UNCLASSIFIED

Merge branch 'hardening_manifest' into 'development'

Migrate to hardening_manifest.yaml

See merge request !16
19 jobs for development in 5 minutes and 59 seconds (queued for 36 seconds)
Status Job ID Name Coverage
  .Pre
passed #2649933
ironbank
load scripts

00:00:25

 
  Preflight
passed #2649934
ironbank
folder structure

00:00:22

passed #2649935
ironbank
hardening_manifest

00:00:26

 
  Lint
passed #2649936
ironbank
wl compare lint

00:00:30

 
  Finding Compare
failed #2649937
ironbank allowed to fail
vat compare

00:00:09

 
  Import Artifacts
passed #2649938
ironbank
import artifacts

00:00:18

 
  Scan Artifacts
passed #2649939
ironbank
clamav scan

00:02:59

 
  Build
failed #2649940
ironbank-isolated
build

00:01:09

 
  Scanning
skipped #2649944
ironbank
anchore scan
skipped #2649941
ironbank
openscap compliance
skipped #2649942
ironbank
openscap cve
skipped #2649943
ironbank
twistlock scan
 
  Csv Output
skipped #2649945
ironbank
csv output
 
  Check Cves
skipped #2649946
ironbank allowed to fail
check cves
 
  Documentation
skipped #2649947
ironbank
sign image
skipped #2649948
ironbank
sign manifest
skipped #2649949
ironbank
write json documentation
 
  S3 Publish
skipped #2649950
ironbank
upload to s3
 
  Vat
skipped #2649951
ironbank
vat
 
Name Stage Failure
failed
build Build
Uploading artifacts for failed job
Uploading artifacts...
ci-artifacts/build/: found 1 matching files and directories

Uploading artifacts as "archive" to coordinator... ok
id=2649940 responseStatus=201 Created token=feRK67qq
Uploading artifacts...
WARNING: build.env: no matching files
ERROR: No files to upload
Cleaning up file based variables
ERROR: Job failed: command terminated with exit code 1
failed
vat compare Finding Compare
('CVE-2020-13776', 'anchore_cve', 'systemd-239-41.el8_3.2\nhttps://access.redhat.com/security/cve/CVE-2020-13776', 'systemd-239-41.el8_3.2', None)
('CVE-2020-13776', 'twistlock_cve', 'systemd through v245 mishandles numerical usernames such as ones composed of decimal digits or 0x followed by hex digits, as demonstrated by use of root privileges when privileges of the 0x0 user account were intended. NOTE: this issue exists because of an incomplete fix for CVE-2017-1000082.', 'systemd-239-41.el8_3.2', None)
('CVE-2020-13776', 'anchore_cve', 'systemd-pam-239-41.el8_3.2\nhttps://access.redhat.com/security/cve/CVE-2020-13776', 'systemd-pam-239-41.el8_3.2', None)
Uploading artifacts for failed job
Uploading artifacts...
ci-artifacts/compare/: found 2 matching files and directories

Uploading artifacts as "archive" to coordinator... ok
id=2649937 responseStatus=201 Created token=ySFA3Am7
Cleaning up file based variables
ERROR: Job failed: command terminated with exit code 4