Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package syft for openSUSE:Factory checked in at 2025-01-23 18:04:30 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/syft (Old) and /work/SRC/openSUSE:Factory/.syft.new.5589 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "syft" Thu Jan 23 18:04:30 2025 rev:92 rq:1239747 version:1.19.0 Changes: -------- --- /work/SRC/openSUSE:Factory/syft/syft.changes 2024-12-16 19:16:00.815669998 +0100 +++ /work/SRC/openSUSE:Factory/.syft.new.5589/syft.changes 2025-01-23 18:05:58.597531387 +0100 @@ -1,0 +2,87 @@ +Thu Jan 23 05:36:08 UTC 2025 - opensuse_buildserv...@ojkastl.de + +- Update to version 1.19.0: + * chore(deps): update tools to latest versions (#3602) + * chore(deps): bump github/codeql-action from 3.28.1 to 3.28.2 + (#3604) + * chore(deps): bump github.com/hashicorp/hcl/v2 from 2.22.0 to + 2.23.0 (#3605) + * chore(deps): bump github.com/aquasecurity/go-pep440-version + (#3606) + * chore: bump stereoscope to v0.0.13 (#3601) + * feat(cataloger): add a terraform provider cataloger (#3378) + * chore(deps): update tools to latest versions (#3597) + * chore(deps): update CPE dictionary index (#3599) + * chore(deps): bump actions/setup-go from 5.2.0 to 5.3.0 (#3600) + * feat(golang): add license parsing from vendor dirs (#3522) + * chore: bump packageurl-go with new parsing rules (#3596) + * chore(deps): bump marocchino/sticky-pull-request-comment + (#3595) + * feat: add cataloger for NuGet packages (#3484) + * allow disabling all package catalogers (#3468) + * chore(deps): bump github.com/google/go-containerregistry + (#3592) + * chore(deps): bump modernc.org/sqlite from 1.34.4 to 1.34.5 + (#3593) + * chore(deps): update tools to latest versions (#3582) + * chore: update README.md's link to Nixpkgs (#3578) + * chore(deps): bump github.com/sanity-io/litter from 1.5.5 to + 1.5.6 (#3579) + * chore(deps): bump github.com/spf13/afero from 1.11.0 to 1.12.0 + (#3580) + * chore(deps): bump actions/upload-artifact from 4.5.0 to 4.6.0 + (#3581) + * chore(deps): update CPE dictionary index (#3583) + * chore(deps): bump github/codeql-action from 3.28.0 to 3.28.1 + (#3584) + * chore(deps): bump github.com/go-git/go-billy/v5 from 5.6.1 to + 5.6.2 (#3585) + * chore(deps): bump github.com/bmatcuk/doublestar/v4 from 4.7.1 + to 4.8.0 (#3586) + * chore(deps): bump github.com/docker/docker (#3587) + * chore(deps): update anchore dependencies (#3571) + * chore(deps): update tools to latest versions (#3567) + * chore(deps): bump golang.org/x/net from 0.33.0 to 0.34.0 + (#3568) + * fix: golang remote license search not executing when error + reading local mod dir (#3549) + * chore(deps): update tools to latest versions (#3564) + * chore(deps): update CPE dictionary index (#3565) + * chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.7 to + 0.5.8 (#3548) + * chore(deps): update tools to latest versions (#3560) + * chore(deps): bump github.com/go-git/go-git/v5 from 5.13.0 to + 5.13.1 (#3561) + * Use reader when scanning for package versions over reading + entire binary into memory (#3558) + * chore(deps): bump github.com/go-git/go-billy/v5 from 5.6.0 to + 5.6.1 (#3551) + * chore(deps): update tools to latest versions (#3556) + * test: removes latest license list test (#3559) + * chore(deps): bump peter-evans/create-pull-request from 7.0.5 to + 7.0.6 (#3547) + * chore(deps): update CPE dictionary index (#3550) + * chore(deps): bump