Class: Bundler::Audit::Database
- Inherits:
-
Object
- Object
- Bundler::Audit::Database
- Defined in:
- lib/bundler/audit/database.rb,
lib/bundler/audit/vendored_time.rb
Overview
Represents the directory of advisories, grouped by gem name and CVE number.
Constant Summary collapse
- URL =
Git URL of the ruby-advisory-db
'https://github.com/rubysec/ruby-advisory-db.git'- VENDORED_PATH =
Default path to the ruby-advisory-db
File.(File.join(File.dirname(__FILE__),'..','..','..','data','ruby-advisory-db'))
- USER_PATH =
Path to the user's copy of the ruby-advisory-db
File.join(Gem.user_home,'.local','share','ruby-advisory-db')
- VENDORED_REPO_CTIME =
Time.parse("Wed Oct 23 11:22:06 2013 -0400")
Instance Attribute Summary collapse
-
#path ⇒ Object
readonly
The path to the advisory database.
Class Method Summary collapse
-
.path ⇒ String
The default path for the database.
-
.update! ⇒ Boolean
Updates the ruby-advisory-db.
Instance Method Summary collapse
-
#advisories {|advisory| ... } ⇒ Enumerator
Enumerates over every advisory in the database.
-
#advisories_for(name) {|advisory| ... } ⇒ Enumerator
Enumerates over advisories for the given gem.
-
#check_gem(gem) {|advisory| ... } ⇒ Enumerator
Verifies whether the gem is effected by any advisories.
-
#each_advisory_path {|path| ... } ⇒ Object
protected
Enumerates over every advisory path in the database.
-
#each_advisory_path_for(name) {|path| ... } ⇒ Object
protected
Enumerates over the advisories for the given gem.
-
#initialize(path = self.class.path) ⇒ Database
constructor
Initializes the Advisory Database.
-
#inspect ⇒ String
Inspects the database.
-
#size ⇒ Integer
The number of advisories within the database.
-
#to_s ⇒ String
Converts the database to a String.
Constructor Details
#initialize(path = self.class.path) ⇒ Database
Initializes the Advisory Database.
55 56 57 58 59 60 61 |
# File 'lib/bundler/audit/database.rb', line 55 def initialize(path=self.class.path) unless File.directory?(path) raise(ArgumentError,"#{path.dump} is not a directory") end @path = path end |
Instance Attribute Details
#path ⇒ Object (readonly)
The path to the advisory database
44 45 46 |
# File 'lib/bundler/audit/database.rb', line 44 def path @path end |
Class Method Details
.path ⇒ String
The default path for the database.
69 70 71 72 73 74 75 76 77 78 79 80 |
# File 'lib/bundler/audit/database.rb', line 69 def self.path if File.directory?(USER_PATH) t1 = Dir.chdir(USER_PATH) { Time.parse(`git log --pretty="%cd" -1`) } t2 = VENDORED_REPO_CTIME if t1 >= t2 then USER_PATH else VENDORED_PATH end else VENDORED_PATH end end |
.update! ⇒ Boolean
Requires network access.
Updates the ruby-advisory-db.
93 94 95 96 97 98 99 100 101 |
# File 'lib/bundler/audit/database.rb', line 93 def self.update! if File.directory?(USER_PATH) Dir.chdir(USER_PATH) do system 'git', 'pull', 'origin', 'master' end else system 'git', 'clone', URL, USER_PATH end end |
Instance Method Details
#advisories {|advisory| ... } ⇒ Enumerator
Enumerates over every advisory in the database.
115 116 117 118 119 120 121 |
# File 'lib/bundler/audit/database.rb', line 115 def advisories(&block) return enum_for(__method__) unless block_given? each_advisory_path do |path| yield Advisory.load(path) end end |
#advisories_for(name) {|advisory| ... } ⇒ Enumerator
Enumerates over advisories for the given gem.
138 139 140 141 142 143 144 |
# File 'lib/bundler/audit/database.rb', line 138 def advisories_for(name) return enum_for(__method__,name) unless block_given? each_advisory_path_for(name) do |path| yield Advisory.load(path) end end |
#check_gem(gem) {|advisory| ... } ⇒ Enumerator
Verifies whether the gem is effected by any advisories.
162 163 164 165 166 167 168 169 170 |
# File 'lib/bundler/audit/database.rb', line 162 def check_gem(gem) return enum_for(__method__,gem) unless block_given? advisories_for(gem.name) do |advisory| if advisory.vulnerable?(gem.version) yield advisory end end end |
#each_advisory_path {|path| ... } ⇒ Object (protected)
Enumerates over every advisory path in the database.
213 214 215 |
# File 'lib/bundler/audit/database.rb', line 213 def each_advisory_path(&block) Dir.glob(File.join(@path,'gems','*','*.yml'),&block) end |
#each_advisory_path_for(name) {|path| ... } ⇒ Object (protected)
Enumerates over the advisories for the given gem.
229 230 231 |
# File 'lib/bundler/audit/database.rb', line 229 def each_advisory_path_for(name,&block) Dir.glob(File.join(@path,'gems',name,'*.yml'),&block) end |
#inspect ⇒ String
Inspects the database.
198 199 200 |
# File 'lib/bundler/audit/database.rb', line 198 def inspect "#<#{self.class}:#{self}>" end |
#size ⇒ Integer
The number of advisories within the database.
178 179 180 |
# File 'lib/bundler/audit/database.rb', line 178 def size each_advisory_path.count end |
#to_s ⇒ String
Converts the database to a String.
188 189 190 |
# File 'lib/bundler/audit/database.rb', line 188 def to_s @path end |