crudjt

Build log

nerves_system_x86_64

crudjt 1.0.1 · fail · run crudjt-1.0.1-1791089566996
496 of 496 lines
1Resolving Hex dependencies...2Resolution completed in 0.35s3Unchanged:4  circular_buffer 1.1.05  cowboy 2.19.06  cowlib 2.20.0 VULNERABLE!7    EEF-CVE-2026-43966 (MEDIUM)8    aka: CVE-2026-43966, GHSA-w4f7-4cxr-rv3c9    HTTP Response Splitting via Non-VCHAR Bytes in cow_http_struct_hd:escape_string/210    https://osv.dev/vulnerability/EEF-CVE-2026-439661112    EEF-CVE-2026-43969 (LOW)13    aka: CVE-2026-43969, GHSA-g2wm-735q-3f5614    Cookie Request Header Injection via Unvalidated Encoder in cow_cookie:cookie/115    https://osv.dev/vulnerability/EEF-CVE-2026-4396916  crudjt 1.0.117  elixir_make 0.10.018  flow 1.2.419  gen_stage 1.3.220  googleapis 0.1.021  grpc 0.11.5 VULNERABLE!22    EEF-CVE-2026-53430 (HIGH)23    aka: CVE-2026-53430, GHSA-6ccx-9c9f-327w24    grpc gzip decompression bomb in GRPC.Compressor.Gzip.decompress/125    https://osv.dev/vulnerability/EEF-CVE-2026-534302627    EEF-CVE-2026-48854 (HIGH)28    aka: CVE-2026-48854, GHSA-q8gf-9rvj-gmgj29    Unbounded request body accumulation causes memory exhaustion in elixir-grpc/grpc30    https://osv.dev/vulnerability/EEF-CVE-2026-488543132    EEF-CVE-2026-48853 (CRITICAL)33    aka: CVE-2026-48853, GHSA-grp7-v8xh-rj7h34    Remote code execution and denial of service via unsafe Erlang term deserialization in elixir-grpc/grpc35    https://osv.dev/vulnerability/EEF-CVE-2026-488533637    EEF-CVE-2026-48599 (HIGH)38    aka: CVE-2026-48599, GHSA-mwr4-5g34-j5cq39    Authorization bypass via path binding override in elixir-grpc/grpc HTTP transcoding40    https://osv.dev/vulnerability/EEF-CVE-2026-4859941  gun 2.6.0 VULNERABLE!42    GHSA-w4f7-4cxr-rv3c (MEDIUM)43    aka: CVE-2026-43966, EEF-CVE-2026-4396644    cowboy and gun affected by an HTTP Request/Response Splitting vulnerability45    https://osv.dev/vulnerability/GHSA-w4f7-4cxr-rv3c46  hpax 1.1.047  interactive_cmd 0.1.448  jason 1.4.549  mint 1.11.050  msgpax 2.4.051  nerves 2.0.0-pre.252  nerves_discovery 0.1.553  nerves_logging 0.2.454  nerves_runtime 0.13.1355  nerves_system_bbb 2.30.256  nerves_system_br 1.34.457  nerves_system_mangopi_mq_pro 0.17.258  nerves_system_qemu_aarch64 0.4.259  nerves_system_rpi0 2.1.260  nerves_system_rpi4 2.1.261  nerves_system_rpi5 2.1.262  nerves_system_trellis 0.5.063  nerves_system_x86_64 1.34.264  nerves_toolchain_aarch64_nerves_linux_gnu 15.3.165  nerves_toolchain_armv6_nerves_linux_gnueabihf 15.3.166  nerves_toolchain_armv7_nerves_linux_gnueabihf 15.3.167  nerves_toolchain_riscv64_nerves_linux_gnu 15.3.168  nerves_toolchain_x86_64_nerves_linux_musl 15.3.169  nerves_uevent 0.1.770  property_table 0.3.471  protobuf 0.17.072  ranch 2.3.073  ring_logger 0.11.774  rustler 0.29.175  tablet 0.3.376  telemetry 1.4.277  toml 0.7.078  toolshed 0.5.079  uboot_env 1.0.280* Getting crudjt (Hex package)81* Getting nerves (Hex package)82* Getting ring_logger (Hex package)83* Getting toolshed (Hex package)84* Getting nerves_runtime (Hex package)85* Getting nerves_system_bbb (Hex package)86* Getting nerves_system_mangopi_mq_pro (Hex package)87* Getting nerves_system_qemu_aarch64 (Hex package)88* Getting nerves_system_rpi0 (Hex package)89* Getting nerves_system_rpi4 (Hex package)90* Getting nerves_system_rpi5 (Hex package)91* Getting nerves_system_trellis (Hex package)92* Getting nerves_system_x86_64 (Hex package)93* Getting nerves_system_br (Hex package)94* Getting nerves_toolchain_x86_64_nerves_linux_musl (Hex package)95* Getting nerves_toolchain_armv7_nerves_linux_gnueabihf (Hex package)96* Getting nerves_toolchain_aarch64_nerves_linux_gnu (Hex package)97* Getting nerves_toolchain_armv6_nerves_linux_gnueabihf (Hex package)98* Getting nerves_toolchain_riscv64_nerves_linux_gnu (Hex package)99* Getting nerves_logging (Hex package)100* Getting nerves_uevent (Hex package)101* Getting uboot_env (Hex package)102* Getting elixir_make (Hex package)103* Getting property_table (Hex package)104* Getting circular_buffer (Hex package)105* Getting interactive_cmd (Hex package)106* Getting nerves_discovery (Hex package)107* Getting tablet (Hex