Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

solr/9.8.0-r0: cve remediation #42295

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

solr/9.8.0-r0: fix GHSA-4g8c-wm8x-jfhw

fb95b7e
Select commit
Loading
Failed to load commit list.
Open

solr/9.8.0-r0: cve remediation #42295

solr/9.8.0-r0: fix GHSA-4g8c-wm8x-jfhw
fb95b7e
Select commit
Loading
Failed to load commit list.
Octo STS / elastic-build failed Feb 11, 2025 in 2m 6s

Failed to build APKs

Build ID: 8288c9a0-6a6a-4208-93ce-9a5e9b9935a2
Error: failed to build solr: building group: pod failed: build failed

Details

x86_64 Logs

Click to expand
git commit for build config not provided, attempting to detect automatically
melange v0.19.5 is building:
  configuration file: solr.yaml
  workspace dir: /tmp/melange-workspace-505209117
populating workspace /tmp/melange-workspace-505209117 from solr
building workspace in '/tmp/melange-guest-2277784159' with apko
Error: rpc error: code = NotFound desc = federate identity: rpc error: code = NotFound desc = no identity found for (https://accounts.google.com, 109346087047205543085)
Error running `chainctl auth token`: exit status 1
2025/02/11 07:14:48 [DEBUG] GET https://apk.cgr.dev/wolfi-presubmit/68b8978fd7b74a89673fadd196103fd5649a77f0/apk-configuration
2025/02/11 07:14:49 [DEBUG] GET https://packages.wolfi.dev/os/apk-configuration
setting apk repositories: [https://apk.cgr.dev/wolfi-presubmit/68b8978fd7b74a89673fadd196103fd5649a77f0 https://packages.wolfi.dev/os]
2025/02/11 07:14:50 [DEBUG] GET https://apk.cgr.dev/wolfi-presubmit/68b8978fd7b74a89673fadd196103fd5649a77f0/apk-configuration
2025/02/11 07:14:50 [DEBUG] GET https://packages.wolfi.dev/os/apk-configuration
setting apk repositories: [https://apk.cgr.dev/wolfi-presubmit/68b8978fd7b74a89673fadd196103fd5649a77f0 https://packages.wolfi.dev/os]
image configuration:
  contents:
    build repositories: []
    runtime repositories: []
    keyring:      []
    packages:     [binutils=2.44-r0 build-base=1-r8 busybox=1.37.0-r0 ca-certificates-bundle=20241121-r1 ca-certificates=20241121-r1 cyrus-sasl=2.1.28-r6 gcc=14.2.0-r8 gdbm=1.24-r2 git=2.48.1-r0 glibc-dev=2.40-r8 glibc-locale-posix=2.40-r8 glibc=2.40-r8 gmp=6.3.0-r3 heimdal-libs=7.8.0-r8 isl=0.27-r0 java-cacerts=20241121-r1 java-common-jre=0.2-r0 java-common=0.2-r0 keyutils-libs=1.6.3-r6 krb5-conf=1.0-r3 krb5-libs=1.21.3-r2 ld-linux=2.40-r8 libatomic=14.2.0-r8 libbrotlicommon1=1.1.0-r4 libbrotlidec1=1.1.0-r4 libbz2-1=1.0.8-r10 libcom_err=1.47.2-r0 libcrypt1=2.40-r8 libcrypto3=3.4.0-r6 libcurl-openssl4=8.12.0-r0 libevent=2.1.12-r6 libexpat1=2.6.4-r1 libffi=3.4.7-r0 libgcc=14.2.0-r8 libgo=14.2.0-r8 libgomp=14.2.0-r8 libidn2=2.3.7-r3 libldap=2.6.9-r0 libnghttp2-14=1.64.0-r1 libpcre2-8-0=10.45-r0 libpsl=0.21.5-r4 libquadmath=14.2.0-r8 libssl3=3.4.0-r6 libstdc++-dev=14.2.0-r8 libstdc++=14.2.0-r8 libtasn1=4.20.0-r0 libunistring=1.3-r1 libverto=0.3.2-r4 libxcrypt-dev=4.4.38-r0 libxcrypt=4.4.38-r0 libzstd1=1.5.6-r5 linux-headers=6.13.2-r0 make=4.4.1-r4 mpc=1.3.1-r5 mpfr=4.2.1-r5 ncurses-terminfo-base=6.5_p20241228-r0 ncurses=6.5_p20241228-r0 nss-db=2.40-r8 nss-hesiod=2.40-r8 openjdk-17-default-jdk=17.0.14-r0 openjdk-17=17.0.14-r0 openssf-compiler-options=20240627-r12 p11-kit-trust=0.25.5-r1 p11-kit=0.25.5-r1 perl=5.40.1-r0 pkgconf=2.3.0-r1 pombump=0.0.13-r4 posix-cc-wrappers=1-r4 readline=8.2.13-r1 sqlite-libs=3.49.0-r0 wolfi-baselayout=20230201-r16 zlib=1.3.1-r5]
