• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

containerbuildsystem / atomic-reactor / 10263956236 / 1
97%
master: 97%

Build:
DEFAULT BRANCH: master
Ran 06 Aug 2024 09:34AM UTC
Files 83
Run time 2s
Badge
Embed ▾
README BADGES
x

If you need to use a raster PNG badge, change the '.svg' to '.png' in the link

Markdown

Textile

RDoc

HTML

Rst

06 Aug 2024 09:28AM UTC coverage: 97.208%. Remained the same
10263956236.1

push

github

mkosiarc
Update setuptools and packaging version

The setuptools update addresses a vulnerability alert by dependabot:
A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions.
These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection.
If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

The packaging update is necessary for the setuptools update (or we could
freeze it to version 70.x). But if version > 71 is used, we have to update the
packaging version to 22 or higher. Otherwise the build process fails
with

TypeError: canonicalize_version() got an unexpected keyword argument 'strip_trailing_zero'
More information in https://github.com/pypa/setuptools/issues/4483

STONEBLD-2636

Signed-off-by: mkosiarc <mkosiarc@redhat.com>

9470 of 9742 relevant lines covered (97.21%)

0.97 hits per line

Source Files on job rockylinux-8-python3.8 - 10263956236.1
  • Tree
  • List 0
  • Changed 0
  • Source Changed 0
  • Coverage Changed 0
Coverage ∆ File Lines Relevant Covered Missed Hits/Line
  • Back to Build 10263956236
  • a87ca7ef on github
  • Prev Job for on master (#10195451208.1)
  • Next Job for on master (#10286704630.2)
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc