Skip to content

Conversation

@daniel-noland
Copy link
Collaborator

@daniel-noland daniel-noland commented Oct 31, 2025

incantation to make CI pass for dataplane 🤞

New version out.

Signed-off-by: Daniel Noland <[email protected]>
This is needed for intel virtual functions in DPDK.

Signed-off-by: Daniel Noland <[email protected]>
Notably, this pulls in new rust (1.91) and new LLVM (21.1.2)

Signed-off-by: Daniel Noland <[email protected]>
@daniel-noland daniel-noland force-pushed the pr/daniel-noland/manual-bumps branch from 587169d to ea07cfb Compare October 31, 2025 21:31
@daniel-noland daniel-noland changed the title Pr/daniel noland/manual bumps manual bumps Oct 31, 2025
@github-actions
Copy link
Contributor

Outdated packages (gnu64):

priority nix_package version_local version_nixpkgs version_upstream
15 libunistring 1.4 1.4 1.4.1
13 glibc 2.40-66 2.40-66 2.42
12 gcc 14.3.0 14.3.0 15.2.0;15.2
12 libxml2 2.15.0 2.15.0 2.15.1
11 binutils 2.44 2.44 2.45
11 llvm 21.1.2 21.1.2 21.1.4
10 pcre2 10.46 10.46 10.47
6 libcap 2.76 2.76 2.77
5 perl 5.40.0 5.40.0 5.42.0;5.42
4 numactl 2.0.18 2.0.18 2.0.19
4 kmod 31 31 34.2
4 rdma-core 60.0 59.0 60.0

@github-actions
Copy link
Contributor

Vulnerable packages (gnu64):

vuln_id url package severity version_local version_nixpkgs version_upstream package_repology sortcol classify
CVE-2025-49796 https://nvd.nist.gov/vuln/detail/CVE-2025-49796 libxml2 9.1 2.15.0 2.15.0 2.15.1 libxml2 2025A0000049796 err_not_vulnerable_based_on_repology
CVE-2025-49795 https://nvd.nist.gov/vuln/detail/CVE-2025-49795 libxml2 7.5 2.15.0 2.15.0 2.15.1 libxml2 2025A0000049795 err_not_vulnerable_based_on_repology
CVE-2025-49794 https://nvd.nist.gov/vuln/detail/CVE-2025-49794 libxml2 9.1 2.15.0 2.15.0 2.15.1 libxml2 2025A0000049794 err_not_vulnerable_based_on_repology
CVE-2025-8225 https://nvd.nist.gov/vuln/detail/CVE-2025-8225 binutils 3.3 2.44 2.44 2.45 binutils 2025A0000008225 fix_update_to_version_upstream
CVE-2025-8224 https://nvd.nist.gov/vuln/detail/CVE-2025-8224 binutils 3.3 2.44 2.44 2.45 binutils 2025A0000008224 fix_update_to_version_upstream
CVE-2025-6170 https://nvd.nist.gov/vuln/detail/CVE-2025-6170 libxml2 2.5 2.15.0 2.15.0 2.15.1 libxml2 2025A0000006170 err_not_vulnerable_based_on_repology
CVE-2025-6021 https://nvd.nist.gov/vuln/detail/CVE-2025-6021 libxml2 7.5 2.15.0 2.15.0 2.15.1 libxml2 2025A0000006021 err_not_vulnerable_based_on_repology
CVE-2025-5745 https://nvd.nist.gov/vuln/detail/CVE-2025-5745 glibc 5.6 2.40-66 2.40-66 2.42 glibc 2025A0000005745 fix_update_to_version_upstream
CVE-2025-5702 https://nvd.nist.gov/vuln/detail/CVE-2025-5702 glibc 5.6 2.40-66 2.40-66 2.42 glibc 2025A0000005702 fix_update_to_version_upstream
CVE-2025-3198 https://nvd.nist.gov/vuln/detail/CVE-2025-3198 binutils 3.3 2.44 2.44 2.45 binutils 2025A0000003198 fix_update_to_version_upstream
CVE-2025-1153 https://nvd.nist.gov/vuln/detail/CVE-2025-1153 binutils 3.1 2.44 2.44 2.45 binutils 2025A0000001153 fix_update_to_version_upstream
OSV-2024-698 https://osv.dev/OSV-2024-698 libxml2 2.15.0 2.15.0 2.15.1 libxml2 2024A0000000698 err_not_vulnerable_based_on_repology
CVE-2023-6992 https://nvd.nist.gov/vuln/detail/CVE-2023-6992 zlib 4.0 1.3.1 1.3.1 1.3.1 zlib 2023A0000006992 err_not_vulnerable_based_on_repology
CVE-2023-4039 https://nvd.nist.gov/vuln/detail/CVE-2023-4039 gcc 4.8 14.3.0 14.3.0 15.2.0 gcc 2023A0000004039 fix_not_available
OSV-2021-777 https://osv.dev/OSV-2021-777 libxml2 2.15.0 2.15.0 2.15.1 libxml2 2021A0000000777 err_not_vulnerable_based_on_repology
CVE-2016-2781 https://nvd.nist.gov/vuln/detail/CVE-2016-2781 coreutils 6.5 9.8 9.8 9.8 coreutils 2016A0000002781 fix_not_available

@daniel-noland daniel-noland marked this pull request as ready for review October 31, 2025 22:38
@daniel-noland daniel-noland merged commit c1c6862 into main Nov 1, 2025
7 checks passed
@daniel-noland daniel-noland deleted the pr/daniel-noland/manual-bumps branch November 1, 2025 00:07
@daniel-noland
Copy link
Collaborator Author

I called an audible and merged this one without review. Wayyyy too much time pressure to do otherwise

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants