tomsweeneyredhat
670947188f
[release-1.16] Fix CVE-2025-27144
...
Addresses CVE-2025-27144 by bumping github.com/go-jose/go-jose/v3 to
v3.0.4 and github.com/go-jose/go-jose/v4 to v4.0.5
Fixes: https://issues.redhat.com/browse/OCPBUGS-51251 ,
https://issues.redhat.com/browse/OCPBUGS-51252
[NO NEW TESTS NEEDED]
Signed-off-by: tomsweeneyredhat <tsweeney@redhat.com >
2025-03-03 21:12:23 -05:00
tomsweeneyredhat
a47ee582a3
[release-1.16] Bump c/common to v0.60.2, c/image to v5.32.2
...
Bumping to the latest version of c/common and c/image to get
the latest updates for zstd:chunked and the multiple
signature keys updates.
Signed-off-by: tomsweeneyredhat <tsweeney@redhat.com >
2024-08-21 14:43:05 -04:00
renovate[bot]
815ee59f7f
fix(deps): update module github.com/containers/common to v0.60.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-07-27 15:25:35 +00:00
renovate[bot]
299848119c
fix(deps): update module github.com/containers/image/v5 to v5.32.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-07-27 15:02:36 +00:00
renovate[bot]
379ea70912
fix(deps): update module github.com/containers/storage to v1.55.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-07-26 03:04:47 +00:00
renovate[bot]
527a8655a5
fix(deps): update module github.com/containers/ocicrypt to v1.2.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-07-01 15:18:10 +00:00
dependabot[bot]
68ff5596b1
Bump github.com/hashicorp/go-retryablehttp from 0.7.6 to 0.7.7
...
Bumps [github.com/hashicorp/go-retryablehttp](https://github.com/hashicorp/go-retryablehttp ) from 0.7.6 to 0.7.7.
- [Changelog](https://github.com/hashicorp/go-retryablehttp/blob/main/CHANGELOG.md )
- [Commits](https://github.com/hashicorp/go-retryablehttp/compare/v0.7.6...v0.7.7 )
---
updated-dependencies:
- dependency-name: github.com/hashicorp/go-retryablehttp
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2024-06-25 14:49:54 +00:00
renovate[bot]
f3af6d84a9
fix(deps): update module github.com/containers/image/v5 to v5.31.1
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-06-20 20:53:52 +00:00
renovate[bot]
2eb81856a4
fix(deps): update module github.com/spf13/cobra to v1.8.1
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-06-18 12:29:07 +00:00
renovate[bot]
25a4f08ee2
fix(deps): update module github.com/containers/common to v0.59.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-05-23 13:34:45 +00:00
renovate[bot]
3ccc89bb4a
fix(deps): update module github.com/containers/image/v5 to v5.31.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-05-21 19:44:54 +00:00
Miloslav Trmač
7649059a0d
Update c/image after https://github.com/containers/image/pull/2408
...
Signed-off-by: Miloslav Trmač <mitr@redhat.com >
2024-05-14 00:27:15 +02:00
renovate[bot]
017cdf3255
fix(deps): update module github.com/containers/common to v0.58.3
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-05-09 19:27:22 +00:00
renovate[bot]
31e471f9a3
chore(deps): update module github.com/docker/docker to v25.0.5+incompatible [security]
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-03-20 19:20:19 +00:00
renovate[bot]
78ddfd9dd5
fix(deps): update module github.com/containers/ocicrypt to v1.1.10
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-03-12 15:47:22 +00:00
renovate[bot]
549fc86253
chore(deps): update module github.com/go-jose/go-jose/v3 to v3.0.3 [security]
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-03-12 12:46:18 +00:00
renovate[bot]
2ffc4ec356
fix(deps): update module github.com/containers/common to v0.58.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-03-06 16:10:41 +00:00
renovate[bot]
086701bd75
fix(deps): update module github.com/containers/image/v5 to v5.30.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-03-05 15:28:48 +00:00
renovate[bot]
9644304892
fix(deps): update module github.com/containers/storage to v1.53.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-03-05 12:34:03 +00:00
renovate[bot]
4d80bf8c7d
fix(deps): update github.com/containers/image/v5 digest to faa4f4f
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-03-01 18:22:38 +00:00
renovate[bot]
8b6774b4a5
fix(deps): update module github.com/opencontainers/image-spec to v1.1.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-02-16 00:15:46 +00:00
Miloslav Trmač
c3e2b20299
Update c/image after https://github.com/containers/image/pull/2273
...
This is necessary so that c/image tests can pass.
Signed-off-by: Miloslav Trmač <mitr@redhat.com >
2024-02-08 00:19:58 +01:00
renovate[bot]
c941d813f3
Update github.com/containers/image/v5 to post-v5.29.2 main
...
Signed-off-by: Miloslav Trmač <mitr@redhat.com >
2024-01-31 19:02:12 +01:00
renovate[bot]
58ff9fdb27
fix(deps): update module github.com/containers/storage to v1.52.0
...