  accounts:
    runas:  
    users:
      - uid=1000(build) gid=824640490848
    groups:
      - gid=1000(build) members=[build]
auth configured for: []
installing ca-certificates-bundle (20241121-r1)
installing wolfi-baselayout (20230201-r16)
installing ld-linux (2.40-r8)
installing glibc-locale-posix (2.40-r8)
installing glibc (2.40-r8)
installing libgcc (14.2.0-r8)
installing libstdc++ (14.2.0-r8)
installing libzstd1 (1.5.6-r5)
installing binutils (2.44-r0)
installing libquadmath (14.2.0-r8)
installing libstdc++-dev (14.2.0-r8)
installing openssf-compiler-options (20240627-r12)
installing posix-cc-wrappers (1-r4)
installing libatomic (14.2.0-r8)
installing gmp (6.3.0-r3)
installing libgo (14.2.0-r8)
installing libgomp (14.2.0-r8)
installing isl (0.27-r0)
installing mpfr (4.2.1-r5)
installing mpc (1.3.1-r5)
installing zlib (1.3.1-r5)
installing gcc (14.2.0-r8)
installing libxcrypt (4.4.38-r0)
installing libxcrypt-dev (4.4.38-r0)
installing linux-headers (6.13.2-r0)
installing nss-db (2.40-r8)
installing nss-hesiod (2.40-r8)
installing glibc-dev (2.40-r8)
installing make (4.4.1-r4)
installing pkgconf (2.3.0-r1)
installing build-base (1-r8)
installing libcrypt1 (2.40-r8)
installing busybox (1.37.0-r0)
installing libcrypto3 (3.4.0-r6)
installing ca-certificates (20241121-r1)
installing ncurses-terminfo-base (6.5_p20241228-r0)
installing ncurses (6.5_p20241228-r0)
installing readline (8.2.13-r1)
installing sqlite-libs (3.49.0-r0)
installing heimdal-libs (7.8.0-r8)
installing gdbm (1.24-r2)
installing cyrus-sasl (2.1.28-r6)
installing libbrotlicommon1 (1.1.0-r4)
installing libbrotlidec1 (1.1.0-r4)
installing krb5-conf (1.0-r3)
installing libcom_err (1.47.2-r0)
installing keyutils-libs (1.6.3-r6)
installing libssl3 (3.4.0-r6)
installing libverto (0.3.2-r4)
installing krb5-libs (1.21.3-r2)
installing libevent (2.1.12-r6)
installing libldap (2.6.9-r0)
installing libnghttp2-14 (1.64.0-r1)
installing libunistring (1.3-r1)
installing libidn2 (2.3.7-r3)
installing libpsl (0.21.5-r4)
installing libcurl-openssl4 (8.12.0-r0)
installing libexpat1 (2.6.4-r1)
installing libpcre2-8-0 (10.45-r0)
installing git (2.48.1-r0)
installing libffi (3.4.7-r0)
installing libtasn1 (4.20.0-r0)
installing p11-kit (0.25.5-r1)
installing p11-kit-trust (0.25.5-r1)
installing java-cacerts (20241121-r1)
installing java-common-jre (0.2-r0)
installing java-common (0.2-r0)
installing libbz2-1 (1.0.8-r10)
installing openjdk-17 (17.0.14-r0)
installing openjdk-17-default-jdk (17.0.14-r0)
installing perl (5.40.1-r0)
installing pombump (0.0.13-r4)
built image layer tarball as /tmp/apko-temp-610964152/apko-x86_64.tar.gz
running step "git-checkout"
[git checkout] repo='https://github.com/apache/solr' dest='.' depth='1' branch='' tag='releases/solr/9.8.0' expcommit='8bf0100e502ade4b8161e4b90f762b117a6ef442' recurse='false'
[git checkout] execute: git config --global --add safe.directory /tmp/tmp.LXrm2t
[git checkout] execute: git config --global --add safe.directory /home/build
[git checkout] execute: git clone --quiet --origin=origin --config=user.name=Melange Build [email protected] --config=advice.detachedHead=false --branch=releases/solr/9.8.0 --depth=1 https://github.com/apache/solr /tmp/tmp.LXrm2t

