From 6101512453d0063d912445b60f45bf0c126fda76 Mon Sep 17 00:00:00 2001 From: "R. Ryantm" Date: Thu, 3 Apr 2025 02:39:16 +0000 Subject: [PATCH 01/16] lockbook: 0.9.20 -> 0.9.21 (cherry picked from commit b2ff8dbbb0b8c8e2f2e0356be9ad131e23f6cbbd) --- pkgs/by-name/lo/lockbook/package.nix | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/pkgs/by-name/lo/lockbook/package.nix b/pkgs/by-name/lo/lockbook/package.nix index b7fb28ff49e3..bf9c911ae031 100644 --- a/pkgs/by-name/lo/lockbook/package.nix +++ b/pkgs/by-name/lo/lockbook/package.nix @@ -7,17 +7,17 @@ }: rustPlatform.buildRustPackage rec { pname = "lockbook"; - version = "0.9.20"; + version = "0.9.21"; src = fetchFromGitHub { owner = "lockbook"; repo = "lockbook"; tag = version; - hash = "sha256-nIh5xgdtaUvc5RbS24GGUHxY41lnL2xdkDs0TD/N2Gw="; + hash = "sha256-SRmfLxF78jR1a/37pU1TLM6nFpmYLRbHJzQIVQtM8/M="; }; useFetchCargoVendor = true; - cargoHash = "sha256-CuUg5QT1s5TJd409O9YD3A3bMNUnfY6MrCIUrzS50j8="; + cargoHash = "sha256-faqbsxXF2AjDE+FMkD1PihacPAvQlD6nkczN4QdsCeM="; doCheck = false; # there are no cli tests cargoBuildFlags = [ From cd5f28f257817edf0944f2c597c0c7f5d3b223c0 Mon Sep 17 00:00:00 2001 From: "R. Ryantm" Date: Thu, 3 Apr 2025 02:39:33 +0000 Subject: [PATCH 02/16] lockbook-desktop: 0.9.20 -> 0.9.21 (cherry picked from commit f5af48c7c87fdd93fd426770dd2328318b971306) --- pkgs/by-name/lo/lockbook-desktop/package.nix | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/pkgs/by-name/lo/lockbook-desktop/package.nix b/pkgs/by-name/lo/lockbook-desktop/package.nix index a119da25c520..e50876658ad2 100644 --- a/pkgs/by-name/lo/lockbook-desktop/package.nix +++ b/pkgs/by-name/lo/lockbook-desktop/package.nix @@ -18,17 +18,17 @@ let in rustPlatform.buildRustPackage rec { pname = "lockbook-desktop"; - version = "0.9.20"; + version = "0.9.21"; src = fetchFromGitHub { owner = "lockbook"; repo = "lockbook"; tag = version; - hash = "sha256-nIh5xgdtaUvc5RbS24GGUHxY41lnL2xdkDs0TD/N2Gw="; + hash = "sha256-SRmfLxF78jR1a/37pU1TLM6nFpmYLRbHJzQIVQtM8/M="; }; useFetchCargoVendor = true; - cargoHash = "sha256-CuUg5QT1s5TJd409O9YD3A3bMNUnfY6MrCIUrzS50j8="; + cargoHash = "sha256-faqbsxXF2AjDE+FMkD1PihacPAvQlD6nkczN4QdsCeM="; nativeBuildInputs = [ pkg-config From a4a36d4ac791fa99f7c462d661361fdff482bb29 Mon Sep 17 00:00:00 2001 From: "R. Ryantm" Date: Thu, 20 Mar 2025 01:55:38 +0000 Subject: [PATCH 03/16] firefox-devedition-unwrapped: 137.0b6 -> 137.0b8 (cherry picked from commit b4ca269cac6268b26775a64ca1ac1f51a752ca6a) --- .../browsers/firefox/packages/firefox-devedition.nix | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/pkgs/applications/networking/browsers/firefox/packages/firefox-devedition.nix b/pkgs/applications/networking/browsers/firefox/packages/firefox-devedition.nix index ced9901dd6ee..3946a3e43058 100644 --- a/pkgs/applications/networking/browsers/firefox/packages/firefox-devedition.nix +++ b/pkgs/applications/networking/browsers/firefox/packages/firefox-devedition.nix @@ -9,13 +9,13 @@ buildMozillaMach rec { pname = "firefox-devedition"; - version = "137.0b6"; + version = "137.0b8"; applicationName = "Mozilla Firefox Developer Edition"; requireSigning = false; branding = "browser/branding/aurora"; src = fetchurl { url = "mirror://mozilla/devedition/releases/${version}/source/firefox-${version}.source.tar.xz"; - sha512 = "91fb3e010d62805ec29758bb46b3d520dc3a3e2b0f040de4e284aeb5fe812b5b084563f560a229f54a404a5130429d60b35eac15d89f1cb586fd364b61a7f8be"; + sha512 = "d978dbbe5215fe0787ca571d9676c9572917e88f347ea46e4656d8e0a849e11d3e8c7c918e159a0eaea41bf480897e91fd26776e1dd28c5bfbb37934c44511a1"; }; meta = { From d65fdc8fbaa7f7bbe364eb9b71979631980f6a05 Mon Sep 17 00:00:00 2001 From: "R. Ryantm" Date: Mon, 31 Mar 2025 06:53:41 +0000 Subject: [PATCH 04/16] firefox-devedition-unwrapped: 137.0b8 -> 137.0b10 (cherry picked from commit 9a8535d5741355fbcf024d09f2b185844645ead5) --- .../browsers/firefox/packages/firefox-devedition.nix | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/pkgs/applications/networking/browsers/firefox/packages/firefox-devedition.nix b/pkgs/applications/networking/browsers/firefox/packages/firefox-devedition.nix index 3946a3e43058..99a339361f83 100644 --- a/pkgs/applications/networking/browsers/firefox/packages/firefox-devedition.nix +++ b/pkgs/applications/networking/browsers/firefox/packages/firefox-devedition.nix @@ -9,13 +9,13 @@ buildMozillaMach rec { pname = "firefox-devedition"; - version = "137.0b8"; + version = "137.0b10"; applicationName = "Mozilla Firefox Developer Edition"; requireSigning = false; branding = "browser/branding/aurora"; src = fetchurl { url = "mirror://mozilla/devedition/releases/${version}/source/firefox-${version}.source.tar.xz"; - sha512 = "d978dbbe5215fe0787ca571d9676c9572917e88f347ea46e4656d8e0a849e11d3e8c7c918e159a0eaea41bf480897e91fd26776e1dd28c5bfbb37934c44511a1"; + sha512 = "ece2e76830b7f3fa0ea3b077948a874315c225da03f9043a5e63900f251aa7f568278aeae5c9b5be89bf07c2d783fbdfd1f2acf37e6dd7db3d82cb7e925e33d6"; }; meta = { From 532247cc647f168465afa9d04f7e86904a864738 Mon Sep 17 00:00:00 2001 From: "nixpkgs-ci[bot]" <190413589+nixpkgs-ci[bot]@users.noreply.github.com> Date: Fri, 4 Apr 2025 12:38:57 +0200 Subject: [PATCH 05/16] [Backport release-24.11] bird3: 3.0.1 -> 3.1.0 (#395990) bird3: 3.0.1 -> 3.1.0 (#395932) Changelog: https://gitlab.nic.cz/labs/bird/-/blob/v3.1.0/NEWS (cherry picked from commit 7361e6d6b1f44410c79d431f95b7b48addbe669f) Co-authored-by: Tom Herbers --- pkgs/by-name/bi/bird3/package.nix | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/pkgs/by-name/bi/bird3/package.nix b/pkgs/by-name/bi/bird3/package.nix index 279199cafb4f..40459a43611f 100644 --- a/pkgs/by-name/bi/bird3/package.nix +++ b/pkgs/by-name/bi/bird3/package.nix @@ -11,11 +11,11 @@ stdenv.mkDerivation rec { pname = "bird"; - version = "3.0.1"; + version = "3.1.0"; src = fetchurl { url = "https://bird.network.cz/download/bird-${version}.tar.gz"; - hash = "sha256-iGhAPKqE4lVLtuYK2+fGV+e7fErEGRDjmPNeI2upD6E="; + hash = "sha256-xxY49Xb0MWcEN++dkL6lZZK8VjcB3nhpg/RCJk7Hdiw="; }; nativeBuildInputs = [ From dc28c22d71f4162b7aebd83085f7e7004cf41daf Mon Sep 