Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package syft for openSUSE:Factory checked in at 2022-11-19 18:09:07 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/syft (Old) and /work/SRC/openSUSE:Factory/.syft.new.1597 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "syft" Sat Nov 19 18:09:07 2022 rev:13 rq:1036800 version:0.62.0 Changes: -------- --- /work/SRC/openSUSE:Factory/syft/syft.changes 2022-11-16 15:42:58.363746761 +0100 +++ /work/SRC/openSUSE:Factory/.syft.new.1597/syft.changes 2022-11-19 18:09:15.266415969 +0100 @@ -1,0 +2,33 @@ +Sat Nov 19 12:04:28 UTC 2022 - ka...@b1-systems.de + +- Update to version 0.62.0: + * fix: spdx java checksum correctness (#1348) + * feat: Add support for npm lockfile version 3 (#1206) + +------------------------------------------------------------------- +Fri Nov 18 15:38:51 UTC 2022 - ka...@b1-systems.de + +- Update to version 0.61.0: + * 1111 clean name bug (#1347) + * Add spdx relationship encoding for dependencies (#1342) + * feat: SPDX 2.3 support (#1311) + * SBOM cataloger (#1029) + * chore: clean up linting configuration (#1343) + * fix: Unmarshal Syft JSON with missing metadata (#1338) + * fix apk decode for older data shapes (#1341) + * chore: add unit test for wolfi os release identification (#1340) + * fix: Output only valid CPEs for CycloneDX OS components (#1339) + * feat: Add `--name` option to override name in output (#1269) + * Add support for dependency relationships for alpine (apk) (#1063) + * normalize alpm md5 refs (#1333) + * Update java generic cataloger (#1329) + * Support encoding map types to CycloneDX properties (#1332) + * Update swift cataloger to generic cataloger (#1324) + * port rust cataloger to new generic cataloger pattern (#1323) + * port ruby cataloger to new generic cataloger pattern (#1322) + * port rpm cataloger to new generic cataloger pattern (#1321) + * port python cataloger to new generic cataloger pattern (#1319) + * Update portage cataloger to new generic cataloger (#1316) + * port php cataloger to new generic cataloger pattern (#1315) + +------------------------------------------------------------------- Old: ---- syft-0.60.3.tar.gz New: ---- syft-0.62.0.tar.gz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ syft.spec ++++++ --- /var/tmp/diff_new_pack.bCbH6H/_old 2022-11-19 18:09:16.710424131 +0100 +++ /var/tmp/diff_new_pack.bCbH6H/_new 2022-11-19 18:09:16.714424154 +0100 @@ -19,7 +19,7 @@ %define __arch_install_post export NO_BRP_STRIP_DEBUG=true Name: syft -Version: 0.60.3 +Version: 0.62.0 Release: 0 Summary: CLI tool and library for generating a Software Bill of Materials License: Apache-2.0 ++++++ _service ++++++ --- /var/tmp/diff_new_pack.bCbH6H/_old 2022-11-19 18:09:16.762424425 +0100 +++ /var/tmp/diff_new_pack.bCbH6H/_new 2022-11-19 18:09:16.766424448 +0100 @@ -3,7 +3,7 @@ <param name="url">https://github.com/anchore/syft</param> <param name="scm">git</param> <param name="exclude">.git</param> - <param name="revision">v0.60.3</param> + <param name="revision">v0.62.0</param> <param name="versionformat">@PARENT_TAG@</param> <param name="changesgenerate">enable</param> <param name="versionrewrite-pattern">v(.*)</param> @@ -16,7 +16,7 @@ <param name="compression">gz</param> </service> <service name="go_modules" mode="disabled"> - <param name="archive">syft-0.60.3.tar.gz</param> + <param name="archive">syft-0.62.0.tar.gz</param> </service> </services> ++++++ _servicedata ++++++ --- /var/tmp/diff_new_pack.bCbH6H/_old 2022-11-19 18:09:16.790424584 +0100 +++ /var/tmp/diff_new_pack.bCbH6H/_new 2022-11-19 18:09:16.794424606 +0100 @@ -1,6 +1,6 @@ <servicedata> <service name="tar_scm"> <param name="url">https://github.com/anchore/syft</param> - <param name="changesrevision">bc9740d50a38e9660f2f98ed91d84c6d8799cf70</param></service></servicedata> + <param name="changesrevision">da4b2df57640e03f273a2e7e9b04eca40555e139</param></service></servicedata> (No newline at EOF) ++++++ syft-0.60.3.tar.gz -> syft-0.62.0.tar.gz ++++++ ++++ 32955 lines of diff (skipped) ++++++ vendor.tar.gz ++++++ /work/SRC/openSUSE:Factory/syft/vendor.tar.gz /work/SRC/openSUSE:Factory/.syft.new.1597/vendor.tar.gz differ: char 5, line 1