package)108* Getting grpc (Hex package)109* Getting msgpax (Hex package)110* Getting protobuf (Hex package)111* Getting rustler (Hex package)112* Getting jason (Hex package)113* Getting toml (Hex package)114* Getting cowboy (Hex package)115* Getting cowlib (Hex package)116* Getting flow (Hex package)117* Getting googleapis (Hex package)118* Getting gun (Hex package)119* Getting mint (Hex package)120* Getting telemetry (Hex package)121* Getting hpax (Hex package)122* Getting gen_stage (Hex package)123* Getting ranch (Hex package)124Found packages with security advisories, see above for details125You have added/upgraded packages you could sponsor, run `mix hex.sponsor` to learn more126==> protobuf127Compiling 50 files (.ex)128Generated protobuf app129==> nerves_compatibility_test130===> Analyzing applications...131===> Compiling gun132==> googleapis133Compiling 45 files (.ex)134Generated googleapis app135==> flow136Compiling 9 files (.ex)137Generated flow app138==> grpc139Compiling 1 file (.erl)140warning: "xref: [exclude: ...]" in your mix.exs file is deprecated, instead use: "elixirc_options: [no_warn_undefined: ...]"141  (mix 1.20.3) lib/mix/tasks/compile.elixir.ex:243: Mix.Tasks.Compile.Elixir.xref_exclude_opts/2142  (mix 1.20.3) lib/mix/tasks/compile.elixir.ex:142: Mix.Tasks.Compile.Elixir.run/1143  (mix 1.20.3) lib/mix/task.ex:502: anonymous fn/3 in Mix.Task.run_task/5144  (mix 1.20.3) lib/mix/task.compiler.ex:299: Mix.Task.Compiler.run_compiler/2145  (mix 1.20.3) lib/mix/task.compiler.ex:287: Mix.Task.Compiler.run/4146  (mix 1.20.3) lib/mix/tasks/compile.all.ex:75: Mix.Tasks.Compile.All.do_run/2147148Compiling 65 files (.ex)149     warning: the variable "bytes_length" is accessed inside size(...) of a bitstring but it was defined outside of the match. You must precede it with the pin operator150     │151 346 │       <<head::binary-size(bytes_length), tail::binary>> -> {head, tail}152     │                           ~153     │154     └─ lib/grpc/client/adapters/mint/connection_process/connection_process.ex:346:27: GRPC.Client.Adapters.Mint.ConnectionProcess.chunk_body/2155156     warning: unused require Logger157     │158 113 │   require Logger159     │   ~160     │161     └─ lib/grpc/server.ex:113:3162163    warning: a struct for Protobuf.Protoc.Context is expected on struct update:164165        %Protobuf.Protoc.Context{166          ctx167          | syntax: syntax(desc.syntax),168            package: desc.package,169            dep_type_mapping: get_dep_type_mapping(ctx, desc.dependency, desc.name)170        }171172    but got type:173174        dynamic()175176    where "ctx" was given the type:177178        # type: dynamic()179        # from: lib/grpc/protoc/generator.ex:43:36180        ctx181182    when defining the variable "ctx", you must also pattern match on "%Protobuf.Protoc.Context{}"183184    type warning found at:185    │186 45 │       %Context{187    │       ~188    │189    └─ lib/grpc/protoc/generator.ex:45:7: GRPC.Protoc.Generator.generate_module_definitions/2190191    warning: Protobuf.Decoder.decode/2 is undefined or private. Did you mean:192193        * decode/3194195    │196 47 │     request = Protobuf.Decoder.decode(bin, Google.Protobuf.Compiler.CodeGeneratorRequest)197    │                                ~198    │199    └─ lib/grpc/protoc/cli.ex:47:32: GRPC.Protoc.CLI.main/1200201    warning: a struct for Protobuf.Protoc.Context is expected on struct update:202203        %Protobuf.Protoc.Context{ctx | plugins: String.split(plugins, "+")}204205    but got type:206207        dynamic()208209    where "ctx" was given the type:210211        # type: dynamic()212        # from: lib/grpc/protoc/cli.ex:86:43213        ctx214215    when defining the variable "ctx", you must also pattern match on "%Protobuf.Protoc.Context{}"216217    type warning found at:218    │219 87 │     %Context{ctx | plugins: String.split(plugins, "+")}220    │     ~221    │222    └─ lib/grpc/protoc/cli.ex:87:5: GRPC.Protoc.CLI.parse_param/2223224    warning: a struct for Protobuf.Protoc.Context is expected on struct update:225226        %Protobuf.Protoc.Context{ctx | gen_descriptors?: true}227228    but got type:229230        dynamic()231232    where "ctx" was given the type:233234        # type: dynamic()235        # from: lib/grpc/protoc/cli.ex:90:49236        ctx237238    when defining the variable "ctx", you must also pattern match on "%Protobuf.Protoc.Context{}"239240    type warning found at:241    │242 93 │         %Context{ctx | gen_descriptors?: true}243    │         ~244    │245    └─ lib/grpc/protoc/cli.ex:93:9: GRPC.Protoc.CLI.parse_param/2246247     warning: a struct for GRPC.Client.Connection is expected on struct update:248249         %GRPC.Client.Connection{250           base_state251           | lb_mod: lb_mod,252             lb_state: new_lb_state,253             virtual_channel: ch,254             real_channels: real_channels255         }256257     but got type:258259         dynamic(%{..., virtual_channel: term()})260261     where "base_state" was given the type:262263         # type: dynamic(%{..., virtual_channel: term()})264         # from: lib/grpc/client/connection.ex:417:11265         build_real_channels(addresses, base_state.virtual_channel, norm_opts, adapter)266267     when defining the variable "base_state", you must also pattern match on "%GRPC.Client.Connection{}"268269     type warning found at:270     │271 423 │            %__MODULE__{272     │            ~273     │274     └─ lib/grpc/client/connection.ex:423:12: GRPC.Client.Connection.build_balanced_state/6275276     warning: a struct for Protobuf.Protoc.Context is expected on struct update:277278         %Protobuf.Protoc.Context{ctx | package_prefix: package}279280     but got type:281282         dynamic()283284     where "ctx" was given the type:285286         # type: dynamic()287         # from: lib/grpc/protoc/cli.ex:100:50288         ctx289290     when defining the variable "ctx", you must also pattern match on "%Protobuf.Protoc.Context{}"291292     type warning found at:293     │294 104 │       %Context{ctx | package_prefix: package}295     │       ~296     │297     └─ lib/grpc/protoc/cli.ex:104:7: GRPC.Protoc.CLI.parse_param/2298299     warning: a struct for Protobuf.Protoc.Context is expected on struct update:300301         %Protobuf.Protoc.Context{ctx | transform_module: Module.concat([module])}302303     but got type:304305         dynamic()306307     where "ctx" was given the type:308309         # type: dynamic()310         # from: lib/grpc/protoc/cli.ex:108:51311         ctx312313     when defining the variable "ctx", you must also pattern match on "%Protobuf.Protoc.Context{}"314315     type warning found at:316     │317 109 │     %Context{ctx | transform_module: Module.concat([module])}318     │     ~319     │320     └─ lib/grpc/protoc/cli.ex:109:5: GRPC.Protoc.CLI.parse_param/2321322     warning: a struct for Protobuf.Protoc.Context is expected on struct update:323324         %Protobuf.Protoc.Context{ctx | one_file_per_module?: true}325326     but got type:327328         dynamic()329330     where "ctx" was given the type:331332         # type: dynamic()333         # from: lib/grpc/protoc/cli.ex:112:53334         ctx335336     when defining the variable "ctx", you must also pattern match on "%Protobuf.Protoc.Context{}"337338     type warning found at:339     │340 115 │         %Context{ctx | one_file_per_module?: true}341     │         ~342     │343     └─ lib/grpc/protoc/cli.ex:115:9: GRPC.Protoc.CLI.parse_param/2344345     warning: a struct for GRPC.Client.Connection is expected on struct update:346347         %GRPC.Client.Connection{348           base_state349           | virtual_channel: ch,350             real_channels: %{<<to_string(host)::binary, ":", to_string(port)::binary>> => ch}351         }352353     but got type:354355         dynamic(%{..., virtual_channel: term()})356357     where "base_state" was given the type:358359         # type: dynamic(%{..., virtual_channel: term()})360         # from: lib/grpc/client/connection.ex:441:8361         vc = base_state.virtual_channel362363     when defining the variable "base_state", you must also pattern match on "%GRPC.Client.Connection{}"364365     type warning found at:366     │367 446 │          %__MODULE__{368     │          ~369     │370     └─ lib/grpc/client/connection.ex:446:10: GRPC.Client.Connection.build_direct_state/4371372     warning: a struct for GRPC.Channel is expected on struct update:373374         %GRPC.Channel{virtual_channel | host: host, port: port}375376     but got type:377378         dynamic()379380     where "virtual_channel" was given the type:381382         # type: dynamic()383         # from: lib/grpc/client/connection.ex:457:39384         virtual_channel385386     when defining the variable "virtual_channel", you must also pattern match on "%GRPC.Channel{}"387388     type warning found at:389     │390 460 │              %Channel{virtual_channel | host: host, port: port},391     │              ~392     │393     └─ lib/grpc/client/connection.ex:460:14: GRPC.Client.Connection.build_real_channels/4394395    warning: Protobuf.Decoder.decode/2 is undefined or private. Did you mean:396397        * decode/3398399    │400 27 │     Protobuf.Decoder.decode(binary, module)401    │                      ~402    │403    └─ lib/grpc/codec/web_text.ex:27:22: GRPC.Codec.WebText.decode/2404405     warning: a struct for GRPC.Channel is expected on struct update:406407         %GRPC.Channel{vc | host: host, port: port}408409     but got type:410411         dynamic()412413     where "vc" was given the type:414415         # type: dynamic()416         # from: lib/grpc/client/connection.ex:525:29417         vc418419     when defining the variable "vc", you must also pattern match on "%GRPC.Channel{}"420421     type warning found at:422     │423 526 │     %Channel{vc | host: host, port: port}424     │     ~425     │426     └─ lib/grpc/client/connection.ex:526:5: GRPC.Client.Connection.connect_real_channel/5427428     warning: incompatible types given to pick_channel/1:429430         pick_channel(opts)431432     given types:433434         -dynamic(empty_list() or non_empty_list(term(), term()))-435436     but expected one of:437438         %GRPC.Channel{}439440     where "opts" was given the type:441442         # type: dynamic(empty_list() or non_empty_list(term(), term()))443         # from: lib/grpc/client/connection.ex:178:46444         Keyword.merge(opts, ref: ref)445446     type warning found at:447     │448 188 │             case pick_channel(opts) do449     │                  ~450     │451     └─ lib/grpc/client/connection.ex:188:18: GRPC.Client.Connection.connect/2452453     warning: the following clause will never match:454455         nil ->456457     because it attempts to match on the result of:458459         scheme460461     which has type:462463         dynamic(not false and not nil)464465     type warning found at:466     │467 132 │       nil ->468     │       ~~~~~~469     │470     └─ lib/grpc/client/resolver.ex:132: GRPC.Client.Resolver.resolve/1471472Generated grpc app473474The `:rustler` compiler has been deprecated since v0.22.0 and will be475removed in v1.0.476477To remove this warning, please consult the CHANGELOG for v0.22.0.478479==> crudjt480Compiling 10 files (.ex)481    warning: variable "output" is unused (there is a variable with the same name in the context, use the pin operator (^) to match on it or prefix this variable with underscore if it is not meant to be used)482    │483 87 │           output =484    │           ~485    │486    └─ lib/cache.ex:87:11: CRUDJT_Cache.process_cached_token/4487488489== Compilation error in file lib/crudjt.ex ==490** (ErlangError) Erlang error: :enoent491    (elixir 1.20.3) lib/system.ex:1141: System.cmd("cargo", ["metadata", "--format-version=1"], [cd: "native/crudjt"])492    (rustler 0.29.1) lib/rustler/compiler/config.ex:83: Rustler.Compiler.Config.metadata!/1493    (rustler 0.29.1) lib/rustler/compiler/config.ex:70: Rustler.Compiler.Config.build/1494    (rustler 0.29.1) lib/rustler/compiler.ex:9: Rustler.Compiler.compile_crate/2495    lib/crudjt.ex:6: (module)496could not compile dependency :crudjt, "mix compile" failed. Errors may have been logged above. You can recompile this dependency with "mix deps.compile crudjt --force", update it with "mix deps.update crudjt" or clean it with "mix deps.clean crudjt"