e8f-453c-8910-c992f1c2769b.json new file mode 100644 index 00000000..00524b60 --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/baa60507-9e8f-453c-8910-c992f1c2769b.json @@ -0,0 +1 @@ +{"ID": "baa60507-9e8f-453c-8910-c992f1c2769b", "effective_cve": "CVE-2020-15945", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "lua", "version": "5.3.4-12.el8"}, "timestamp": "2025-02-11T16:14:41.512770+00:00", "tool": "grype@v0.86.1-24-g2b2cd45", "user": "westonsteimel", "vulnerability_id": "CVE-2020-15945"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/c175a74d-34e6-4497-a0a0-6a66ee984017.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/c175a74d-34e6-4497-a0a0-6a66ee984017.json deleted file mode 100644 index 3530061a..00000000 --- a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/c175a74d-34e6-4497-a0a0-6a66ee984017.json +++ /dev/null @@ -1 +0,0 @@ -{"ID": "c175a74d-34e6-4497-a0a0-6a66ee984017", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "php-xml", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2023-03-10T15:06:01.959606", "tool": "grype[custom-db]@v0.59.1", "user": "wagoodman", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/c5a5f6bd-ce12-472c-aed1-382ca23f7826.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/c5a5f6bd-ce12-472c-aed1-382ca23f7826.json deleted file mode 100644 index 35411cdb..00000000 --- a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/c5a5f6bd-ce12-472c-aed1-382ca23f7826.json +++ /dev/null @@ -1 +0,0 @@ -{"ID": "c5a5f6bd-ce12-472c-aed1-382ca23f7826", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "php-common", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2023-03-10T15:11:05.587914", "tool": "grype[custom-db]@v0.59.1", "user": "wagoodman", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/c68569b5-5acc-4179-abb2-2ae2b6a4bb1a.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/c68569b5-5acc-4179-abb2-2ae2b6a4bb1a.json deleted file mode 100644 index 445e88ea..00000000 --- a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/c68569b5-5acc-4179-abb2-2ae2b6a4bb1a.json +++ /dev/null @@ -1 +0,0 @@ -{"ID": "c68569b5-5acc-4179-abb2-2ae2b6a4bb1a", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "php", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2023-03-10T15:11:09.771691", "tool": "grype[custom-db]@v0.59.1", "user": "wagoodman", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/d240a161-cf54-4692-8550-820092f79be1.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/d240a161-cf54-4692-8550-820092f79be1.json new file mode 100644 index 00000000..f2a92983 --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/d240a161-cf54-4692-8550-820092f79be1.json @@ -0,0 +1 @@ +{"ID": "d240a161-cf54-4692-8550-820092f79be1", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "FP", "package": {"name": "php-fpm", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2025-02-11T17:02:03.088712+00:00", "tool": "grype@v0.87.0-33-g154fd9f", "user": "westonsteimel", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/d626ed06-a909-4718-860d-712d4d46811c.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/d626ed06-a909-4718-860d-712d4d46811c.json new file mode 100644 index 00000000..b961cd1f --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/d626ed06-a909-4718-860d-712d4d46811c.json @@ -0,0 +1 @@ +{"ID": "d626ed06-a909-4718-860d-712d4d46811c", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "FP", "package": {"name": "php-cli", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2025-02-11T17:02:02.189753+00:00", "tool": "grype@v0.87.0-33-g154fd9f", "user": "westonsteimel", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/e3b7d71c-0173-4159-a747-cfaa5a31e0ac.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/e3b7d71c-0173-4159-a747-cfaa5a31e0ac.json new file mode 100644 index 00000000..9cb2c9c4 --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/e3b7d71c-0173-4159-a747-cfaa5a31e0ac.json @@ -0,0 +1 @@ +{"ID": "e3b7d71c-0173-4159-a747-cfaa5a31e0ac", "effective_cve": "CVE-2020-11023", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "libgcc", "version": "8.5.0-10.1.el8_6"}, "timestamp": "2025-02-11T16:14:00.717072+00:00", "tool": "grype@v0.86.1-24-g2b2cd45", "user": "westonsteimel", "vulnerability_id": "CVE-2020-11023"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/e5052f97-6c44-45ee-972d-9775102da643.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/e5052f97-6c44-45ee-972d-9775102da643.json deleted file mode 100644 index 2c06283d..00000000 --- a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/e5052f97-6c44-45ee-972d-9775102da643.json +++ /dev/null @@ -1 +0,0 @@ -{"ID": "e5052f97-6c44-45ee-972d-9775102da643", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "php-json", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2023-03-10T15:11:02.028200", "tool": "grype[custom-db]@v0.59.1", "user": "wagoodman", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/e98a52ce-1ae2-48dc-bc1f-6eea10604934.