Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

prometheus-node-exporter/1.8.0 package update #17608

Merged
merged 1 commit into from
Apr 24, 2024

Conversation

octo-sts[bot]
Copy link
Contributor

@octo-sts octo-sts bot commented Apr 24, 2024

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com>
@octo-sts octo-sts bot added request-version-update request for a newer version of a package automated pr labels Apr 24, 2024
Copy link
Contributor

Package prometheus-node-exporter: Click to expand/collapse

Package prometheus-node-exporter:
Modified: /usr/bin/node_exporter

Package prometheus-node-exporter-compat: Click to expand/collapse

Package prometheus-node-exporter-compat:
Unchanged

bincapz found differences: Click to expand/collapse

Changed: prometheus-node-exporter/usr/bin/node_exporter

Previous Risk: ✅ 2/MEDIUM
New Risk: 🔥 3/HIGH

RISK KEY DESCRIPTION
+3/HIGH combo/router/critical_paths accesses multiple critical Linux paths:
/bootstatusValue
/etc/apache/mime.typesgzip
/etc/apache2/mime.typessyntax
/etc/groupnotifyListprofInsertstackL
/etc/hostsgetsockoptnetlinkribIP
/etc/httpd/conf/mime.typesbinary.Rea
/etc/locH
/etc/mime.types
/etc/nsswitch.confinvalid
/etc/os-releasecpucycles_totalenergy
/etc/passwdassistQueuenetpollInitref
/etc/pki/ca-trust/extracted/pem/tls-
/etc/pki/tls/cacert.peminvalid
/etc/pki/tls/certs/ca-bundle.crtx509
/etc/pki/tls/certstag
/etc/protocolsunknown
/etc/resolv.confnon-IPv4
/etc/selinux/config2006-01-02T15
/etc/serviceHeader
/etc/servicesdalTLDpSugct
/etc/ssl/ca-bundle.pemx509
/etc/ssl/cert.peminvalid
/etc/ssl/certs/ca-certificates.crtad
/etc/ssl/certsLISTEN_FDNAMESdocument
/etc/zoneinfoparsing
/proc.go
/proc/cpuinfo.CPU
/proc/cpuinfo.If
/proc/filesystems20060102T15
/proc/mounts
/proc/net/arp.Use
/proc/net/dev.Misses
/proc/net/softnet_stat
/proc/net/unix
/proc/net/wireless
/proc/self/auxv
/proc/self/exeuserArenaStateGC
/proc/self/mapsno
/proc/self/mountinfo
/proc/self/task/
/proc/sys/kernel/hostnamegoroutine
/proc/sys/net/core/somaxconn/usr/loca
/proc/thread-self/attr
/proc/vmstat
/proc_cgroup.go
/proc_cgroups.go
/proc_environ.go
/proc_fdinfo.go
/proc_interrupts.go
/proc_io.go
/proc_limits.go
/proc_maps.go
/proc_netstat.go
/proc_ns.go
/proc_psi.go
/proc_smaps.go
/proc_snmp.go
/proc_snmp6.go
/proc_stat.go
/proc_status.go
/proc_sys.go
/process_collector.go
/process_collector_other.go
/process_profile.go
/processes_linux.go
/procfs..inittask
/procfs.CPUStat
/procfs.CgroupSummary
/procfs.Crypto
/procfs.ErrFileParse
/procfs.ErrFileRead
/procfs.FS.AllProcs.deferwrap1
/procfs.FS.AllThreads.deferwrap1
/procfs.FS.BuddyInfo.deferwrap1
/procfs.FS.CPUInfo
/procfs.FS.CgroupSummarys
/procfs.FS.CmdLine
/procfs.FS.ConntrackStat
/procfs.FS.Crypto
/procfs.FS.Fscacheinfo
/procfs.FS.GatherARPEntries
/procfs.FS.IPVSBackendStatus.deferwra
/procfs.FS.IPVSStats
/procfs.FS.KernelRandom
/procfs.FS.LoadAvg
/procfs.FS.MDStat
/procfs.FS.Meminfo
/procfs.FS.NetDev
/procfs.FS.NetProtocols
/procfs.FS.NetRoute
/procfs.FS.NetSockstat6
/procfs.FS.NetSoftnetStat
/procfs.FS.NetStat
/procfs.FS.NetTCP6Summary
/procfs.FS.NetTCPSummary
/procfs.FS.NetUDP6Summary
/procfs.FS.NetUDPSummary
/procfs.FS.NetUNIX
/procfs.FS.NewProc
/procfs.FS.NewStat
/procfs.FS.NewTLSStat.deferwrap1
/procfs.FS.NewXfrmStat.deferwrap1
/procfs.FS.PSIStatsForResource
/procfs.FS.Proc
/procfs.FS.Schedstat.deferwrap1
/procfs.FS.Self
/procfs.FS.SlabInfo
/procfs.FS.Softirqs
/procfs.FS.Stat
/procfs.FS.Swaps
/procfs.FS.SysctlInts
/procfs.FS.SysctlStrings
/procfs.FS.Thread
/procfs.FS.VM
/procfs.FS.Wireless
/procfs.FS.Zoneinfo
/procfs.InotifyInfo
/procfs.LoadAvg
/procfs.MountStatsNFS
/procfs.NFSOperationStats
/procfs.NFSTransportStats
/procfs.Namespace
/procfs.NetDev.Total
/procfs.NetDev.parseLine
/procfs.NetDevLine
/procfs.NetProtocolStatLine
/procfs.NetProtocolStats.parseLine
/procfs.NetRouteLine
/procfs.NetSockstatProtocol
/procfs.NetUNIX.parseFlags
/procfs.NetUNIX.parseInode
/procfs.NetUNIX.parseState
/procfs.NetUNIX.parseType
/procfs.NetUNIX.parseUsers
/procfs.NetUNIXFlags.String
/procfs.NetUNIXLine
/procfs.NetUNIXState.String
/procfs.NetUNIXType.String
/procfs.NewDefaultFS
/procfs.NewFS
/procfs.NewProc
/procfs.PSILine
/procfs.Proc.Cgroups
/procfs.Proc.CmdLine
/procfs.Proc.Comm
/procfs.Proc.Cwd
/procfs.Proc.Environ
/procfs.Proc.Executable
/procfs.Proc.FDInfo
/procfs.Proc.FileDescriptorTargets
/procfs.Proc.FileDescriptorsInfo
/procfs.Proc.FileDescriptorsLen
/procfs.Proc.IO
/procfs.Proc.Interrupts
/procfs.Proc.Limits.deferwrap1
/procfs.Proc.MountInfo
/procfs.Proc.MountStats.deferwrap1
/procfs.Proc.Namespaces.deferwrap1
/procfs.Proc.NetDev
/procfs.Proc.Netstat
/procfs.Proc.NewLimits
/procfs.Proc.NewStatus
/procfs.Proc.ProcMaps.deferwrap1
/procfs.Proc.ProcSMapsRollup
/procfs.Proc.RootDir
/procfs.Proc.Schedstat
/procfs.Proc.Snmp6
/procfs.Proc.Stat
/procfs.Proc.Thread
/procfs.Proc.Wchan.deferwrap1
/procfs.Proc.fileDescriptors.deferwra
/procfs.Proc.path
/procfs.Proc.procSMapsRollupManual.de
/procfs.ProcFDInfos.InotifyWatchLen
/procfs.ProcFDInfos.Len
/procfs.ProcFDInfos.Less
/procfs.ProcFDInfos.Swap
/procfs.ProcMap
/procfs.ProcStat.CPUTime
/procfs.ProcStat.ResidentMemory
/procfs.ProcStat.StartTime
/procfs.ProcStat.VirtualMemory
/procfs.ProcStatus.TotalCtxtSwitches
/procfs.Procs.Len
/procfs.Procs.Less
/procfs.Procs.Swap
/procfs.SchedstatCPU
/procfs.Slab
/procfs.Swap
/procfs.Wireless
/procfs.calcCpusAllowedList.func1
/procfs.calcNSPidsList
/procfs.componentDeviceRE
/procfs.cpuLineRE
/procfs.cpuinfoClockRegexp
/procfs.cpuinfoS390XProcessorRegexp
/procfs.evalComponentDevices
/procfs.evalRecoveryLine
/procfs.evalStatusLine
/procfs.firstNonEmptyLine
/procfs.init
/procfs.isRealProc
/procfs.limitsMatch
/procfs.mountOptionsIsValidField
/procfs.mountOptionsParseOptionalFiel
/procfs.mountOptionsParser
/procfs.newNetDev.deferwrap1
/procfs.newNetIPSocket.deferwrap1