github.com/go-git/go-git/v5 from 5.12.0 to + 5.13.0 (#3552) + * chore(deps): update tools to latest versions (#3543) + * chore(deps): update CPE dictionary index (#3544) + * chore(deps): bump modernc.org/sqlite from 1.34.3 to 1.34.4 + (#3545) + * chore(deps): bump github/codeql-action from 3.27.9 to 3.28.0 + (#3546) + * chore(deps): bump golang.org/x/net from 0.32.0 to 0.33.0 + (#3541) + * chore(deps): bump modernc.org/sqlite from 1.34.2 to 1.34.3 + (#3542) + * chore(deps): bump actions/upload-artifact from 4.4.3 to 4.5.0 + (#3537) + * chore(deps): bump github.com/docker/docker (#3538) + * chore(deps): update CPE dictionary index (#3526) + * chore(deps): bump github.com/CycloneDX/cyclonedx-go from 0.9.1 + to 0.9.2 (#3530) + * chore(deps): bump github.com/jedib0t/go-pretty/v6 from 6.6.4 to + 6.6.5 (#3531) + * chore(deps): bump anchore/sbom-action from 0.17.8 to 0.17.9 + (#3532) + +------------------------------------------------------------------- Old: ---- syft-1.18.1.obscpio New: ---- syft-1.19.0.obscpio ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ syft.spec ++++++ --- /var/tmp/diff_new_pack.Sq9bfS/_old 2025-01-23 18:06:02.337685896 +0100 +++ /var/tmp/diff_new_pack.Sq9bfS/_new 2025-01-23 18:06:02.337685896 +0100 @@ -1,7 +1,7 @@ # # spec file for package syft # -# Copyright (c) 2024 SUSE LLC +# Copyright (c) 2025 SUSE LLC # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -19,7 +19,7 @@ %define __arch_install_post export NO_BRP_STRIP_DEBUG=true Name: syft -Version: 1.18.1 +Version: 1.19.0 Release: 0 Summary: CLI tool and library for generating a Software Bill of Materials License: Apache-2.0 ++++++ _service ++++++ --- /var/tmp/diff_new_pack.Sq9bfS/_old 2025-01-23 18:06:02.385687879 +0100 +++ /var/tmp/diff_new_pack.Sq9bfS/_new 2025-01-23 18:06:02.389688044 +0100 @@ -3,7 +3,7 @@ <param name="url">https://github.com/anchore/syft</param> <param name="scm">git</param> <param name="exclude">.git</param> - <param name="revision">v1.18.1</param> + <param name="revision">v1.19.0</param> <param name="versionformat">@PARENT_TAG@</param> <param name="versionrewrite-pattern">v(.*)</param> <param name="changesgenerate">enable</param> ++++++ _servicedata ++++++ --- /var/tmp/diff_new_pack.Sq9bfS/_old 2025-01-23 18:06:02.405688705 +0100 +++ /var/tmp/diff_new_pack.Sq9bfS/_new 2025-01-23 18:06:02.409688870 +0100 @@ -1,6 +1,6 @@ <servicedata> <service name="tar_scm"> <param name="url">https://github.com/anchore/syft</param> - <param name="changesrevision">5e16e5031a13f8a11057feb8544decebfc43b4ed</param></service></servicedata> + <param name="changesrevision">222e6548a96f8c80015c1d24f01dea3052a04893</param></service></servicedata> (No newline at EOF) ++++++ syft-1.18.1.obscpio -> syft-1.19.0.obscpio ++++++ /work/SRC/openSUSE:Factory/syft/syft-1.18.1.obscpio /work/SRC/openSUSE:Factory/.syft.new.5589/syft-1.19.0.obscpio differ: char 49, line 1 ++++++ syft.obsinfo ++++++ --- /var/tmp/diff_new_pack.Sq9bfS/_old 2025-01-23 18:06:02.445690358 +0100 +++ /var/tmp/diff_new_pack.Sq9bfS/_new 2025-01-23 18:06:02.449690523 +0100 @@ -1,5 +1,5 @@ name: syft -version: 1.18.1 -mtime: 1734114611 -commit: 5e16e5031a13f8a11057feb8544decebfc43b4ed +version: 1.19.0 +mtime: 1737575094 +commit: 222e6548a96f8c80015c1d24f01dea3052a04893 ++++++ vendor.tar.gz ++++++ /work/SRC/openSUSE:Factory/syft/vendor.tar.gz /work/SRC/openSUSE:Factory/.syft.new.5589/vendor.tar.gz differ: char 5, line 1