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/e98a52ce-1ae2-48dc-bc1f-6eea10604934.json deleted file mode 100644 index 6722d22f..00000000 --- a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/e98a52ce-1ae2-48dc-bc1f-6eea10604934.json +++ /dev/null @@ -1 +0,0 @@ -{"ID": "e98a52ce-1ae2-48dc-bc1f-6eea10604934", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "php-opcache", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2023-03-10T15:10:31.872771", "tool": "grype[custom-db]@v0.59.1", "user": "wagoodman", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/f41235c1-1cca-45a4-babc-99f438aeab60.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/f41235c1-1cca-45a4-babc-99f438aeab60.json new file mode 100644 index 00000000..bfa87e00 --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/f41235c1-1cca-45a4-babc-99f438aeab60.json @@ -0,0 +1 @@ +{"ID": "f41235c1-1cca-45a4-babc-99f438aeab60", "effective_cve": "CVE-2007-4559", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "TP", "package": {"name": "python3-pip-wheel", "version": "9.0.3-22.el8"}, "timestamp": "2025-02-11T16:15:41.709340+00:00", "tool": "grype@v0.86.1-24-g2b2cd45", "user": "westonsteimel", "vulnerability_id": "CVE-2007-4559"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/f6be3ad6-8447-4bc0-842a-3fddfb1fe791.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/f6be3ad6-8447-4bc0-842a-3fddfb1fe791.json new file mode 100644 index 00000000..1e0467c9 --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/f6be3ad6-8447-4bc0-842a-3fddfb1fe791.json @@ -0,0 +1 @@ +{"ID": "f6be3ad6-8447-4bc0-842a-3fddfb1fe791", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "FP", "package": {"name": "php-json", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2025-02-11T17:02:03.517872+00:00", "tool": "grype@v0.87.0-33-g154fd9f", "user": "westonsteimel", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file diff --git a/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/fa713860-cbb1-4b7c-aacc-f956ab647945.json b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/fa713860-cbb1-4b7c-aacc-f956ab647945.json new file mode 100644 index 00000000..9f42728d --- /dev/null +++ b/labels/docker.io+anchore+test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b/fa713860-cbb1-4b7c-aacc-f956ab647945.json @@ -0,0 +1 @@ +{"ID": "fa713860-cbb1-4b7c-aacc-f956ab647945", "effective_cve": "CVE-2021-32610", "image": {"exact": "docker.io/anchore/test_images@sha256:524ff8a75f21fd886ec7ed82387766df386671e8b77e898d05786118d5b7880b"}, "label": "FP", "package": {"name": "php-mbstring", "version": "7.4.30-1.module_el8.7.0+1190+d11b935a"}, "timestamp": "2025-02-11T17:02:03.980319+00:00", "tool": "grype@v0.87.0-33-g154fd9f", "user": "westonsteimel", "vulnerability_id": "CVE-2021-32610"} \ No newline at end of file From 0188529b67de0e8aa7309fcff4554ff1a9e9d969 Mon Sep 17 00:00:00 2001 From: Weston Steimel Date: Tue, 11 Feb 2025 17:10:12 +0000 Subject: [PATCH 2/2] update actions/cache to supported version Signed-off-by: Weston Steimel --- .github/workflows/update-sboms.yaml | 2 +- .github/workflows/validations.yaml | 6 +++--- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/.github/workflows/update-sboms.yaml b/.github/workflows/update-sboms.yaml index fe27bb85..9a480ecd 100644 --- a/.github/workflows/update-sboms.yaml +++ b/.github/workflows/update-sboms.yaml @@ -25,7 +25,7 @@ jobs: with: python-version: ${{ env.PYTHON_VERSION }} - - uses: actions/cache@v2 + - uses: actions/cache@1bd1e32a3bdc45362d1e726936510720a7c30a57 # v4.2.0 with: path: venv key: ${{ hashFiles('requirements.txt') }}-${{ hashFiles('Makefile') }} diff --git a/.github/workflows/validations.yaml b/.github/workflows/validations.yaml index 7ef5074a..e8954d9b 100644 --- a/.github/workflows/validations.yaml +++ b/.github/workflows/validations.yaml @@ -14,14 +14,14 @@ jobs: name: "Checks" runs-on: ubuntu-22.04-4core-16gb steps: - - uses: actions/checkout@3df4ab11eba7bda6032a0b82a6bb43b11571feac #v4.0.0 + - uses: actions/checkout@3df4ab11eba7bda6032a0b82a6bb43b11571feac # v4.0.0 - name: Setup Python - uses: actions/setup-python@61a6322f88396a6271a6ee3565807d608ecaddd1 #v4.7.0 + uses: actions/setup-python@61a6322f88396a6271a6ee3565807d608ecaddd1 # v4.7.0 with: python-version: ${{ env.PYTHON_VERSION }} - - uses: actions/cache@704facf57e6136b1bc63b828d79edcd491f0ee84 #v3.3.2 + - uses: actions/cache@1bd1e32a3bdc45362d1e726936510720a7c30a57 # v4.2.0 with: path: venv key: ${{ hashFiles('requirements.txt') }}-${{ hashFiles('Makefile') }}