Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Upgrade to Go 1.22.4 #260

Merged
merged 1 commit into from
Jun 11, 2024
Merged

Upgrade to Go 1.22.4 #260

merged 1 commit into from
Jun 11, 2024

Conversation

nacx
Copy link
Collaborator

@nacx nacx commented Jun 10, 2024

There are some low CVEs reported in Go 1.22.2. This PR upgrades to the latest Go version to see if they're already fixed there.
https://github.com/istio-ecosystem/authservice/security/code-scanning

There are some low CVEs reported in Go 1.22.2. This PR upgrades to the latest Go version to see if they're already fixed there.

Signed-off-by: Ignasi Barrera <[email protected]>
@istio-testing istio-testing merged commit 9a33557 into main Jun 11, 2024
13 checks passed
@nacx nacx deleted the upgrade-go branch June 11, 2024 08:53
mjnagel added a commit to defenseunicorns/uds-core that referenced this pull request Sep 17, 2024
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
|
[cgr.dev/du-uds-defenseunicorns/authservice-fips](https://images.chainguard.dev/directory/image/authservice-fips/overview)
([source](https://github.com/chainguard-images/images-private/tree/HEAD/images/authservice-fips))
| patch | `1.0.1` -> `1.0.2` |
|
[ghcr.io/istio-ecosystem/authservice/authservice](https://github.com/istio-ecosystem/authservice)
| patch | `1.0.1` -> `1.0.2` |
|
[registry1.dso.mil/ironbank/istio-ecosystem/authservice](https://github.com/istio-ecosystem/authservice)
([source](https://repo1.dso.mil/dsop/istio-ecosystem/authservice)) |
patch | `1.0.1-ubi9` -> `1.0.2-ubi9` |

---

### Release Notes

<details>
<summary>istio-ecosystem/authservice
(ghcr.io/istio-ecosystem/authservice/authservice)</summary>

###
[`v1.0.2`](https://github.com/istio-ecosystem/authservice/releases/tag/v1.0.2)

[Compare
Source](https://github.com/istio-ecosystem/authservice/compare/v1.0.1...v1.0.2)

This is a small bugfix release that includes fixes for several CVEs.

##### What's Changed

- Upgrade to Go 1.22.4 by
[@&#8203;nacx](https://github.com/nacx) in
[istio-ecosystem/authservice#260
- Upgrade to Go 1.22.5 to fix CVE-2024-24791 by
[@&#8203;nacx](https://github.com/nacx) in
[istio-ecosystem/authservice#261
- Upgrade to Go 1.23.1 by
[@&#8203;nacx](https://github.com/nacx) in
[istio-ecosystem/authservice#264

**Full Changelog**:
istio-ecosystem/authservice@v1.0.1...v1.0.2

</details>

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Disabled by config. Please merge this manually once you
are satisfied.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about these
updates again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR was generated by [Mend Renovate](https://mend.io/renovate/).
View the [repository job
log](https://developer.mend.io/github/defenseunicorns/uds-core).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiIzOC41OS4yIiwidXBkYXRlZEluVmVyIjoiMzguNzQuMSIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOltdfQ==-->

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
Co-authored-by: Micah Nagel <[email protected]>
This pull request was closed.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants