Skip to content

Commit b879cbd

Browse files
Merge branch 'main' into integrate-lib4vex
2 parents 806106b + 20e33f6 commit b879cbd

File tree

465 files changed

+9692
-4951
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

465 files changed

+9692
-4951
lines changed

.github/actions/spelling/allow.txt

Lines changed: 45 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -15,6 +15,7 @@ apcupsd
1515
api
1616
apk
1717
apparmor
18+
apr
1819
ares
1920
argparse
2021
Args
@@ -25,6 +26,7 @@ asterisk
2526
atftp
2627
atheris
2728
atlassian
29+
augeas
2830
autoescape
2931
autoextract
3032
autoextracts
@@ -54,6 +56,7 @@ blog
5456
bluetooth
5557
bluetoothctl
5658
bluez
59+
boa
5760
boinc
5861
bolt
5962
boot
@@ -69,6 +72,7 @@ bwm
6972
bzip
7073
c
7174
cabextract
75+
cairo
7276
capnproto
7377
cbt
7478
CDNs
@@ -77,6 +81,7 @@ ceph
7781
cfa
7882
cfea
7983
cff
84+
cflow
8085
chaitanyamogal
8186
Changelog
8287
charset
@@ -86,11 +91,13 @@ chris
8691
chrony
8792
civetweb
8893
clamav
94+
clang
8995
cleartext
9096
clnt
9197
cmdline
9298
codebase
9399
codecov
100+
codespell
94101
collectd
95102
commons
96103
compress
@@ -149,6 +156,7 @@ dio
149156
Dio
150157
distro
151158
distros
159+
djvulibre
152160
dlt
153161
dmidecode
154162
dnsmasq
@@ -203,7 +211,9 @@ file
203211
filepaths
204212
filetype
205213
filterdiv
214+
filters
206215
firefox
216+
firejail
207217
flac
208218
fluidsynth
209219
flutterchina
@@ -219,8 +229,10 @@ fsf
219229
fsprogs
220230
ftp
221231
ftpd
232+
fuse
222233
fuzzer
223234
g
235+
GAAD
224236
GAD
225237
gawk
226238
gcc
@@ -259,9 +271,11 @@ gpsd
259271
graphicsmagick
260272
grep
261273
grub
274+
gsasl
262275
GSo
263276
gsoc
264277
gstreamer
278+
guile
265279
gupnp
266280
gvfs
267281
gzip
@@ -291,9 +305,13 @@ i
291305
icecast
292306
icu
293307
ikeydoherty
308+
imagemagick
294309
img
295310
imgur
296311
imsahil
312+
inclusivity
313+
indent
314+
inetutils
297315
INI
298316
inosmeet
299317
iperf
@@ -312,6 +330,7 @@ jacksondatabind
312330
janus
313331
jasper
314332
javascript
333+
jbig
315334
jdk
316335
jerinjtitus
317336
jhead
@@ -338,6 +357,7 @@ libass
338357
libbluetooth
339358
libbpg
340359
libc
360+
libcap
341361
libcoap
342362
libconfuse
343363
libcurl
@@ -357,6 +377,7 @@ libinput
357377
libjpeg
358378
libksba
359379
liblas
380+
liblouis
360381
libmatroska
361382
libmemcached
362383
libmicrohttpd
@@ -368,6 +389,8 @@ libpng
368389
libprotobuf
369390
libraryname
370391
libraw
392+
libreoffice
393+
libreswan
371394
librsvg
372395
librsync
373396
libsamplerate
@@ -393,6 +416,7 @@ libvpx
393416
libxml
394417
libxslt
395418
libyaml
419+
libyang
396420
lifecycle
397421
lighttpd
398422
linode
@@ -401,13 +425,15 @@ linux
401425
linuxptp
402426
lite
403427
lldpd
428+
llvm
404429
logrotate
405430
lrzip
406431
lua
407432
luajit
408433
lxc
409434
lynx
410435
lz
436+
lzo
411437
mailx
412438
malloc
413439
malware
@@ -454,6 +480,7 @@ msmtp
454480
msys
455481
mtr
456482
mupdf
483+
musl
457484
mutt
458485
myapp
459486
myappvendor
@@ -504,10 +531,12 @@ nvdosvgad
504531
nvdosvgadcurl
505532
oath
506533
OCSP
534+
ofono
507535
onboarding
508536
oneline
509537
open
510538
openafs
539+
openblas
511540
opencv
512541
openjpeg
513542
openldap
@@ -519,7 +548,9 @@ opensuse
519548
openswan
520549
openvex
521550
openvpn
551+
openvswitch
522552
openwrt
553+
opkg
523554
orc
524555
ossl
525556
osv
@@ -546,6 +577,7 @@ picocom
546577
pigz
547578
pixbuf
548579
pixman
580+
pjsip
549581
plotly
550582
png
551583
pocoo
@@ -597,6 +629,7 @@ readthedocs
597629
realpython
598630
rebasing
599631
redhat
632+
redis
600633
refactored
601634
refactoring
602635
regex
@@ -617,6 +650,7 @@ rsync
617650
rsyslog
618651
rtl
619652
rtmpdump
653+
ruby
620654
runc
621655
rust
622656
sakshatshinde
@@ -626,6 +660,7 @@ sandboxing
626660
sane
627661
sanketsaurav
628662
sannanansari
663+
sasl
629664
Saurabh
630665
sbs
631666
sdk
@@ -678,6 +713,7 @@ tagvalue
678713
tar
679714
tarfiles
680715
taskbar
716+
tbb
681717
tcpdump
682718
tcpreplay
683719
tempfile
@@ -702,6 +738,7 @@ toml
702738
toolkit
703739
tools
704740
tor
741+
toybox
705742
tpm
706743
traceroute
707744
transmission
@@ -737,6 +774,7 @@ util
737774
utkarsh
738775
utm
739776
uuid
777+
uwsgi
740778
v
741779
varnish
742780
venv
@@ -756,6 +794,8 @@ Vulnerability
756794
Vulnerabity
757795
vulnerablities
758796
vulnerablity
797+
wavpack
798+
WCAG
759799
webkitgtk
760800
webserver
761801
website
@@ -773,25 +813,30 @@ workarounds
773813
workflow
774814
workflows
775815
wpa
816+
wrt
776817
wsl
777818
www
778819
wzao
779820
Xchange
821+
XDG
780822
XDRAGON
781823
xerces
782824
Xiph
783825
xkcd
784826
xml
827+
xpdf
785828
xscreensaver
786829
xvf
787830
xwayland
831+
xz
788832
yakkety
789833
yaml
790834
yashugarg
791835
yasm
792836
yml
793837
YYYY
794838
zabbix
839+
zbar
795840
zchunk
796841
zeek
797842
zip