aarch64 Logs

Click to expand
git commit for build config not provided, attempting to detect automatically
melange v0.19.5 is building:
  configuration file: solr.yaml
  workspace dir: /tmp/melange-workspace-1027417924
populating workspace /tmp/melange-workspace-1027417924 from solr
building workspace in '/tmp/melange-guest-1534694862' with apko
Error: rpc error: code = NotFound desc = federate identity: rpc error: code = NotFound desc = no identity found for (https://accounts.google.com, 109346087047205543085)
Error running `chainctl auth token`: exit status 1
2025/02/11 07:14:48 [DEBUG] GET https://apk.cgr.dev/wolfi-presubmit/68b8978fd7b74a89673fadd196103fd5649a77f0/apk-configuration
2025/02/11 07:14:49 [DEBUG] GET https://packages.wolfi.dev/os/apk-configuration
setting apk repositories: [https://apk.cgr.dev/wolfi-presubmit/68b8978fd7b74a89673fadd196103fd5649a77f0 https://packages.wolfi.dev/os]
2025/02/11 07:14:50 [DEBUG] GET https://apk.cgr.dev/wolfi-presubmit/68b8978fd7b74a89673fadd196103fd5649a77f0/apk-configuration
2025/02/11 07:14:50 [DEBUG] GET https://packages.wolfi.dev/os/apk-configuration
setting apk repositories: [https://apk.cgr.dev/wolfi-presubmit/68b8978fd7b74a89673fadd196103fd5649a77f0 https://packages.wolfi.dev/os]
image configuration:
  contents:
    build repositories: []
    runtime repositories: []
    keyring:      []
    packages:     [binutils=2.44-r0 build-base=1-r8 busybox=1.37.0-r0 ca-certificates-bundle=20241121-r1 ca-certificates=20241121-r1 cyrus-sasl=2.1.28-r6 gcc=14.2.0-r8 gdbm=1.24-r2 git=2.48.1-r0 glibc-dev=2.40-r8 glibc-locale-posix=2.40-r8 glibc=2.40-r8 gmp=6.3.0-r3 heimdal-libs=7.8.0-r8 isl=0.27-r0 java-cacerts=20241121-r1 java-common-jre=0.2-r0 java-common=0.2-r0 keyutils-libs=1.6.3-r6 krb5-conf=1.0-r3 krb5-libs=1.21.3-r2 ld-linux=2.40-r8 libatomic=14.2.0-r8 libbrotlicommon1=1.1.0-r4 libbrotlidec1=1.1.0-r4 libbz2-1=1.0.8-r10 libcom_err=1.47.2-r0 libcrypt1=2.40-r8 libcrypto3=3.4.0-r6 libcurl-openssl4=8.12.0-r0 libevent=2.1.12-r6 libexpat1=2.6.4-r1 libffi=3.4.7-r0 libgcc=14.2.0-r8 libgo=14.2.0-r8 libgomp=14.2.0-r8 libidn2=2.3.7-r3 libldap=2.6.9-r0 libnghttp2-14=1.64.0-r1 libpcre2-8-0=10.45-r0 libpsl=0.21.5-r4 libquadmath=14.2.0-r8 libssl3=3.4.0-r6 libstdc++-dev=14.2.0-r8 libstdc++=14.2.0-r8 libtasn1=4.20.0-r0 libunistring=1.3-r1 libverto=0.3.2-r4 libxcrypt-dev=4.4.38-r0 libxcrypt=4.4.38-r0 libzstd1=1.5.6-r5 linux-headers=6.13.2-r0 make=4.4.1-r4 mpc=1.3.1-r5 mpfr=4.2.1-r5 ncurses-terminfo-base=6.5_p20241228-r0 ncurses=6.5_p20241228-r0 nss-db=2.40-r8 nss-hesiod=2.40-r8 openjdk-17-default-jdk=17.0.14-r0 openjdk-17=17.0.14-r0 openssf-compiler-options=20240627-r12 p11-kit-trust=0.25.5-r1 p11-kit=0.25.5-r1 perl=5.40.1-r0 pkgconf=2.3.0-r1 pombump=0.0.13-r4 posix-cc-wrappers=1-r4 readline=8.2.13-r1 sqlite-libs=3.49.0-r0 wolfi-baselayout=20230201-r16 zlib=1.3.1-r5]
  accounts:
    runas:  
    users:
      - uid=1000(build) gid=274883770864
    groups:
      - gid=1000(build) members=[build]
auth configured for: []
installing ca-certificates-bundle (20241121-r1)
installing wolfi-baselayout (20230201-r16)
installing ld-linux (2.40-r8)
installing glibc-locale-posix (2.40-r8)
installing glibc (2.40-r8)
installing libgcc (14.2.0-r8)
installing libstdc++ (14.2.0-r8)
installing libzstd1 (1.5.6-r5)
installing binutils (2.44-r0)
installing libquadmath (14.2.0-r8)
installing libstdc++-dev (14.2.0-r8)
installing openssf-compiler-options (20240627-r12)
installing posix-cc-wrappers (1-r4)
installing libatomic (14.2.0-r8)
installing gmp (6.3.0-r3)
installing libgo (14.2.0-r8)
installing libgomp (14.2.0-r8)
installing isl (0.27-r0)
installing mpfr (4.2.1-r5)
installing mpc (1.3.1-r5)
installing zlib (1.3.1-r5)
installing gcc (14.2.0-r8)
installing libxcrypt (4.4.38-r0)
installing libxcrypt-dev (4.4.38-r0)
installing linux-headers (6.13.2-r0)
installing nss-db (2.40-r8)
installing nss-hesiod (2.40-r8)
installing glibc-dev (2.40-r8)
installing make (4.4.1-r4)
installing pkgconf (2.3.0-r1)
installing build-base (1-r8)
installing libcrypt1 (2.40-r8)
installing busybox (1.37.0-r0)
installing libcrypto3 (3.4.0-r6)
installing ca-certificates (20241121-r1)
installing ncurses-terminfo-base (6.5_p20241228-r0)
installing ncurses (6.5_p20241228-r0)
installing readline (8.2.13-r1)
installing sqlite-libs (3.49.0-r0)
installing heimdal-libs (7.8.0-r8)
installing gdbm (1.24-r2)
installing cyrus-sasl (2.1.28-r6)
installing libbrotlicommon1 (1.1.0-r4)
installing libbrotlidec1 (1.1.0-r4)
installing krb5-conf (1.0-r3)
installing libcom_err (1.47.2-r0)
installing keyutils-libs (1.6.3-r6)
installing libssl3 (3.4.0-r6)
installing libverto (0.3.2-r4)
installing krb5-libs (1.21.3-r2)
installing libevent (2.1.12-r6)
installing libldap (2.6.9-r0)
installing libnghttp2-14 (1.64.0-r1)
installing libunistring (1.3-r1)
installing libidn2 (2.3.7-r3)
installing libpsl (0.21.5-r4)
installing libcurl-openssl4 (8.12.0-r0)
installing libexpat1 (2.6.4-r1)
installing libpcre2-8-0 (10.45-r0)
installing git (2.48.1-r0)
installing libffi (3.4.7-r0)
installing libtasn1 (4.20.0-r0)
installing p11-kit (0.25.5-r1)
installing p11-kit-trust (0.25.5-r1)
installing java-cacerts (20241121-r1)
installing java-common-jre (0.2-r0)
installing java-common (0.2-r0)
installing libbz2-1 (1.0.8-r10)
installing openjdk-17 (17.0.14-r0)
installing openjdk-17-default-jdk (17.0.14-r0)
installing perl (5.40.1-r0)
installing pombump (0.0.13-r4)
built image layer tarball as /tmp/apko-temp-4258386580/apko-aarch64.tar.gz
running step "git-checkout"
[git checkout] repo='https://github.com/apache/solr' dest='.' depth='1' branch='' tag='releases/solr/9.8.0' expcommit='8bf0100e502ade4b8161e4b90f762b117a6ef442' recurse='false'
[git checkout] execute: git config --global --add safe.directory /tmp/tmp.AH1Thk
[git checkout] execute: git config --global --add safe.directory /home/build
[git checkout] execute: git clone --quiet --origin=origin --config=user.name=Melange Build [email protected] --config=advice.detachedHead=false --branch=releases/solr/9.8.0 --depth=1 https://github.com/apache/solr /tmp/tmp.AH1Thk

Indexes

https://apk.cgr.dev/wolfi-presubmit/68b8978fd7b74a89673fadd196103fd5649a77f0

❌ Failed Packages

  • solr (error | 28s)

Packages

More Observability

Command

cg build log \
  --build-id 8288c9a0-6a6a-4208-93ce-9a5e9b9935a2 \
  --project prod-wolfi-os \
  --cluster elastic-pre-a \
  --namespace pre-wolfi \
  --start 2025-02-11T07:13:06Z \
  --end 2025-02-11T07:25:14Z \
  --attrs pkg,arch