Some checks failed
Periodic Merges (6h) / master → staging-nixos (push) Failing after 12m50s
Periodic Merges (6h) / master → staging-next (push) Failing after 12m54s
Periodic Merges (24h) / merge-base(master,staging) → haskell-updates (push) Failing after 11m54s
Periodic Merges (6h) / staging-next → staging (push) Failing after 12m13s
Periodic Merges (24h) / staging-next-25.05 → staging-25.05 (push) Failing after 13m24s
Periodic Merges (24h) / release-25.05 → staging-next-25.05 (push) Failing after 14m28s
60 lines
1.1 KiB
Nix
60 lines
1.1 KiB
Nix
{
|
|
lib,
|
|
fetchFromGitHub,
|
|
coccinelle,
|
|
gnugrep,
|
|
python3,
|
|
}:
|
|
|
|
python3.pkgs.buildPythonApplication rec {
|
|
pname = "cvehound";
|
|
version = "1.2.1";
|
|
format = "pyproject";
|
|
|
|
src = fetchFromGitHub {
|
|
owner = "evdenis";
|
|
repo = "cvehound";
|
|
tag = version;
|
|
hash = "sha256-UvjmlAm/8B4KfE9grvvgn37Rui+ZRfs2oTLqYYgqcUQ=";
|
|
};
|
|
|
|
makeWrapperArgs = [
|
|
"--prefix PATH : ${
|
|
lib.makeBinPath [
|
|
coccinelle
|
|
gnugrep
|
|
]
|
|
}"
|
|
];
|
|
|
|
build-system = with python3.pkgs; [
|
|
setuptools
|
|
];
|
|
|
|
dependencies = with python3.pkgs; [
|
|
lxml
|
|
sympy
|
|
];
|
|
|
|
nativeCheckInputs = with python3.pkgs; [
|
|
gitpython
|
|
psutil
|
|
pytestCheckHook
|
|
];
|
|
|
|
# Tries to clone the kernel sources
|
|
doCheck = false;
|
|
|
|
meta = with lib; {
|
|
description = "Tool to check linux kernel source dump for known CVEs";
|
|
homepage = "https://github.com/evdenis/cvehound";
|
|
changelog = "https://github.com/evdenis/cvehound/blob/${src.rev}/ChangeLog";
|
|
# See https://github.com/evdenis/cvehound/issues/22
|
|
license = with licenses; [
|
|
gpl2Only
|
|
gpl3Plus
|
|
];
|
|
maintainers = with maintainers; [ ambroisie ];
|
|
};
|
|
}
|