Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

sys-process/bottom: Security fixes and update to 0.6.4 #22328

Closed
wants to merge 1 commit into from

Conversation

bowlofeggs
Copy link
Contributor

@bowlofeggs bowlofeggs commented Sep 18, 2021

I have applied patches here to address two vulnerable dependencies[0]
and a failing test[1].

This fixes RUSTSEC-2021-0003[2] and RUSTSEC-2021-0093[3].

[0] ClementTsang/bottom#580
[1] ClementTsang/bottom#582
[2] https://rustsec.org/advisories/RUSTSEC-2021-0003
[3] https://rustsec.org/advisories/RUSTSEC-2021-0093

Signed-off-by: Randy Barlow randy@electronsweatshop.com

@gentoo-bot
Copy link

Pull Request assignment

Submitter: @bowlofeggs
Areas affected: ebuilds
Packages affected: sys-process/bottom

sys-process/bottom: @bowlofeggs, @gentoo/proxy-maint

Linked bugs

No bugs to link found. If your pull request references any of the Gentoo bug reports, please add appropriate GLEP 66 tags to the commit message and request reassignment.


In order to force reassignment and/or bug reference scan, please append [please reassign] to the pull request title.

Docs: Code of ConductCopyright policy (expl.) ● DevmanualGitHub PRsProxy-maint guide

@gentoo-bot gentoo-bot added self-maintained The PR changes only packages that are maintained by the submitter (i.e. no need to ask anybody else) assigned PR successfully assigned to the package maintainer(s). labels Sep 18, 2021
I have applied patches here to address two vulnerable dependencies[0]
and a failing test[1].

This fixes RUSTSEC-2021-0003[2] and RUSTSEC-2021-0093[3].

[0] ClementTsang/bottom#580
[1] ClementTsang/bottom#582
[2] https://rustsec.org/advisories/RUSTSEC-2021-0003
[3] https://rustsec.org/advisories/RUSTSEC-2021-0093

Signed-off-by: Randy Barlow <randy@electronsweatshop.com>
@bowlofeggs bowlofeggs changed the title sys-process/bottom: Update to 0.6.4 sys-process/bottom: Security fixes and update to 0.6.4 Sep 18, 2021
@gentoo-repo-qa-bot
Copy link
Collaborator

Pull request CI report

Report generated at: 2021-09-18 18:19 UTC
Newest commit scanned: e4a0431
Status: ✅ good

There are existing issues already. Please look into the report to make sure none of them affect the packages in question:
https://qa-reports.gentoo.org/output/gentoo-ci/e2369d5d61/output.html

@gyakovlev
Copy link
Member

thanks for taking care of security too, merged.

@bowlofeggs bowlofeggs deleted the bottom-proxied branch September 19, 2021 01:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
assigned PR successfully assigned to the package maintainer(s). self-maintained The PR changes only packages that are maintained by the submitter (i.e. no need to ask anybody else)
Projects
None yet
4 participants