GitHub/WorkFlow: fix for CVE-2020-15228

According the CVE-2020-15228 documented in:
 - https://github.com/advisories/GHSA-mfwh-5m23-j46w
 - https://nvd.nist.gov/vuln/detail/CVE-2020-15228

the `set-env` commands will be disabled in the near future
and should be replaced by:
    echo "FOO=BAR" >> $GITHUB_ENV

idem for `add-path`, should be replaced by:
    echo "/path/to/add" >> $GITHUB_PATH

Change-Id: I725c9ccd861a0d1580ac22491b6d716ec65973d1
Signed-off-by: Tarek BOCHKATI <tarek.bouchkati@gmail.com>
Reviewed-on: http://openocd.zylin.com/5866
Tested-by: jenkins
Reviewed-by: Antonio Borneo <borneo.antonio@gmail.com>
This commit is contained in:
Tarek BOCHKATI 2020-11-02 16:31:27 +01:00 committed by Antonio Borneo
parent 2edcb065d4
commit 6dbfdcd00f
1 changed files with 5 additions and 5 deletions

View File

@ -24,7 +24,7 @@ jobs:
mkdir -p $DL_DIR && cd $DL_DIR mkdir -p $DL_DIR && cd $DL_DIR
wget "https://github.com/libusb/libusb/releases/download/v${LIBUSB1_VER}/libusb-${LIBUSB1_VER}.tar.bz2" wget "https://github.com/libusb/libusb/releases/download/v${LIBUSB1_VER}/libusb-${LIBUSB1_VER}.tar.bz2"
tar -xjf libusb-${LIBUSB1_VER}.tar.bz2 tar -xjf libusb-${LIBUSB1_VER}.tar.bz2
echo "::set-env name=LIBUSB1_SRC::$PWD/libusb-${LIBUSB1_VER}" echo "LIBUSB1_SRC=$PWD/libusb-${LIBUSB1_VER}" >> $GITHUB_ENV
- name: Prepare hidapi - name: Prepare hidapi
env: env:
HIDAPI_VER: 0.9.0 HIDAPI_VER: 0.9.0
@ -34,7 +34,7 @@ jobs:
tar -xzf hidapi-${HIDAPI_VER}.tar.gz tar -xzf hidapi-${HIDAPI_VER}.tar.gz
cd hidapi-hidapi-${HIDAPI_VER} cd hidapi-hidapi-${HIDAPI_VER}
./bootstrap ./bootstrap
echo "::set-env name=HIDAPI_SRC::$PWD" echo "HIDAPI_SRC=$PWD" >> $GITHUB_ENV
- name: Prepare libftdi - name: Prepare libftdi
env: env:
LIBFTDI_VER: 1.4 LIBFTDI_VER: 1.4
@ -42,7 +42,7 @@ jobs:
mkdir -p $DL_DIR && cd $DL_DIR mkdir -p $DL_DIR && cd $DL_DIR
wget "http://www.intra2net.com/en/developer/libftdi/download/libftdi1-${LIBFTDI_VER}.tar.bz2" wget "http://www.intra2net.com/en/developer/libftdi/download/libftdi1-${LIBFTDI_VER}.tar.bz2"
tar -xjf libftdi1-${LIBFTDI_VER}.tar.bz2 tar -xjf libftdi1-${LIBFTDI_VER}.tar.bz2
echo "::set-env name=LIBFTDI_SRC::$PWD/libftdi1-${LIBFTDI_VER}" echo "LIBFTDI_SRC=$PWD/libftdi1-${LIBFTDI_VER}" >> $GITHUB_ENV
- name: Prepare capstone - name: Prepare capstone
env: env:
CAPSTONE_VER: 4.0.2 CAPSTONE_VER: 4.0.2
@ -78,8 +78,8 @@ jobs:
# prepare the artifact # prepare the artifact
ARTIFACT="openocd-${OPENOCD_TAG}-${HOST}.tar.gz" ARTIFACT="openocd-${OPENOCD_TAG}-${HOST}.tar.gz"
tar -czf $ARTIFACT * tar -czf $ARTIFACT *
echo "::set-env name=ARTIFACT_NAME::$ARTIFACT" echo "ARTIFACT_NAME=$ARTIFACT" >> $GITHUB_ENV
echo "::set-env name=ARTIFACT_PATH::$PWD/$ARTIFACT" echo "ARTIFACT_PATH=$PWD/$ARTIFACT" >> $GITHUB_ENV
- name: Publish OpenOCD packaged for windows - name: Publish OpenOCD packaged for windows
uses: actions/upload-artifact@v1 uses: actions/upload-artifact@v1
with: with: