Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package trivy for openSUSE:Factory checked in at 2023-04-28 16:23:54 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/trivy (Old) and /work/SRC/openSUSE:Factory/.trivy.new.1533 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "trivy" Fri Apr 28 16:23:54 2023 rev:51 rq:1083465 version:0.41.0 Changes: -------- --- /work/SRC/openSUSE:Factory/trivy/trivy.changes 2023-04-17 17:41:04.930145409 +0200 +++ /work/SRC/openSUSE:Factory/.trivy.new.1533/trivy.changes 2023-04-28 16:25:06.334618636 +0200 @@ -1,0 +2,29 @@ +Fri Apr 28 07:31:35 UTC 2023 - dmuel...@suse.com + +- Update to version 0.41.0: + * fix(spdx): add workaround for no src packages (#4118) + * test(golang): rename broken go.mod (#4129) + * feat(sbom): add supplier field (#4122) + * test(misconf): skip downloading of policies for tests #4126 + * refactor: use debug message for post-analyze errors (#4037) + * feat(sbom): add VEX support (#4053) + * feat(sbom): add primary package purpose field for SPDX (#4119) + * fix(k8s): fix quiet flag (#4120) + * fix(python): parse of pip extras (#4103) + * feat(java): use full path for nested jars (#3992) + * feat(license): add new flag for classifier confidence level (#4073) + * feat: config and fs compliance support (#4097) + * chore(deps): bump sigstore/cosign-installer from 2.8.1 to 3.0.1 (#3952) + * feat(spdx): add support for SPDX 2.3 (#4058) + * fix: k8s all-namespaces support (#4096) + * perf(misconf): replace with post-analyzers (#4090) + * fix(helm): update networking API version detection (#4106) + * feat(image): custom docker host option (#3599) + * style: debug flag is incorrect and needs extra - (#4087) + * docs(vuln): Document inline vulnerability filtering comments (#4024) + * feat(fs): customize error callback during fs walk (#4038) + * fix(ubuntu): skip copyright files from subfolders (#4076) + * docs: restructure scanners (#3977) + * fix: fix `file does not exist` error for post-analyzers (#4061) + +------------------------------------------------------------------- Old: ---- trivy-0.40.0.tar.zst New: ---- trivy-0.41.0.tar.zst ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ trivy.spec ++++++ --- /var/tmp/diff_new_pack.PfE4W4/_old 2023-04-28 16:25:12.270653284 +0200 +++ /var/tmp/diff_new_pack.PfE4W4/_new 2023-04-28 16:25:12.278653330 +0200 @@ -17,7 +17,7 @@ Name: trivy -Version: 0.40.0 +Version: 0.41.0 Release: 0 Summary: A Simple and Comprehensive Vulnerability Scanner for Containers License: Apache-2.0 ++++++ _service ++++++ --- /var/tmp/diff_new_pack.PfE4W4/_old 2023-04-28 16:25:12.310653517 +0200 +++ /var/tmp/diff_new_pack.PfE4W4/_new 2023-04-28 16:25:12.314653540 +0200 @@ -2,7 +2,7 @@ <service name="tar_scm" mode="disabled"> <param name="url">https://github.com/aquasecurity/trivy</param> <param name="scm">git</param> - <param name="revision">v0.40.0</param> + <param name="revision">v0.41.0</param> <param name="versionformat">@PARENT_TAG@</param> <param name="versionrewrite-pattern">v(.*)</param> <param name="changesgenerate">enable</param> ++++++ _servicedata ++++++ --- /var/tmp/diff_new_pack.PfE4W4/_old 2023-04-28 16:25:12.330653634 +0200 +++ /var/tmp/diff_new_pack.PfE4W4/_new 2023-04-28 16:25:12.334653657 +0200 @@ -1,6 +1,6 @@ <servicedata> <service name="tar_scm"> <param name="url">https://github.com/aquasecurity/trivy</param> - <param name="changesrevision">b43b19ba54cbf30adfaf98febccef033701a1df3</param></service></servicedata> + <param name="changesrevision">1be1e2e6380efd9b63913721db1b9d61e3800126</param></service></servicedata> (No newline at EOF) ++++++ vendor.tar.zst ++++++ Binary files /var/tmp/diff_new_pack.PfE4W4/_old and /var/tmp/diff_new_pack.PfE4W4/_new differ