Ryan Mulligan
ad0b954b32
[CVE] add note about golang
2019-11-01 20:53:39 -07:00
Ryan Mulligan
39e9d68102
remove Gnome blacklist
...
fixes #131
revert this during the next release season
2019-11-01 06:08:06 -07:00
Ryan Mulligan
ad2fd44fc3
CVE: add note about Thrift
2019-10-31 06:26:40 -07:00
Ryan Mulligan
3741b7e634
indicate if a CVE has been patched
2019-10-28 07:41:45 -07:00
Ryan Mulligan
78fe5fe745
improve message about updating NVD
2019-10-27 13:09:44 -07:00
Ryan Mulligan
4edfde1895
use correct function for checking number of hashes
2019-10-27 13:09:29 -07:00
Ryan Mulligan
b4b5a6e7ad
ignore derivations containing multiple "sha256 ="
...
closes #130
2019-10-27 07:14:34 -07:00
Ryan Mulligan
d51df0b316
remove long description from commit message
...
I'm doing this to save space in the nixpkgs git repo.
2019-10-27 06:20:00 -07:00
Ryan Mulligan
c005972fdd
test checking GitHub for new versions
2019-10-12 16:20:16 -07:00
Ryan Mulligan
bb67484804
update CVE notes
2019-10-12 07:34:52 -07:00
Ryan Mulligan
ab2b5a6b91
add experimental CVE reporting
2019-10-06 16:17:08 -07:00
Ryan Mulligan
303aed0afc
add notes researching CVE failed matches
2019-10-06 16:16:31 -07:00
Ryan Mulligan
990afa0319
Main: add commandline hook into the getCVEs function
2019-10-06 14:16:35 -07:00
Lars Jellema
490d1ed162
Remove feed caching and clean up queries
2019-10-02 17:02:12 +02:00
Lars Jellema
93437182d4
Define a partial order on versions
2019-10-02 15:50:12 +02:00
Lars Jellema
cf54777abd
Properly check if database is out of date
2019-10-02 14:09:52 +02:00
Lars Jellema
eff6deb6d7
Store CVE data in a SQLite database
2019-10-02 14:07:41 +02:00
Lars Jellema
26b11c2025
Store NVD in a SQLite database
2019-10-02 14:04:57 +02:00
Ryan Mulligan
3950aa3f36
CVE,NVD: fix warnings
2019-09-28 09:36:22 -07:00
Ryan Mulligan
f7defb5399
Blacklist: don't update files containing "gnome"
2019-09-26 20:50:22 -07:00
Ryan Mulligan
fbcded8cde
fix hlint warnings
2019-09-26 06:56:49 -07:00
Ryan Mulligan
24252bac2e
use latest version of polysemy and plugin
2019-09-26 06:47:39 -07:00
Ryan Mulligan
6fc456e106
Time: fix polysemy names
2019-09-26 06:33:16 -07:00
Ryan Mulligan
226f72c522
minor reformatting
2019-09-26 05:36:15 -07:00
Ryan Mulligan
b867677120
make outpaths.nix exactly match OfBorg
2019-09-26 05:35:57 -07:00
Ryan Mulligan
4e344e64ee
update nixpkgs pin, add more runtime dependencies
2019-09-26 05:35:11 -07:00
Ryan Mulligan
9b0bdcf9f3
Revert "switch back to old hash splitter"
...
This reverts commit 0bd5de1acb
.
2019-09-23 21:16:30 -07:00
Ryan Mulligan
a96b00355d
README: update with new command
2019-09-07 16:56:59 -07:00
Ryan Mulligan
d9300946d3
Merge branch 'cve'
2019-09-07 16:53:01 -07:00
Ryan Mulligan
e8aff07494
Merge branch 'master' of github.com:ryantm/nixpkgs-update
2019-09-07 16:48:58 -07:00
Ryan Mulligan
76c8fda52a
Main: refactor so not every command has the same setup dependencies, use commands instead of switches
2019-09-07 16:48:10 -07:00
Ryan Mulligan
abb85845d9
CVE: fix import
2019-09-06 06:25:48 -07:00
Lars Jellema
626633f56d
Add caching and parsing of CVE feeds
2019-09-04 18:07:01 +02:00
Lars Jellema
3240016112
Add basic version matching logic
2019-09-04 17:48:12 +02:00
Lars Jellema
c6e824fe7a
Add libraries needed for CVE detection
2019-09-04 17:47:05 +02:00
Jan Tojnar
888232b63c
blacklist: Disable updating GNOME again
...
There is now a code freeze, with 3.34.0 tarball deadline on Sep 9, 2019.
2019-09-03 18:09:38 +02:00
Ryan Mulligan
50d346ee6d
Main: remove UpdateMergeBase option which actually did nothing yet
2019-08-24 14:03:30 -07:00
Ryan Mulligan
c8c5a3258e
Update: remove reference to deleted fix src url code
2019-08-24 13:56:07 -07:00
Ryan Mulligan
9a686921ab
remove Shelly dependency!
2019-08-18 15:04:23 -07:00
Ryan Mulligan
a06b1025fc
Clean: remove since it is unused
...
also, it contains old ways of getting hashes
2019-08-18 15:00:59 -07:00
Ryan Mulligan
8845a2314f
Check: remove Shelly usage
2019-08-18 14:56:51 -07:00
Ryan Mulligan
0bd5de1acb
switch back to old hash splitter
...
In Nix 2.2, the expected hash output seems to have changed back to
what it was before.
2019-08-03 15:07:36 -07:00
Ryan Mulligan
8a19788164
use shell for running nixpkgs-update to get proper dependencies
...
It was using dependencies from the environment instead of the ones
specified in the build inputs. Probably we need to fix this with
propagated build inputs, but this works for now.
2019-08-03 15:05:53 -07:00
Ryan Mulligan
bf66887f0a
add nix dependency
2019-08-03 15:05:19 -07:00
Ryan Mulligan
0899ed2556
try using cachix with travis
...
https://mpickering.github.io/posts/2019-06-24-overkill-or-not.html
2019-07-30 20:23:31 -07:00
Ryan Mulligan
9dfb8b591a
update travis script to use cachix cache
2019-07-30 07:42:12 -07:00
Ryan Mulligan
398a94e5b3
remove used code in Shell.hs
2019-07-29 21:54:17 -07:00
Ryan Mulligan
2aadc50e6f
add branch prefix
...
preparing to rename "auto-update"
2019-07-29 21:51:29 -07:00
Ryan Mulligan
1f45df7085
fix travis by allowing broken packages
2019-07-29 07:44:39 -07:00
Ryan Mulligan
59172c23f3
fix warnings and doctests
2019-07-28 20:23:57 -07:00