Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Conversation

@spiffcs
Copy link
Contributor

@spiffcs spiffcs commented Jan 10, 2022

Bumps stereoscope which resolves dependency for: GHSA-mvff-h3cj-wj9c
Signed-off-by: Christopher Phillips [email protected]

Signed-off-by: Christopher Phillips <[email protected]>
@github-actions
Copy link

github-actions bot commented Jan 10, 2022

Benchmark Test Results

Benchmark results from the latest changes vs base branch
name                                                       old time/op    new time/op    delta
ImagePackageCatalogers/ruby-gemspec-cataloger-2              1.64ms ± 2%    1.41ms ± 4%  -14.14%  (p=0.008 n=5+5)
ImagePackageCatalogers/python-package-cataloger-2            3.78ms ± 4%    3.14ms ± 2%  -16.87%  (p=0.008 n=5+5)
ImagePackageCatalogers/php-composer-installed-cataloger-2    1.13ms ± 2%    0.96ms ± 2%  -15.14%  (p=0.008 n=5+5)
ImagePackageCatalogers/javascript-package-cataloger-2        1.01ms ± 1%    0.96ms ± 2%   -4.29%  (p=0.008 n=5+5)
ImagePackageCatalogers/dpkgdb-cataloger-2                    1.18ms ± 2%    1.03ms ± 7%  -12.74%  (p=0.008 n=5+5)
ImagePackageCatalogers/rpmdb-cataloger-2                     1.04ms ± 3%    0.92ms ± 5%  -11.91%  (p=0.008 n=5+5)
ImagePackageCatalogers/java-cataloger-2                      16.0ms ± 1%    13.4ms ± 3%  -16.05%  (p=0.008 n=5+5)
ImagePackageCatalogers/apkdb-cataloger-2                     1.53ms ± 1%    1.31ms ± 2%  -14.30%  (p=0.008 n=5+5)
ImagePackageCatalogers/go-module-binary-cataloger-2          2.23µs ± 1%    1.84µs ± 1%  -17.57%  (p=0.008 n=5+5)

name                                                       old alloc/op   new alloc/op   delta
ImagePackageCatalogers/ruby-gemspec-cataloger-2               252kB ± 0%     253kB ± 0%   +0.21%  (p=0.008 n=5+5)
ImagePackageCatalogers/python-package-cataloger-2            1.06MB ± 0%    1.06MB ± 0%     ~     (p=0.310 n=5+5)
ImagePackageCatalogers/php-composer-installed-cataloger-2     229kB ± 0%     230kB ± 0%     ~     (p=0.151 n=5+5)
ImagePackageCatalogers/javascript-package-cataloger-2         207kB ± 0%     207kB ± 0%     ~     (p=0.095 n=5+5)
ImagePackageCatalogers/dpkgdb-cataloger-2                     253kB ± 0%     253kB ± 0%   +0.17%  (p=0.008 n=5+5)
ImagePackageCatalogers/rpmdb-cataloger-2                      234kB ± 0%     235kB ± 0%     ~     (p=0.095 n=5+5)
ImagePackageCatalogers/java-cataloger-2                      3.62MB ± 0%    3.63MB ± 0%     ~     (p=0.151 n=5+5)
ImagePackageCatalogers/apkdb-cataloger-2                     1.30MB ± 0%    1.30MB ± 0%   -0.11%  (p=0.008 n=5+5)
ImagePackageCatalogers/go-module-binary-cataloger-2            560B ± 0%      560B ± 0%     ~     (all equal)

name                                                       old allocs/op  new allocs/op  delta
ImagePackageCatalogers/ruby-gemspec-cataloger-2               6.31k ± 0%     6.31k ± 0%     ~     (all equal)
ImagePackageCatalogers/python-package-cataloger-2             21.3k ± 0%     21.3k ± 0%     ~     (p=1.000 n=5+5)
ImagePackageCatalogers/php-composer-installed-cataloger-2     6.04k ± 0%     6.04k ± 0%     ~     (p=1.000 n=5+5)
ImagePackageCatalogers/javascript-package-cataloger-2         5.32k ± 0%     5.32k ± 0%     ~     (all equal)
ImagePackageCatalogers/dpkgdb-cataloger-2                     7.05k ± 0%     7.05k ± 0%     ~     (all equal)
ImagePackageCatalogers/rpmdb-cataloger-2                      6.78k ± 0%     6.78k ± 0%     ~     (all equal)
ImagePackageCatalogers/java-cataloger-2                       69.5k ± 0%     69.5k ± 0%     ~     (p=0.579 n=5+5)
ImagePackageCatalogers/apkdb-cataloger-2                      7.34k ± 0%     7.34k ± 0%     ~     (p=0.095 n=4+5)
ImagePackageCatalogers/go-module-binary-cataloger-2            13.0 ± 0%      13.0 ± 0%     ~     (all equal)

@spiffcs spiffcs merged commit b77ddfc into main Jan 10, 2022
@spiffcs spiffcs deleted the upgrade-stereoscope branch January 10, 2022 18:40
spiffcs added a commit that referenced this pull request Jan 19, 2022
…hub.com/hectorj2f/syft into hectorj2f/add_dependencies_to_cyclonedx

* 'hectorj2f/add_dependencies_to_cyclonedx' of https://github.com/hectorj2f/syft: (29 commits)
  Improve CycloneDX format output (#710)
  Add additional PHP metadata (#753)
  Update Syft formats for SyftJson (#752)
  Add support for "file" source type in syftjson unmarshaling (#750)
  remove contains file from spdx dependency generation
  support .sar for java ecosystem (#748)
  Start developer documentation (#746)
  Align SPDX export more with SPDX 2.2 specification (#743)
  Replace distro type (#742)
  update goreleaser with windows checksums (#740)
  bump stereoscope version to remove old containerd (#741)
  Add support for multiple output files in different formats (#732)
  Add support for searching for jars within archives (#734)
  683 windows filepath (#735)
  Fix CPE encode/decode when it contains special chars (#714)
  support .par for java ecosystems (#727)
  Add arm64 support to install script (#729)
  Revert "bump goreleaser to v1.2 (#720)" (#731)
  Add a version flag (#722)
  Add lpkg as java package format (#694)
  ...
fengshunli pushed a commit to fengshunli/syft that referenced this pull request Jan 24, 2022
* bump stereoscope version to remove old containerd

Signed-off-by: Christopher Phillips <[email protected]>

* go mod tidy

Signed-off-by: Christopher Phillips <[email protected]>
Signed-off-by: fsl <[email protected]>
spiffcs added a commit that referenced this pull request Jan 24, 2022
* bump stereoscope version to remove old containerd

Signed-off-by: Christopher Phillips <[email protected]>

* go mod tidy

Signed-off-by: Christopher Phillips <[email protected]>
spiffcs added a commit that referenced this pull request Jan 25, 2022
* bump stereoscope version to remove old containerd

Signed-off-by: Christopher Phillips <[email protected]>

* go mod tidy

Signed-off-by: Christopher Phillips <[email protected]>
jonasagx pushed a commit to jonasagx/syft that referenced this pull request Jan 28, 2022
* bump stereoscope version to remove old containerd

Signed-off-by: Christopher Phillips <[email protected]>

* go mod tidy

Signed-off-by: Christopher Phillips <[email protected]>
GijsCalis pushed a commit to GijsCalis/syft that referenced this pull request Feb 19, 2024
* bump stereoscope version to remove old containerd

Signed-off-by: Christopher Phillips <[email protected]>

* go mod tidy

Signed-off-by: Christopher Phillips <[email protected]>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants