From b82cc3973cbbbe3da26442cb46eb8a080281643a Mon Sep 17 00:00:00 2001 From: Thomas Gerbet <thomas@gerbet.me> Date: Wed, 3 May 2023 09:23:36 +0200 Subject: [PATCH] rekor-cli, rekor-server: 1.1.0 -> 1.1.1 Fixes CVE-2023-30551. https://github.com/sigstore/rekor/releases/tag/v1.1.1 --- pkgs/tools/security/rekor/default.nix | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/pkgs/tools/security/rekor/default.nix b/pkgs/tools/security/rekor/default.nix index a33b1225fa2d..27c2719bc424 100644 --- a/pkgs/tools/security/rekor/default.nix +++ b/pkgs/tools/security/rekor/default.nix @@ -4,13 +4,13 @@ let generic = { pname, packageToBuild, description }: buildGoModule rec { inherit pname; - version = "1.1.0"; + version = "1.1.1"; src = fetchFromGitHub { owner = "sigstore"; repo = "rekor"; rev = "v${version}"; - hash = "sha256-BTXw0fdmO5mjgwc5HZlUmpuKapHMrrA5BVdhxUDoqsU="; + hash = "sha256-/zNDruJsnLlqHud67S8/QpNEPLfFcboA+2SWLB1jzbM="; # populate values that require us to use git. By doing this in postFetch we # can delete .git afterwards and maintain better reproducibility of the src. leaveDotGit = true; @@ -23,7 +23,7 @@ let ''; }; - vendorHash = "sha256-rBijR1xoXck+HoFiUTpkM2m/r/qgjoHcTB7PizN5tgg="; + vendorHash = "sha256-iQBVMYt5hXSp7y0gzKCMae3gHCvS6CN+/mDWmt1yPh8="; nativeBuildInputs = [ installShellFiles ];