17 00:00:00 2001 From: DontEatOreo <57304299+DontEatOreo@users.noreply.github.com> Date: Fri, 4 Apr 2025 13:12:23 +0300 Subject: [PATCH 06/16] vencord: 1.11.7 -> 1.11.8 Diff: https://github.com/Vendicated/Vencord/compare/v1.11.7...v1.11.8 (cherry picked from commit 64abab71e51268536d8a5b368170bdfb5c65d5e6) --- pkgs/by-name/ve/vencord/package.nix | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/pkgs/by-name/ve/vencord/package.nix b/pkgs/by-name/ve/vencord/package.nix index 48c98890d081..63c97ea03c01 100644 --- a/pkgs/by-name/ve/vencord/package.nix +++ b/pkgs/by-name/ve/vencord/package.nix @@ -15,18 +15,18 @@ stdenv.mkDerivation (finalAttrs: { pname = "vencord"; - version = "1.11.7"; + version = "1.11.8"; src = fetchFromGitHub { owner = "Vendicated"; repo = "Vencord"; rev = "v${finalAttrs.version}"; - hash = "sha256-WzmRz0wf/Ss90FmXXp6gaylC0k/k/QkFaFddlnLo+Xk="; + hash = "sha256-Ej04ONaeNt55mbQ5RTKM4MySYsw3UJky9ZK9h1gMEzo="; }; pnpmDeps = pnpm_10.fetchDeps { inherit (finalAttrs) pname src; - hash = "sha256-g9BSVUKpn74D9eIDj/lS1Y6w/+AnhCw++st4s4REn+A="; + hash = "sha256-hO6QKRr4jTfesRDAEGcpFeJmGTGLGMw6EgIvD23DNzw="; }; nativeBuildInputs = [ @@ -39,12 +39,12 @@ stdenv.mkDerivation (finalAttrs: { ESBUILD_BINARY_PATH = lib.getExe ( esbuild.overrideAttrs ( final: _: { - version = "0.25.0"; + version = "0.25.1"; src = fetchFromGitHub { owner = "evanw"; repo = "esbuild"; rev = "v${final.version}"; - hash = "sha256-L9jm94Epb22hYsU3hoq1lZXb5aFVD4FC4x2qNt0DljA="; + hash = "sha256-vrhtdrvrcC3dQoJM6hWq6wrGJLSiVww/CNPlL1N5kQ8="; }; vendorHash = "sha256-+BfxCyg0KkDQpHt/wycy/8CTG6YBA/VJvJFhhzUnSiQ="; } From 16cf86bef7e656d6349940efc297d808a8b73ed1 Mon Sep 17 00:00:00 2001 From: Neyts Zupan Date: Thu, 3 Apr 2025 20:25:28 +0100 Subject: [PATCH 07/16] paretosecurity: 0.0.96 -> 0.1.3 Also: * Fix PATH for systemd services * Make UI tests faster and more robust by setting low resolution (cherry picked from commit 3c6b1cf6f60dd2e786c6ed11a22eab790863d41b) --- nixos/modules/services/security/paretosecurity.nix | 14 ++++++++++++++ nixos/tests/paretosecurity.nix | 11 +++++++++-- pkgs/by-name/pa/paretosecurity/package.nix | 6 +++--- 3 files changed, 26 insertions(+), 5 deletions(-) diff --git a/nixos/modules/services/security/paretosecurity.nix b/nixos/modules/services/security/paretosecurity.nix index 9ec196eee6a0..a1080ede8431 100644 --- a/nixos/modules/services/security/paretosecurity.nix +++ b/nixos/modules/services/security/paretosecurity.nix @@ -24,6 +24,17 @@ # dependencies here. This creates the necessary symlinks in the proper locations. systemd.sockets.paretosecurity.wantedBy = [ "sockets.target" ]; + # In NixOS, systemd services are configured with minimal PATH. However, + # paretosecurity helper looks for installed software to do its job, so + # it needs the full system PATH. For example, it runs `iptables` to see if + # firewall is configured. And it looks for various password managers to see + # if one is installed. + # The `paretosecurity-user` timer service that is configured lower has + # the same need. + systemd.services.paretosecurity.serviceConfig.Environment = [ + "PATH=${config.system.path}/bin:${config.system.path}/sbin" + ]; + # Enable the tray icon and timer services if the trayIcon option is enabled systemd.user = lib.mkIf config.services.paretosecurity.trayIcon { services.paretosecurity-trayicon = { @@ -31,6 +42,9 @@ }; services.paretosecurity-user = { wantedBy = [ "graphical-session.target" ]; + serviceConfig.Environment = [ + "PATH=${config.system.path}/bin:${config.system.path}/sbin" + ]; }; timers.paretosecurity-user = { wantedBy = [ "timers.target" ]; diff --git a/nixos/tests/paretosecurity.nix b/nixos/tests/paretosecurity.nix index a2b9317c678f..bf9af17e2f5e 100644 --- a/nixos/tests/paretosecurity.nix +++ b/nixos/tests/paretosecurity.nix @@ -29,6 +29,8 @@ package = patchedPareto; }; + networking.firewall.enable = true; + }; nodes.dashboard = @@ -64,6 +66,12 @@ services.displayManager.autoLogin = { enable = true; user = "alice"; + + }; + + virtualisation.resolution = { + x = 640; + y = 480; }; environment.systemPackages = [ pkgs.xdotool ]; @@ -94,7 +102,6 @@ + " --skip 21830a4e-84f1-48fe-9c5b-beab436b2cdb" # Disk encryption + " --skip 44e4754a-0b42-4964-9cc2-b88b2023cb1e" # Pareto Security is up to date + " --skip f962c423-fdf5-428a-a57a-827abc9b253e" # Password manager installed - + " --skip 2e46c89a-5461-4865-a92e-3b799c12034a" # Firewall is enabled + "'" ) @@ -117,7 +124,7 @@ ]: status, out = xfce.systemctl("is-enabled " + unit, "alice") assert status == 0, f"Unit {unit} is not enabled (status: {status}): {out}" - xfce.succeed("xdotool mousemove 850 10") + xfce.succeed("xdotool mousemove 460 10") xfce.wait_for_text("Pareto Security") xfce.succeed("xdotool click 1") xfce.wait_for_text("Run Checks") diff --git a/pkgs/by-name/pa/paretosecurity/package.nix b/pkgs/by-name/pa/paretosecurity/package.nix index e6b5232d75cb..25728d4e32a3 100644 --- a/pkgs/by-name/pa/paretosecurity/package.nix +++ b/pkgs/by-name/pa/paretosecurity/package.nix @@ -9,16 +9,16 @@ buildGoModule rec { pname = "paretosecurity"; - version = "0.0.96"; + version = "0.1.3"; src = fetchFromGitHub { owner = "ParetoSecurity"; repo = "agent"; rev = version; - hash = "sha256-SyeIGSDvrnOvyOJ0zC8CulpaMa+iZeRaMTJUSydz2tw="; + hash = "sha256-ovyfHqLCf5U3UR1HfoA+UQhqLZ6IaILcpqptPRQsb60="; }; - vendorHash = "sha256-O/OF3Y6HiiikMxf657k9eIM7UfkicIImAUxVVf/TgR8="; + vendorHash = "sha256-7mKAFkKGpBOjXc3J/sfF3k3pJF53tFybXZgbfJInuSY="; proxyVendor = true; ldflags = [ From 1d4a9bb830b7d45196a6f38bef84259819850765 Mon Sep 17 00:00:00 2001 From: Yohann Boniface Date: Fri, 4 Apr 2025 15:56:11 +0200 Subject: [PATCH 08/16] linux-doc: fix build (#395281) (cherry picked from commit 9fbc4bf2d3c2f8c8339e536c1abd69c7c89617fe) --- pkgs/os-specific/linux/kernel/htmldocs.nix | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pkgs/os-specific/linux/kernel/htmldocs.nix b/pkgs/os-specific/linux/kernel/htmldocs.nix index f6c02fc5ea7e..bfd7de475e17 100644 --- a/pkgs/os-specific/linux/kernel/htmldocs.nix +++ b/pkgs/os-specific/linux/kernel/htmldocs.nix @@ -19,7 +19,7 @@ stdenv.mkDerivation { patchShebangs \ Documentation/sphinx/parse-headers.pl \ scripts/{get_abi.pl,get_feat.pl,kernel-doc,sphinx-pre-install} \ - tools/net/ynl/ynl-gen-rst.py + tools/net/ynl/pyynl/ynl_gen_rst.py ''; FONTCONFIG_FILE = makeFontsConf { From 81605266411a8157cea3acba6778e5df56566965 Mon Sep 17 00:00:00 2001 From: Cole Helbling Date: Wed, 2 Apr 2025 07:55:32 -0700 Subject: [PATCH 09/16] flake: fix `nix flake check --all-systems --no-build` again This regressed in be4d27febe7776aac010f1ce11e1ff1f60f09bdd, because sphinx-issues depends on pandoc at build-time (which depends on GHC). Previously fixed in https://github.com/NixOS/nixpkgs/pull/349076. (cherry picked from commit 837ff226bbd44c29303611703a4085d48f0957c9) --- flake.nix | 31 +++++++++++++++++++++++-------- 1 file changed, 23 insertions(+), 8 deletions(-) diff --git a/flake.nix b/flake.nix index 178c591bf60f..b4b769f6ee7d 100644 --- a/flake.nix +++ b/flake.nix @@ -96,18 +96,25 @@ checks = forAllSystems ( system: - { - tarball = jobs.${system}.tarball; - } + { } + // + lib.optionalAttrs + ( + # Exclude x86_64-freebsd because "Failed to evaluate rustc-wrapper-1.85.0: «broken»: is marked as broken" + system != "x86_64-freebsd" + ) + { + tarball = jobs.${system}.tarball; + } // lib.optionalAttrs ( self.legacyPackages.${system}.stdenv.hostPlatform.isLinux # Exclude power64 due to "libressl is not available on the requested hostPlatform" with hostPlatform being power64 && !self.legacyPackages.${system}.targetPlatform.isPower64 - # Exclude armv6l-linux due to "cannot bootstrap GHC on this platform ('armv6l-linux' with libc 'defaultLibc')" + # Exclude armv6l-linux because "cannot bootstrap GHC on this platform ('armv6l-linux' with libc 'defaultLibc')" && system != "armv6l-linux" - # Exclude riscv64-linux due to "cannot bootstrap GHC on this platform ('riscv64-linux' with libc 'defaultLibc')" + # Exclude riscv64-linux because "cannot bootstrap GHC on this platform ('riscv64-linux' with libc 'defaultLibc')" && system != "riscv64-linux" ) { @@ -158,8 +165,8 @@ system != "armv6l-linux" # Exclude riscv64-linux because "Package ‘ghc-9.6.6’ in .../pkgs/development/compilers/ghc/common-hadrian.nix:579 is not available on the requested hostPlatform" && system != "riscv64-linux" - # Exclude FreeBSD because "Package ‘ghc-9.6.6’ in .../pkgs/development/compilers/ghc/common-hadrian.nix:579 is not available on the requested hostPlatform" - && !self.legacyPackages.${system}.stdenv.hostPlatform.isFreeBSD + # Exclude x86_64-freebsd because "Package ‘ghc-9.6.6’ in .../pkgs/development/compilers/ghc/common-hadrian.nix:579 is not available on the requested hostPlatform" + && system != "x86_64-freebsd" ) { /** @@ -169,7 +176,15 @@ } ); - formatter = forAllSystems (system: (import ./ci { inherit system; }).fmt.pkg); + formatter = lib.filterAttrs ( + system: _: + # Exclude armv6l-linux because "cannot bootstrap GHC on this platform ('armv6l-linux' with libc 'defaultLibc')" + system != "armv6l-linux" + # Exclude riscv64-linux because "cannot bootstrap GHC on this platform ('riscv64-linux' with libc 'defaultLibc')" + && system != "riscv64-linux" + # Exclude x86_64-freebsd because "Package ‘go-1.22.12-freebsd-amd64-bootstrap’ in /nix/store/0yw40qnrar3lvc5hax5n49abl57apjbn-source/pkgs/development/compilers/go/binary.nix:50 is not available on the requested hostPlatform" + && system != "x86_64-freebsd" + ) (forAllSystems (system: (import ./ci { inherit system; }).fmt.pkg)); /** A nested structure of [packages](https://nix.dev/manual/nix/latest/glossary#package-attribute-set) and other values. From b99260b2714af8e5cca5fafbf001c2db941ef1cd Mon Sep 17 00:00:00 2001 From: Cole Helbling Date: Wed, 2 Apr 2025 07:55:32 -0700 Subject: [PATCH 10/16] ci/eval: check that flake outputs on all systems still evaluate (cherry picked from commit 06b7e29907477081045d9e563c2c3fe61f61e063) --- .github/workflows/eval.yml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/.github/workflows/eval.yml b/.github/workflows/eval.yml index 82781f96c736..01149578af78 100644 --- a/.github/workflows/eval.yml +++ b/.github/workflows/eval.yml @@ -75,6 +75,9 @@ jobs: with: extra_nix_config: sandbox = true + - name: Ensure flake outputs on all systems still evaluate + run: nix --experimental-features 'nix-command flakes' flake check --all-systems --no-build ./nixpkgs + - name: Query nixpkgs with aliases enabled to check for basic syntax errors run: | time nix-env -I ./nixpkgs -f ./nixpkgs -qa '*' --option restrict-eval true --option allow-import-from-derivation false >/dev/null From b6150d02cd61d0688198bcf28d5ee8c0ea82b2be Mon Sep 17 00:00:00 2001 From: teutat3s <10206665+teutat3s@users.noreply.github.com> Date: Fri, 4 Apr 2025 17:09:38 +0200 Subject: [PATCH 11/16] docker: 27.3.1 -> 27.4.0 Co-authored-by: teutat3s <10206665+teutat3s@users.noreply.github.com> (manually cherry picked from commit 8befa299345079229504fb9a707ef583844dd71a) --- .../virtualization/docker/default.nix | 17 +++++++++++------ 1 file changed, 11 insertions(+), 6 deletions(-) diff --git a/pkgs/applications/virtualization/docker/default.nix b/pkgs/applications/virtualization/docker/default.nix index da6883a4ac70..b68b86b3b46e 100644 --- a/pkgs/applications/virtualization/docker/default.nix +++ b/pkgs/applications/virtualization/docker/default.nix @@ -32,6 +32,7 @@ rec { runc, tini, libtool, + bash, sqlite, iproute2, docker-buildx, @@ -82,6 +83,10 @@ rec { hash = runcHash; }; + preBuild = '' + substituteInPlace Makefile --replace-warn "/bin/bash" "${lib.getExe bash}" + ''; + # docker/runc already include these patches / are not applicable patches = [ ]; }; @@ -433,15 +438,15 @@ rec { }; docker_27 = callPackage dockerGen rec { - version = "27.3.1"; + version = "27.4.0"; cliRev = "v${version}"; - cliHash = "sha256-Iurud1BwswGZCFgJ04/wl1U9AKcsXDmzFXLFCrjfc0Y="; + cliHash = "sha256-q6xKERB5K7idExTrwFfX2ORs2G/55s2pybyhPcV5wuo="; mobyRev = "v${version}"; mobyHash = "sha256-AKl06k2ePWOFhL3oH086HcLLYs2Da+wLOcGjGnQ0SXE="; - runcRev = "v1.1.14"; - runcHash = "sha256-7PYbSZqCQLTaeFppuNz5mxDlwEyLkA5zpdMhWy1tWmc="; - containerdRev = "v1.7.22"; - containerdHash = "sha256-8IHBKai4PvvTuHPDTgx9wFEBzz4MM7Mwo8Q/bzFRzfk="; + runcRev = "v1.2.2"; + runcHash = "sha256-hRi7TJP73hRd/v8hisEUx9P2I2J5oF0Wv60NWHORI7Y="; + containerdRev = "v1.7.24"; + containerdHash = "sha256-03vJs61AnTuFAdImZjBfn1izFcoalVJdVs9DZeDcABI="; tiniRev = "v0.19.0"; tiniHash = "sha256-ZDKu/8yE5G0RYFJdhgmCdN3obJNyRWv6K/Gd17zc1sI="; }; From 809c7cd8025b04702c0376c11a9d30977ae20bc6 Mon Sep 17 00:00:00 2001 From: "Adam C. Stephens" Date: Fri, 4 Apr 2025 14:00:02 +0000 Subject: [PATCH 12/16] erlang_27: 27.3.1 -> 27.3.2 https://github.com/erlang/otp/releases/tag/OTP-27.3.2 (cherry picked from commit 428cee5acf1970b3aa0f5710de38d3ef5af492b8) --- pkgs/development/interpreters/erlang/27.nix | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/pkgs/development/interpreters/erlang/27.nix b/pkgs/development/interpreters/erlang/27.nix index 8a2955813656..8acd7815772c 100644 --- a/pkgs/development/interpreters/erlang/27.nix +++ b/pkgs/development/interpreters/erlang/27.nix @@ -1,6 +1,6 @@ { mkDerivation }: mkDerivation { - version = "27.3.1"; - sha256 = "sha256-VuVRwcS2TgDYT7buLMHOe8r0AWM+R9DxydcHErAy8xw="; + version = "27.3.2"; + sha256 = "sha256-Pybkcm3pLt0wV+S9ia/BAmM1AKp/nVSAckEzNn4KjSg="; } From b72d9ec993ed62c4077a41909575ca45cf644608 Mon Sep 17 00:00:00 2001 From: teutat3s <10206665+teutat3s@users.noreply.github.com> Date: Thu, 19 Dec 2024 17:13:11 -0300 Subject: [PATCH 13/16] docker: 27.4.0 -> 27.4.1 (cherry picked from commit 10ad08d0772271aa5f0b34407e53f67e44ae467a) --- pkgs/applications/virtualization/docker/default.nix | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/pkgs/applications/virtualization/docker/default.nix b/pkgs/applications/virtualization/docker/default.nix index b68b86b3b46e..41a0b81a624a 100644 --- a/pkgs/applications/virtualization/docker/default.nix +++ b/pkgs/applications/virtualization/docker/default.nix @@ -438,13 +438,13 @@ rec { }; docker_27 = callPackage dockerGen rec { - version = "27.4.0"; + version = "27.4.1"; cliRev = "v${version}"; - cliHash = "sha256-q6xKERB5K7idExTrwFfX2ORs2G/55s2pybyhPcV5wuo="; + cliHash = "sha256-/lIp32ArtI8FGPepXnUqmkQ03YTC8SfK44+onAvHFnE="; mobyRev = "v${version}"; - mobyHash = "sha256-AKl06k2ePWOFhL3oH086HcLLYs2Da+wLOcGjGnQ0SXE="; - runcRev = "v1.2.2"; - runcHash = "sha256-hRi7TJP73hRd/v8hisEUx9P2I2J5oF0Wv60NWHORI7Y="; + mobyHash = "sha256-OSkI8F8bUjsCUT/pRWWbfTq9Fno5z35hW9OnLXHrIiQ="; + runcRev = "v1.2.3"; + runcHash = "sha256-SdeCmPttMXQdIn3kGWsIM3dfhQCx1C5bMyAM889VVUc="; containerdRev = "v1.7.24"; containerdHash = "sha256-03vJs61AnTuFAdImZjBfn1izFcoalVJdVs9DZeDcABI="; tiniRev = "v0.19.0"; From 87c5bd062e3cdda2512840499bbedb81d9644e4a Mon Sep 17 00:00:00 2001 From: "R. Ryantm" Date: Tue, 14 Jan 2025 04:55:32 +0000 Subject: [PATCH 14/16] docker: 27.4.1 -> 27.5.0 (cherry picked from commit afefc3a7a23090a09c284a5d345a8c20d99406b7) --- pkgs/applications/virtualization/docker/default.nix | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/pkgs/applications/virtualization/docker/default.nix b/pkgs/applications/virtualization/docker/default.nix index 41a0b81a624a..b748bc511224 100644 --- a/pkgs/applications/virtualization/docker/default.nix +++ b/pkgs/applications/virtualization/docker/default.nix @@ -438,9 +438,9 @@ rec { }; docker_27 = callPackage dockerGen rec { - version = "27.4.1"; + version = "27.5.0"; cliRev = "v${version}"; - cliHash = "sha256-/lIp32ArtI8FGPepXnUqmkQ03YTC8SfK44+onAvHFnE="; + cliHash = "sha256-PbdT1CL8jSHHPV2iygTXNwoY0qcNF2XUDEAHHsM4fPM="; mobyRev = "v${version}"; mobyHash = "sha256-OSkI8F8bUjsCUT/pRWWbfTq9Fno5z35hW9OnLXHrIiQ="; runcRev = "v1.2.3"; From e4c15926318e62e486a3ad2185d013e3ba99bd66 Mon Sep 17 00:00:00 2001 From: misilelab Date: Thu, 23 Jan 2025 18:27:52 +0900 Subject: [PATCH 15/16] docker: 27.5.0 -> 27.5.1 Signed-off-by: misilelab (cherry picked from commit 9c4549534bb868c5bc4e613f0467c1d857faa7fc) --- pkgs/applications/virtualization/docker/default.nix | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/pkgs/applications/virtualization/docker/default.nix b/pkgs/applications/virtualization/docker/default.nix index b748bc511224..d6135d6b6f2e 100644 --- a/pkgs/applications/virtualization/docker/default.nix +++ b/pkgs/applications/virtualization/docker/default.nix @@ -438,11 +438,11 @@ rec { }; docker_27 = callPackage dockerGen rec { - version = "27.5.0"; + version = "27.5.1"; cliRev = "v${version}"; - cliHash = "sha256-PbdT1CL8jSHHPV2iygTXNwoY0qcNF2XUDEAHHsM4fPM="; + cliHash = "sha256-7laxRfssh2aGfJeZI0PsJ/MCiy2npigSmCa1SUlWY4s="; mobyRev = "v${version}"; - mobyHash = "sha256-OSkI8F8bUjsCUT/pRWWbfTq9Fno5z35hW9OnLXHrIiQ="; + mobyHash = "sha256-q+VCJZ93jvPJQE0xn89prH/6spsarVY3VUEmgwyMxU4="; runcRev = "v1.2.3"; runcHash = "sha256-SdeCmPttMXQdIn3kGWsIM3dfhQCx1C5bMyAM889VVUc="; containerdRev = "v1.7.24"; From 64f81e68ce90abb381a1995a542b12877df8dd3e Mon Sep 17 00:00:00 2001 From: teutat3s <10206665+teutat3s@users.noreply.github.com> Date: Sun, 30 Mar 2025 17:53:01 +0200 Subject: [PATCH 16/16] docker_27: sync runc and containerd versions with upstream https://github.com/moby/moby/tree/v27.5.1/hack/dockerfile/install/ (cherry picked from commit afaa567e52106ee2d9d3a79075fc10ff79aee612) --- pkgs/applications/virtualization/docker/default.nix | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/pkgs/applications/virtualization/docker/default.nix b/pkgs/applications/virtualization/docker/default.nix index d6135d6b6f2e..7ef6b9ed0ada 100644 --- a/pkgs/applications/virtualization/docker/default.nix +++ b/pkgs/applications/virtualization/docker/default.nix @@ -443,10 +443,10 @@ rec { cliHash = "sha256-7laxRfssh2aGfJeZI0PsJ/MCiy2npigSmCa1SUlWY4s="; mobyRev = "v${version}"; mobyHash = "sha256-q+VCJZ93jvPJQE0xn89prH/6spsarVY3VUEmgwyMxU4="; - runcRev = "v1.2.3"; - runcHash = "sha256-SdeCmPttMXQdIn3kGWsIM3dfhQCx1C5bMyAM889VVUc="; - containerdRev = "v1.7.24"; - containerdHash = "sha256-03vJs61AnTuFAdImZjBfn1izFcoalVJdVs9DZeDcABI="; + runcRev = "v1.2.4"; + runcHash = "sha256-LdYCMxdqDP7rKo6Ek/B1DE6QvUFrltbSJVggkVkXQZo="; + containerdRev = "v1.7.25"; + containerdHash = "sha256-T0F5bwxSCqa4Czs/W01NaAlJJFvgrzkBC1y/r+muivA="; tiniRev = "v0.19.0"; tiniHash = "sha256-ZDKu/8yE5G0RYFJdhgmCdN3obJNyRWv6K/Gd17zc1sI="; };