... and c/image/v5 to main
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
Signed-off-by: Miloslav Trmač <mitr@redhat.com >
2024-01-20 00:15:27 +01:00
Hussein Firas
177d4adb20
add kubasobon:semver changes
...
use single semver constraint
Signed-off-by: Hussein Firas <hussein.firas@loveholidays.com >
Signed-off-by: Miloslav Trmač <mitr@redhat.com >
2024-01-19 23:36:34 +01:00
renovate[bot]
4baf4fe9a2
fix(deps): update module github.com/opencontainers/image-spec to v1.1.0-rc6
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-01-18 20:09:33 +00:00
renovate[bot]
92edbcb7b9
fix(deps): update module github.com/containers/image/v5 to v5.29.1
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-01-17 22:50:25 +00:00
renovate[bot]
e4b67e78fd
fix(deps): update module github.com/containers/image/v5 to v5.29.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-11-16 20:07:57 +00:00
Miloslav Trmač
518181e595
Update c/image and c/common to latest
...
... to include https://github.com/containers/image/pull/2173
and https://github.com/containers/common/pull/1731 .
Signed-off-by: Miloslav Trmač <mitr@redhat.com >
2023-11-16 18:21:43 +01:00
renovate[bot]
56b96a4d37
fix(deps): update module github.com/containers/storage to v1.51.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-11-16 16:52:53 +00:00
renovate[bot]
50cffa386b
fix(deps): update module github.com/spf13/cobra to v1.8.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-11-04 23:05:35 +00:00
renovate[bot]
6ef8acff81
fix(deps): update github.com/containers/common digest to 3e5caa0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-11-01 15:29:29 +00:00
renovate[bot]
5307dd6604
fix(deps): update module github.com/containers/ocicrypt to v1.1.9
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-10-31 17:06:37 +00:00
Miloslav Trmač
03c9425235
Update github.com/klauspost/compress to v1.17.2
...
... to be consistent with the just-updated docker/docker's vendor.mod.
Signed-off-by: Miloslav Trmač <mitr@redhat.com >
2023-10-30 19:19:54 +01:00
renovate[bot]
91611a3ac9
chore(deps): update module github.com/docker/docker to v24.0.7+incompatible [security]
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-10-30 17:39:47 +00:00
renovate[bot]
611db7c3dd
fix(deps): update module github.com/docker/distribution to v2.8.3+incompatible
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-10-02 19:50:28 +00:00
Daniel J Walsh
5703482600
vendor of containers/common
...
Signed-off-by: Daniel J Walsh <dwalsh@redhat.com >
2023-09-20 08:18:32 -04:00
renovate[bot]
7db8fbde98
fix(deps): update module github.com/opencontainers/image-spec to v1.1.0-rc5
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-09-14 18:32:59 +00:00
renovate[bot]
4d921585f3
fix(deps): update module github.com/containers/common to v0.56.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-09-14 05:09:18 +00:00
renovate[bot]
32c8a05a24
fix(deps): update module github.com/containers/image/v5 to v5.28.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-09-13 19:19:23 +02:00
renovate[bot]
c1e7c974f8
fix(deps): update module github.com/containers/storage to v1.50.2
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-09-13 01:35:14 +00:00
renovate[bot]
9563e3b84b
fix(deps): update module github.com/containers/storage to v1.50.1
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-09-12 13:54:25 +00:00
renovate[bot]
897619f6b5
fix(deps): update github.com/containers/image/v5 digest to 58d5eb6
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-09-04 18:19:51 +00:00
renovate[bot]
3249973d37
fix(deps): update module github.com/containers/storage to v1.49.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-08-22 16:31:39 +00:00
renovate[bot]
78187ca816
fix(deps): update module github.com/containers/ocicrypt to v1.1.8
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-08-15 14:13:17 +00:00
Miloslav Trmač
4ee2946bbc
Update c/image after https://github.com/containers/image/pull/2070
...
> go get github.com/containers/image/v5@main
> make vendor
This moves c/image to a commit that includes both the work on main
that we were already vendoring, and the last tagged version 5.27.0.
That should prevent Renovate from proposing downgrades which fail tests:
- https://github.com/containers/skopeo/pull/2065
- https://github.com/containers/skopeo/pull/2066
Signed-off-by: Miloslav Trmač <mitr@redhat.com >
2023-08-14 20:24:51 +02:00
Miloslav Trmač
60ee543f7f
Update c/image for golang.org/x/exp
...
> go get github.com/containers/image/v5@main
> go mod tidy && go mod vendor
This updates c/image with a new version of x/exp.
That package has changed API in an incompatible way,
so just bumping x/exp (as in https://github.com/containers/skopeo/pull/2060 )
would break Skopeo builds.
This updates both c/image and x/exp in lockstep (and nothing
needs updating in Skopeo itself for the x/exp breakage).
Signed-off-by: Miloslav Trmač <mitr@redhat.com >
2023-08-02 22:41:44 +02:00
renovate[bot]
e9303879a8
Update module github.com/opencontainers/image-spec to v1.1.0-rc4
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-06-30 18:30:59 +00:00
renovate[bot]
3d8d212869
Update module github.com/containers/common to v0.55.1
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-06-30 14:18:42 +00:00
renovate[bot]
bfa04ea246
Update module github.com/containers/common to v0.54.0
...
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-06-28 23:02:07 +00:00