.github/codecov.yml

Lines changed: 14 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,14 @@
1+
codecov:
2+
token: ${{ secrets.CODECOV_TOKEN }}
3+
ci:
4+
- github-actions
5+
max_report_age: 12
6+
require_ci_to_pass: TRUE
7+
8+
coverage:
9+
round: down
10+
range: 60..80
11+
12+
comment:
13+
layout: "condensed_header, condensed_files, condensed_footer"
14+
hide_project_coverage: FALSE

.github/workflows/build-wheel.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -23,12 +23,12 @@ jobs:
2323
if: github.repository == 'intel/cve-bin-tool' # run on origin repo only
2424
steps:
2525
- name: Harden Runner
26-
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
26+
uses: step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0 # v2.12.0
2727
with:
2828
egress-policy: audit
2929

3030
- uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
31-
- uses: actions/setup-python@0b93645e9fea7318ecaed2b359559ac225c90a2b # v5.3.0
31+
- uses: actions/setup-python@a26af69be951a213d495a4c3e4e4022e16d87065 # v5.6.0
3232
with:
3333
python-version: ${{ matrix.python-version }}
3434
cache: 'pip'

.github/workflows/codeql-analysis.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -42,7 +42,7 @@ jobs:
4242

4343
steps:
4444
- name: Harden Runner
45-
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
45+
uses: step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0 # v2.12.0
4646
with:
4747
egress-policy: audit
4848

@@ -51,7 +51,7 @@ jobs:
5151

5252
# Initializes the CodeQL tools for scanning.
5353
- name: Initialize CodeQL
54-
uses: github/codeql-action/init@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169 # v3.28.0
54+
uses: github/codeql-action/init@fca7ace96b7d713c7035871441bd52efbe39e27e # v3.28.19
5555
with:
5656
languages: ${{ matrix.language }}
5757
# If you wish to specify custom queries, you can do so here or in a config file.
@@ -76,4 +76,4 @@ jobs:
7676
# make release
7777

7878
- name: Perform CodeQL Analysis
79-
uses: github/codeql-action/analyze@48ab28a6f5dbc2a99bf1e0131198dd8f1df78169 # v3.28.0
79+
uses: github/codeql-action/analyze@fca7ace96b7d713c7035871441bd52efbe39e27e # v3.28.19

.github/workflows/coverity.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@ jobs:
1414
runs-on: ${{ github.repository_owner == 'intel' && 'intel-ubuntu-latest' || 'ubuntu-latest' }}
1515
steps:
1616
- name: Harden Runner
17-
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
17+
uses: step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0 # v2.12.0
1818
with:
1919
egress-policy: audit
2020

.github/workflows/cve_scan.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -17,12 +17,12 @@ jobs:
1717
timeout-minutes: 60
1818
steps:
1919
- name: Harden Runner
20-
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
20+
uses: step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0 # v2.12.0
2121
with:
2222
egress-policy: audit
2323

2424
- uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
25-
- uses: actions/setup-python@0b93645e9fea7318ecaed2b359559ac225c90a2b # v5.3.0
25+
- uses: actions/setup-python@a26af69be951a213d495a4c3e4e4022e16d87065 # v5.6.0
2626
with:
2727
python-version: '3.11'
2828
cache: 'pip'
@@ -32,7 +32,7 @@ jobs:
3232
run: |
3333
echo "date=$(/bin/date -u "+%Y%m%d")" >> $GITHUB_OUTPUT
3434
- name: Get cached database
35-
uses: actions/cache@1bd1e32a3bdc45362d1e726936510720a7c30a57 # v4.2.0
35+
uses: actions/cache@5a3ec84eff668545956fd18022155c47e93e2684 # v4.2.3
3636
with:
3737
path: cache
3838
key: Linux-cve-bin-tool-${{ steps.get-date.outputs.date }}

.github/workflows/dependency-review.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -17,11 +17,11 @@ jobs:
1717
runs-on: ${{ github.repository_owner == 'intel' && 'intel-ubuntu-latest' || 'ubuntu-latest' }}
1818
steps:
1919
- name: Harden Runner
20-
uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4
20+
uses: step-security/harden-runner@0634a2670c59f64b4a01f0f96f84700a4088b9f0 # v2.12.0
2121
with:
2222
egress-policy: audit
2323

2424
- name: 'Checkout Repository'
2525
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
2626
- name: 'Dependency Review'
27-
uses: actions/dependency-review-action@3b139cfc5fae8b618d3eae3675e383bb1769c019 # v4.5.0
27+
uses: actions/dependency-review-action@da24556b548a50705dd671f47852072ea4c105d9 # v4.7.1

0 commit comments

Comments
 (0)