guix-devel/guix
Ludovic Courtès 9bee2bd1b0
lint: 'cve' checker reports the replacement's vulnerabilities.
Before, 'guix lint -c cve' would report the vulnerabilities of the
original package while pretending they are the vulnerabilities of the
replacement.

* guix/scripts/lint.scm (check-vulnerabilities): Consider the package
replacement before calling 'package-vulnerabilities'.
* tests/lint.scm ("cve: vulnerability fixed in replacement version"):
New test.
2016-10-03 23:30:49 +02:00
..
build grafts: Allow the replacement to have a different name. 2016-10-03 23:16:48 +02:00
build-system Add missing exports. 2016-09-27 11:22:56 +02:00
import import: utils: Refactor license->symbol. 2016-09-28 13:17:15 +02:00
scripts lint: 'cve' checker reports the replacement's vulnerabilities. 2016-10-03 23:30:49 +02:00
base32.scm base32: Use a custom error condition instead of 'misc-error'. 2015-05-31 22:39:48 +02:00
base64.scm base64: Restore original license header. 2016-08-27 08:45:27 -05:00
build-system.scm build-system: Bags record their system and target. 2014-10-05 21:58:42 +02:00
combinators.scm utils: Move combinators to (guix combinators). 2016-05-04 23:35:55 +02:00
config.scm.in pull: Install (guix config) module to override the user's one. 2016-07-20 22:53:02 +02:00
cpio.scm linux-initrd: Produce cpio archives with zeroed timestamps, etc. 2015-06-24 18:05:03 +02:00
cve.scm cve: Use a more compact format for the list of package/versions. 2016-05-28 01:07:12 +02:00
cvs-download.scm download: Use 'with-imported-modules'. 2016-07-12 22:47:08 +02:00
derivations.scm derivations: Export 'fixed-output-path'. 2016-07-20 16:39:19 +02:00
download.scm download: Add download.kde.org to kde mirrors. 2016-08-05 21:48:43 +02:00
elf.scm elf: Add missing argument in 'elf-segment'. 2015-03-30 15:21:11 +02:00
ftp-client.scm ftp-client: Default port for 'ftp-open' is now "ftp". 2015-11-22 14:35:28 +01:00
gcrypt.scm Add (guix gcrypt). 2015-01-26 21:58:12 +01:00
gexp.scm gexp: Store compilers in a hash table for O(1) lookup. 2016-09-10 13:10:06 +02:00
git-download.scm download: Use 'with-imported-modules'. 2016-07-12 22:47:08 +02:00
gnu-maintenance.scm gnu-maintenance: Add KDE updater. 2016-08-02 13:28:21 +02:00
gnupg.scm gnupg: Honor $GUIX_GPG_COMMAND and default to 'gpg'. 2016-09-06 11:12:11 +02:00
grafts.scm grafts: Create only one grafted variant of each derivation. 2016-05-25 23:33:56 +02:00
graph.scm graph: Add 'node-reachable-count'. 2016-05-24 00:06:01 +02:00
hash.scm hash: Initialize libgcrypt before use. 2015-01-26 21:58:12 +01:00
hg-download.scm download: Use 'with-imported-modules'. 2016-07-12 22:47:08 +02:00
http-client.scm http-client: No 'setvbuf' for non-file ports. 2016-03-16 11:27:37 +01:00
licenses.scm import: utils: Add spdx-string->license. 2016-09-28 13:15:31 +02:00
modules.scm Add (guix modules). 2016-09-05 00:06:47 +02:00
monad-repl.scm monad-repl: Close connection when leaving the monad REPL. 2016-01-13 17:43:21 +01:00
monads.scm monads: Fix 'liftN' fallback case. 2015-09-04 18:31:06 +02:00
nar.scm utils: Move 'fcntl-flock' to (guix build syscalls). 2016-05-06 13:25:30 +02:00
packages.scm gexp: Store compilers in a hash table for O(1) lookup. 2016-09-10 13:10:06 +02:00
pk-crypto.scm pk-crypto: Improve documentation of 'key-type'. 2015-03-18 14:43:03 +01:00
pki.scm
profiles.scm profiles: Build GTK+ input module cache. 2016-09-26 07:58:17 +02:00
records.scm records: Improve reporting of invalid field specifiers. 2016-07-14 19:07:07 +02:00
scripts.scm emacs: Disable grafts when dry-run is enabled. 2016-07-30 18:17:03 +03:00
search-paths.scm utils: Have search-path-as-list pattern search for directories. 2015-10-29 17:30:18 -05:00
serialization.scm serialization: Add #:select? parameter to 'write-file'. 2016-06-12 23:55:22 +02:00
sets.scm Add (guix sets). 2015-01-11 23:50:01 +01:00
store.scm build: Substitute URLs now default to "mirror.hydra.gnu.org" alone. 2016-07-16 14:41:39 +02:00
svn-download.scm download: Use 'with-imported-modules'. 2016-07-12 22:47:08 +02:00
tests.scm tests: Narinfos can specify an non-empty reference list. 2016-03-05 00:19:10 +01:00
ui.scm ui: Do not shadow '_' where it's used as a literal syntax match. 2016-09-20 23:22:42 +09:00
upstream.scm import: Gracefully report import failures. 2016-05-17 14:02:48 +02:00
utils.scm publish: Do not compress already-compressed files. 2016-08-01 17:58:56 +02:00
zlib.scm zlib: Protect against non-empty port internal buffers. 2016-07-27 12:45:01 +02:00