/procfs.newNetIPSocketSummary.deferwr
/procfs.newNetTCPSummary
/procfs.newNetUDPSummary
/procfs.nodeZoneRE
/procfs.parseARPEntries
/procfs.parseARPEntry
/procfs.parseAddresses
/procfs.parseBuddyInfo
/procfs.parseCPUInfoX86
/procfs.parseCPUStat
/procfs.parseCgroupString
/procfs.parseCgroupSummaryString
/procfs.parseCgroups
/procfs.parseConntrackStatEntry
/procfs.parseCrypto
/procfs.parseDevice
/procfs.parseFscacheinfo
/procfs.parseHexUint32s
/procfs.parseIPPort
/procfs.parseIPVSBackendStatus
/procfs.parseIPVSStats
/procfs.parseInotifyInfo
/procfs.parseInterrupts
/procfs.parseLoad
/procfs.parseMDStat
/procfs.parseMemInfo
/procfs.parseMountInfoString
/procfs.parseMountStatsNFS
/procfs.parseNFSBytesStats
/procfs.parseNFSEventsStats
/procfs.parseNFSOperationStats
/procfs.parseNFSTransportStats
/procfs.parseNetIPSocketLine
/procfs.parseNetProtocols
/procfs.parseNetRouteLine
/procfs.parseNetUNIX
/procfs.parseNetstat.deferwrap1
/procfs.parsePSIStats
/procfs.parsePermissions
/procfs.parseProcMap
/procfs.parseProcNetstat
/procfs.parseProcSchedstat
/procfs.parseSNMP6Stats
/procfs.parseSlabInfo21
/procfs.parseSnmp
/procfs.parseSockstatKVs
/procfs.parseSockstatProtocol
/procfs.parseSoftIRQStat
/procfs.parseSoftirqs
/procfs.parseSoftnet
/procfs.parseStat
/procfs.parseSwapString
/procfs.parseSwaps
/procfs.parseUint
/procfs.parseV21SlabEntry
/procfs.parseWireless
/procfs.parseZoneinfo
/procfs.procLineRE
/procfs.procSMapsHeaderLine
/procfs.rFlags
/procfs.rInotifyParts
/procfs.rMntID
/procfs.rPos
/procfs.readConntrackStat
/procfs.readNetRoute
/procfs.readNetUNIX.deferwrap1
/procfs.readSockstat
/procfs.recoveryLineBlocksRE
/procfs.recoveryLineFinishRE
/procfs.recoveryLinePctRE
/procfs.recoveryLineSpeedRE
/procfs.setFSCacheFields
/procfs.shouldParseSlab
/procfs.slabHeader
/procfs.slabSpace
/procfs.slabVer
/procfs.softNetProcFile
/procfs.statusLineRE
/procfs.sysctlToPath
/procfs/bcache.BdevStats
/procfs/bcache.CacheStats
/procfs/bcache.FS.StatsWithoutPriorit
/procfs/bcache.FS.stats
/procfs/bcache.GetStats
/procfs/bcache.NewFS
/procfs/bcache.dehumanizeSigned
/procfs/bcache.parsePriorityStats
/procfs/bcache.parsePseudoFloat
/procfs/bcache.parseWritebackRateDebu
/procfs/blockdevice.DeviceMapperInfo
/procfs/blockdevice.Diskstats
/procfs/blockdevice.FS.ProcDiskstats.
/procfs/blockdevice.FS.SysBlockDevice
/procfs/blockdevice.Info
/procfs/blockdevice.NewFS
/procfs/blockdevice.parseProcDiskstat
/procfs/blockdevice.parseSysBlockDevi
/procfs/btrfs.FS.Stats
/procfs/btrfs.GetStats
/procfs/btrfs.LayoutUsage
/procfs/btrfs.NewFS
/procfs/internal/fs.FS.Path
/procfs/internal/fs.NewFS
/procfs/internal/util.NewValueParser
/procfs/internal/util.ParseBool
/procfs/internal/util.ParseHexUint64s
/procfs/internal/util.ParsePInt64s
/procfs/internal/util.ParseUint32s
/procfs/internal/util.ParseUint64s
/procfs/internal/util.ReadFileNoStat.
/procfs/internal/util.ReadIntFromFile
/procfs/internal/util.ReadUintFromFil
