Skip to content

Releases: chainguard-dev/melange

Release v0.30.3

31 Jul 11:45
ace8048
Compare
Choose a tag to compare

What's Changed

  • Revert "SCA: Generate depends for shlibs ending in .so" and related commits by @sil2100 in #2116

Full Changelog: v0.30.2...v0.30.3

Release v0.30.2

30 Jul 21:06
ccfc53e
Compare
Choose a tag to compare

What's Changed

New Contributors

Full Changelog: v0.30.1...v0.30.2

Release v0.30.1

28 Jul 00:26
a17bf70
Compare
Choose a tag to compare

What's Changed

Full Changelog: v0.30.0...v0.30.1

Release v0.30.0

25 Jul 12:32
4a077cf
Compare
Choose a tag to compare

What's Changed

  • feat(sbom): Include the distro qualifier as part of the APK PURL by @pdeslaur in #2078
  • Use session.Run instead of session.Shell by @egibs in #2100

Full Changelog: v0.29.7...v0.30.0

Release v0.29.7

17 Jul 16:59
f66cb12
Compare
Choose a tag to compare

What's Changed

  • build(deps): bump sigs.k8s.io/release-utils from 0.11.1 to 0.12.0 by @dependabot[bot] in #2095
  • Revert changes related to "avoid SSH lockups, use script for tests" by @sil2100 in #2096

Full Changelog: v0.29.6...v0.29.7

Release v0.29.6

17 Jul 14:55
b6eaa9d
Compare
Choose a tag to compare

What's Changed

  • Upgrade apko to v0.29.4 by @markusthoemmes in #2084
  • build(deps): bump the actions group across 1 directory with 2 updates by @dependabot[bot] in #2054
  • build(deps): bump the gomod group across 1 directory with 6 updates by @dependabot[bot] in #2087
  • build(deps): bump github.com/docker/docker from 28.2.2+incompatible to 28.3.2+incompatible by @dependabot[bot] in #2088
  • build(deps): bump go.opentelemetry.io/otel/exporters/stdout/stdouttrace from 1.36.0 to 1.37.0 by @dependabot[bot] in #2092
  • build(deps): bump sigs.k8s.io/yaml from 1.4.0 to 1.5.0 by @dependabot[bot] in #2089
  • build(deps): bump github.com/moby/moby from 28.0.4+incompatible to 28.3.2+incompatible by @dependabot[bot] in #2091
  • build(deps): bump mvdan.cc/sh/v3 from 3.11.0 to 3.12.0 by @dependabot[bot] in #2090

Full Changelog: v0.29.5...v0.29.6

Release v0.29.5

16 Jul 21:07
e29494b
Compare
Choose a tag to compare

What's Changed

  • fix: tighten up permissions for written SBOM files and signature tarballs by @egibs in #2086

Full Changelog: v0.29.4...v0.29.5

Release v0.29.4

16 Jul 17:55
113b227
Compare
Choose a tag to compare

What's Changed

New Contributors

Full Changelog: v0.29.3...v0.29.4

Release v0.29.3

16 Jul 12:42
25a84a3
Compare
Choose a tag to compare

What's Changed

Full Changelog: v0.29.2...v0.29.3

Release v0.29.2

14 Jul 00:25
6bdc5c9
Compare
Choose a tag to compare

What's Changed

  • license-check: allow relative paths for extracted-source paths by @sil2100 in #2068
  • license-check: fix --format=simple by @sil2100 in #2076
  • Do not allow packages to provide libcuda.so.1 by @murraybd in #2074

Full Changelog: v0.29.1...v0.29.2