skopeo/vendor
Miloslav Trmač 0484557df8 Update to github.com/mtrmac/gpgme v0.1.2
This fixes CVE-2020-8945 by incorporating proglottis/gpgme#23 .

Other changes included by the rebase:
- Support for gpgme_off_t (~no-op on Linux)
- Wrapping a few more GPGME functions (irrelevant if we don't call them)

Given how invasive the CVE fix is (affecting basically all binding
code), it seems safer to just update the package (and be verifiably
equivalent with upstream) than to backport and try to back out the few
other changes.

Performed by updating vendor conf and
$ vndr github.com/mtrmac/gpgme

Signed-off-by: Miloslav Trmač <mitr@redhat.com>
2020-02-21 16:29:49 +01:00
..
github.com Update to github.com/mtrmac/gpgme v0.1.2 2020-02-21 16:29:49 +01:00
go4.org Vendor c/image after merging vrothberg/image:regsv2-docker 2018-11-29 13:28:04 +01:00
golang.org/x Add --no-creds flag to skopeo inspect 2019-05-03 13:30:33 -04:00
gopkg.in/yaml.v2 vendor latest containers/image 2019-02-16 10:08:35 +01:00
k8s.io/client-go vendor.conf: pin branches to releases or commits 2019-02-21 14:03:14 +01:00