/procfs/internal/util.SysReadFile.def
/procfs/nfs.FS.ClientRPCStats.deferwr
/procfs/nfs.FS.ServerRPCStats.deferwr
/procfs/nfs.NewFS
/procfs/nfs.ParseClientRPCStats
/procfs/nfs.ParseServerRPCStats
/procfs/nfs.parseClientRPC
/procfs/nfs.parseClientV4Stats
/procfs/nfs.parseFileHandles
/procfs/nfs.parseInputOutput
/procfs/nfs.parseNetwork
/procfs/nfs.parseReadAheadCache
/procfs/nfs.parseReplyCache
/procfs/nfs.parseServerRPC
/procfs/nfs.parseServerV4Stats
/procfs/nfs.parseThreads
/procfs/nfs.parseV2Stats
/procfs/nfs.parseV3Stats
/procfs/nfs.parseV4Ops
/procfs/sysfs..inittask
/procfs/sysfs.CPU.Number
/procfs/sysfs.CPU.ThermalThrottle
/procfs/sysfs.CPU.Topology
/procfs/sysfs.CPUTopology
/procfs/sysfs.ClassCoolingDeviceStats
/procfs/sysfs.ClassDRMCardAMDGPUStats
/procfs/sysfs.ClassThermalZoneStats
/procfs/sysfs.FS.CPUVulnerabilities
/procfs/sysfs.FS.CPUs
/procfs/sysfs.FS.ClassCoolingDeviceSt
/procfs/sysfs.FS.ClassDRMCardAMDGPUSt
/procfs/sysfs.FS.ClassThermalZoneStat
/procfs/sysfs.FS.ClockSources
/procfs/sysfs.FS.DMIClass
/procfs/sysfs.FS.FibreChannelClass
/procfs/sysfs.FS.InfiniBandClass
/procfs/sysfs.FS.IsolatedCPUs
/procfs/sysfs.FS.Mdraids
/procfs/sysfs.FS.NVMeClass
/procfs/sysfs.FS.NetClassByIface
/procfs/sysfs.FS.NetClassDevices
/procfs/sysfs.FS.PowerSupplyClass
/procfs/sysfs.FS.SASDeviceClass
/procfs/sysfs.FS.SASEndDeviceClass
/procfs/sysfs.FS.SASExpanderClass
/procfs/sysfs.FS.SASHostClass
/procfs/sysfs.FS.SASPhyClass
/procfs/sysfs.FS.SASPortClass
/procfs/sysfs.FS.SCSITapeClass
/procfs/sysfs.FS.SystemCpufreq.func1
/procfs/sysfs.FS.VMStatNUMA
/procfs/sysfs.FS.WatchdogClass
/procfs/sysfs.FS.blockSASDeviceBlockD
/procfs/sysfs.FS.parseFibreChannelHos
/procfs/sysfs.FS.parseInfiniBandDevic
/procfs/sysfs.FS.parseInfiniBandPort
/procfs/sysfs.FS.parseNVMeDevice
/procfs/sysfs.FS.parseSASDeviceClass
/procfs/sysfs.FS.parseSASHost
/procfs/sysfs.FS.parseSASPhy
/procfs/sysfs.FS.parseSASPort
/procfs/sysfs.FS.parseSCSITape
/procfs/sysfs.FS.parseWatchdog
/procfs/sysfs.FibreChannelHost
/procfs/sysfs.GetRaplZones
/procfs/sysfs.InfiniBandPort
/procfs/sysfs.MdraidComponent
/procfs/sysfs.NVMeDevice
/procfs/sysfs.NetClassIface
/procfs/sysfs.NewFS
/procfs/sysfs.ParseNetClassAttribute
/procfs/sysfs.PowerSupply
/procfs/sysfs.RaplZone.GetEnergyMicro
/procfs/sysfs.SCSITape
/procfs/sysfs.SystemCPUCpufreqStats
/procfs/sysfs.VulnerabilityHumanEncod
/procfs/sysfs.WatchdogStats
/procfs/sysfs.binSearch
/procfs/sysfs.canIgnoreError
/procfs/sysfs.filterOfflineCPUs
/procfs/sysfs.getIndexAndName
/procfs/sysfs.init
/procfs/sysfs.nodeNumberRegexp
/procfs/sysfs.nodePattern
/procfs/sysfs.parseCPURange
/procfs/sysfs.parseCPUThermalThrottle
/procfs/sysfs.parseCPUTopology
/procfs/sysfs.parseClassDRMAMDGPUCard
/procfs/sysfs.parseClassThermalZone
/procfs/sysfs.parseClocksource
/procfs/sysfs.parseCoolingDeviceStats
/procfs/sysfs.parseCpufreqCpuinfo
/procfs/sysfs.parseFibreChannelStatis
/procfs/sysfs.parseInfiniBandCounters
/procfs/sysfs.parseInfiniBandHwCounte
/procfs/sysfs.parseLinkrate
/procfs/sysfs.parseNetClassIface
/procfs/sysfs.parsePowerSupply
/procfs/sysfs.parseRate
/procfs/sysfs.parseSCSITapeStatistics
/procfs/sysfs.parseState
/procfs/sysfs.parseVMStatNUMA
/procfs/sysfs.parseVulnerability
/procfs/sysfs.readDRMCardField
/procfs/sysfs.sasEndDeviceRegexp
/procfs/sysfs.sasExpanderDeviceRegexp
/procfs/sysfs.sasPhyDeviceRegexp
/procfs/sysfs.sasPortDeviceRegexp
/procfs/sysfs.sasTargetDeviceRegexp
/procfs/sysfs.sasTargetSubDeviceRegex
/procfs/xfs.FS.ProcStat.deferwrap1
/procfs/xfs.FS.SysStats
/procfs/xfs.NewFS
/procfs/xfs.ParseStats
/procfs/xfs.Stats
/procfs/xfs.attributeOperationStats
/procfs/xfs.blockMappingStats
/procfs/xfs.btreeAllocBlocks2Stats
/procfs/xfs.btreeAllocContig2Stats
/procfs/xfs.btreeBlockMap2Stats
/procfs/xfs.btreeInode2Stats
/procfs/xfs.btreeStats
/procfs/xfs.bufferStats
/procfs/xfs.debugStats
/procfs/xfs.directoryOperationStats
/procfs/xfs.extendedPrecisionStats
/procfs/xfs.extentAllocationStats
/procfs/xfs.inodeClusteringStats
/procfs/xfs.inodeOperationStats
/procfs/xfs.logOperationStats
/procfs/xfs.pushAilStats
/procfs/xfs.quotaManagerStats
/procfs/xfs.readWriteStats
/procfs/xfs.transactionStats
/procfs/xfs.vnodeStats
/procfs/xfs.xStratStats
/procsfalse
/sys/class/fc_host/
/sys/class/infiniband/
/sys/class/net/
/sys/class/nvme/
/sys/class/power_supply/
/sys/class/watchdog/
/sys/devices/system/clocksource
/sys/devices/system/cpu/isolated.Number
/tmpHOMEopenstatsyncfileUSERallgallp
/var/run/dbus/system_bus_socketcrypto/md
sysctl %s has %d ke
sysctl %s has no valuesunit_start_time
sysctl %s has onl
sysctl %s is not a valid int: %w
sysctl %s, field %dcollectSockets took
sysctl %sNRestartsNAcceptedtapestatsfi
sysctl info: %wcouldn't get unit Start
sysctl infoCacheMissesBranchInstrLLWri
sysctl metrics to include as info metr
sysctl metrics to includecollector.s
sysctl string values not supportedfail
sysctl).metricName
sysctl).newConstMetric
sysctl).newInde
sysctl).newMappedMetrics
sysctl.include-infoin_buffer_error_pac
sysctl.includein_no_pols_packets_total
sysctlCollector).Update
sysctlCollector).newMetrics
sysctlCollector,github.com/prometheus/
sysctlIncludeInfo
sysctlInfoDesc
sysctl_linu
sysctlbcacheslavesmasters
sysctls

@ajayk
Copy link
Contributor

ajayk commented Apr 24, 2024

Node exporter needs these multiple paths as they needed access CPU , DISK and memory related info

New Risk: 🔥 3/HIGH

RISK KEY DESCRIPTION
+3/HIGH combo/router/critical_paths accesses multiple critical Linux paths:

@ajayk ajayk merged commit 61b3659 into main Apr 24, 2024
8 checks passed
@ajayk ajayk deleted the wolfictl-96d9c573-6cee-43c1-a6e3-9a919aa8c50d branch April 24, 2024 17:14
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
automated pr request-version-update request for a newer version of a package
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants