-
Notifications
You must be signed in to change notification settings - Fork 107
chore(deps): bump the security group across 1 directory with 17 updates #1709
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Merged
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the security group with 13 updates in the / directory: | Package | From | To | | --- | --- | --- | | [github.com/cilium/ebpf](https://github.com/cilium/ebpf) | `0.16.0` | `0.17.1` | | [github.com/containerd/cgroups/v3](https://github.com/containerd/cgroups) | `3.0.4` | `3.0.5` | | [github.com/jackc/pgx/v5](https://github.com/jackc/pgx) | `5.7.1` | `5.7.2` | | [github.com/microsoft/go-mssqldb](https://github.com/microsoft/go-mssqldb) | `1.7.2` | `1.8.0` | | [go.opentelemetry.io/otel](https://github.com/open-telemetry/opentelemetry-go) | `1.32.0` | `1.33.0` | | [go.opentelemetry.io/otel/sdk](https://github.com/open-telemetry/opentelemetry-go) | `1.32.0` | `1.33.0` | | [k8s.io/api](https://github.com/kubernetes/api) | `0.31.3` | `0.32.0` | | [k8s.io/apiextensions-apiserver](https://github.com/kubernetes/apiextensions-apiserver) | `0.31.3` | `0.32.0` | | [k8s.io/cli-runtime](https://github.com/kubernetes/cli-runtime) | `0.31.3` | `0.32.0` | | [golang.org/x/net](https://github.com/golang/net) | `0.31.0` | `0.33.0` | | [helm.sh/helm/v3](https://github.com/helm/helm) | `3.16.3` | `3.16.4` | | [k8s.io/kubelet](https://github.com/kubernetes/kubelet) | `0.31.3` | `0.32.0` | | [k8s.io/metrics](https://github.com/kubernetes/metrics) | `0.31.3` | `0.32.0` | Updates `github.com/cilium/ebpf` from 0.16.0 to 0.17.1 - [Release notes](https://github.com/cilium/ebpf/releases) - [Commits](cilium/ebpf@v0.16.0...v0.17.1) Updates `github.com/containerd/cgroups/v3` from 3.0.4 to 3.0.5 - [Release notes](https://github.com/containerd/cgroups/releases) - [Commits](containerd/cgroups@v3.0.4...v3.0.5) Updates `github.com/jackc/pgx/v5` from 5.7.1 to 5.7.2 - [Changelog](https://github.com/jackc/pgx/blob/master/CHANGELOG.md) - [Commits](jackc/pgx@v5.7.1...v5.7.2) Updates `github.com/microsoft/go-mssqldb` from 1.7.2 to 1.8.0 - [Release notes](https://github.com/microsoft/go-mssqldb/releases) - [Changelog](https://github.com/microsoft/go-mssqldb/blob/main/CHANGELOG.md) - [Commits](microsoft/go-mssqldb@v1.7.2...v1.8.0) Updates `go.opentelemetry.io/otel` from 1.32.0 to 1.33.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v1.32.0...v1.33.0) Updates `go.opentelemetry.io/otel/sdk` from 1.32.0 to 1.33.0 - [Release notes](https://github.com/open-telemetry/opentelemetry-go/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-go/blob/main/CHANGELOG.md) - [Commits](open-telemetry/opentelemetry-go@v1.32.0...v1.33.0) Updates `k8s.io/api` from 0.31.3 to 0.32.0 - [Commits](kubernetes/api@v0.31.3...v0.32.0) Updates `k8s.io/apiextensions-apiserver` from 0.31.3 to 0.32.0 - [Release notes](https://github.com/kubernetes/apiextensions-apiserver/releases) - [Commits](kubernetes/apiextensions-apiserver@v0.31.3...v0.32.0) Updates `k8s.io/apimachinery` from 0.31.3 to 0.32.0 - [Commits](kubernetes/apimachinery@v0.31.3...v0.32.0) Updates `k8s.io/apiserver` from 0.31.3 to 0.32.0 - [Commits](kubernetes/apiserver@v0.31.3...v0.32.0) Updates `k8s.io/cli-runtime` from 0.31.3 to 0.32.0 - [Commits](kubernetes/cli-runtime@v0.31.3...v0.32.0) Updates `k8s.io/client-go` from 0.31.3 to 0.32.0 - [Changelog](https://github.com/kubernetes/client-go/blob/master/CHANGELOG.md) - [Commits](kubernetes/client-go@v0.31.3...v0.32.0) Updates `golang.org/x/net` from 0.31.0 to 0.33.0 - [Commits](golang/net@v0.31.0...v0.33.0) Updates `helm.sh/helm/v3` from 3.16.3 to 3.16.4 - [Release notes](https://github.com/helm/helm/releases) - [Commits](helm/helm@v3.16.3...v3.16.4) Updates `k8s.io/kubelet` from 0.31.3 to 0.32.0 - [Commits](kubernetes/kubelet@v0.31.3...v0.32.0) Updates `k8s.io/metrics` from 0.31.3 to 0.32.0 - [Commits](kubernetes/metrics@v0.31.3...v0.32.0) Updates `k8s.io/utils` from 0.0.0-20240711033017-18e509b52bc8 to 0.0.0-20241104100929-3ea5e8cea738 - [Commits](https://github.com/kubernetes/utils/commits) --- updated-dependencies: - dependency-name: github.com/cilium/ebpf dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: github.com/containerd/cgroups/v3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/jackc/pgx/v5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: github.com/microsoft/go-mssqldb dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: go.opentelemetry.io/otel dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: go.opentelemetry.io/otel/sdk dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/api dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/apiextensions-apiserver dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/apimachinery dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/apiserver dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/cli-runtime dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/client-go dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: golang.org/x/net dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: helm.sh/helm/v3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security - dependency-name: k8s.io/kubelet dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/metrics dependency-type: direct:production update-type: version-update:semver-minor dependency-group: security - dependency-name: k8s.io/utils dependency-type: direct:production update-type: version-update:semver-patch dependency-group: security ... Signed-off-by: dependabot[bot] <[email protected]>
xavpaice
approved these changes
Dec 30, 2024
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the security group with 13 updates in the / directory:
0.16.00.17.13.0.43.0.55.7.15.7.21.7.21.8.01.32.01.33.01.32.01.33.00.31.30.32.00.31.30.32.00.31.30.32.00.31.00.33.03.16.33.16.40.31.30.32.00.31.30.32.0Updates
github.com/cilium/ebpffrom 0.16.0 to 0.17.1Release notes
Sourced from github.com/cilium/ebpf's releases.
... (truncated)
Commits
e439d37prog: fix shadowing log size variable in verifier log retry loop228bb4eexamples: tcx: use Variable API580ff21bpf2go: generate Go types used in global variables1e8f079bpf2go: generate assignment structs for Variables and VariableSpecsc37b7afbpf2go: test: remove unused typesEqualComparer function97cfce5map: automatically set CPUMap MaxEntries based on possible CPUse8b05c5prog: add ProgramOptions.LogSizeStart to obtain full log after verifier bugf283106internal: add Between function for clamping a value between min and max6546014README.md: add pin package to the overview60405bbexamples: annotate ringbuf and perf event arrays with value type informationUpdates
github.com/containerd/cgroups/v3from 3.0.4 to 3.0.5Release notes
Sourced from github.com/containerd/cgroups/v3's releases.
Commits
bce3c7eMerge pull request #358 from thaJeztah/handle_domain_threaded2236eb0cgroup2: Manager.Delete: handle both "threaded" and "domain threaded"d4e976dMerge pull request #355 from akhilerm/return-error-from-inotify05bb490add InotifyInit err to custom err messageUpdates
github.com/jackc/pgx/v5from 5.7.1 to 5.7.2Changelog
Sourced from github.com/jackc/pgx/v5's changelog.
Commits
24fbe35Create changelog for v5.7.23a1593bMerge pull request #2198 from alexandear/fix-nilness9d851d7Fix integration benchmarksdacffdcMerge pull request #2196 from alexandear/docs-improve-linksbc7c840Merge pull request #2195 from LucasHild/master0436851Handle errors in generate_certs2532927Improve links in READMEad87d47Merge pull request #2194 from alexandear/refactor/pgconn-tests7cf7bc6Simplify pgconn tests by using T.TempDir3e6c719Merge pull request #2189 from pankona/update-cryptoUpdates
github.com/microsoft/go-mssqldbfrom 1.7.2 to 1.8.0Release notes
Sourced from github.com/microsoft/go-mssqldb's releases.
Commits
dad23d2Feat: Add tracing data to prelogin and login7 packets (#228)2521238Bump github.com/Azure/azure-sdk-for-go/sdk/azidentity (#229)4b95a0fFix error checks during certificatePath reading and parsing in azuread (#227)573423dFix: Connection not closed when database name is incorrect #173 fix (#224)02deabfSupport for UDT (hierarchyid, geometry and geography) (#216)9b84d9bVulnerabilty dependency x/net (#203)2395b78Migrate managed identity example to azidentity (#199)Updates
go.opentelemetry.io/otelfrom 1.32.0 to 1.33.0Changelog
Sourced from go.opentelemetry.io/otel's changelog.
Commits
8c38f80Release v1.33.0 (#6035)aa95895Fix sdk/log record attr value limit (#6032)58fdf2aCache successful requests in lychee (#6030)ac386f3fix(deps): update golang.org/x/exp digest to 1829a12 (#6031)dd83cacchore(deps): update googleapis to e6fa225 (#6028)de4ff31fix(deps): update github.com/opentracing-contrib/go-grpc/test digest to ca80a...0598daesdk/metric: Add experimental Enabled method to synchronous instruments (#6016)3bb224bchore(deps): update google.golang.org/genproto/googleapis/rpc digest to a4fef...13da554chore(deps): update codecov/codecov-action action to v5.1.1 (#6026)b4a91a2chore(deps): update module go.opentelemetry.io/auto/sdk to v1.1.0 (#6025)Updates
go.opentelemetry.io/otel/sdkfrom 1.32.0 to 1.33.0Changelog
Sourced from go.opentelemetry.io/otel/sdk's changelog.
Commits
8c38f80Release v1.33.0 (#6035)aa95895Fix sdk/log record attr value limit (#6032)58fdf2aCache successful requests in lychee (#6030)ac386f3fix(deps): update golang.org/x/exp digest to 1829a12 (#6031)dd83cacchore(deps): update googleapis to e6fa225 (#6028)de4ff31fix(deps): update github.com/opentracing-contrib/go-grpc/test digest to ca80a...0598daesdk/metric: Add experimental Enabled method to synchronous instruments (#6016)3bb224bchore(deps): update google.golang.org/genproto/googleapis/rpc digest to a4fef...13da554chore(deps): update codecov/codecov-action action to v5.1.1 (#6026)b4a91a2chore(deps): update module go.opentelemetry.io/auto/sdk to v1.1.0 (#6025)Updates
k8s.io/apifrom 0.31.3 to 0.32.0Commits
e622342Update dependencies to v0.32.0 tagb0543a3Merge remote-tracking branch 'origin/master' into release-1.32f6bae9aDrop use of winreadlinkvolume godebug optionea815d5Merge remote-tracking branch 'origin/master' into release-1.32c331a79Revert to go1.22 windows filesystem stdlib behaviorf8e5e36Merge pull request #128407 from ndixita/pod-level-resources84e0db8Merge pull request #127857 from Jefftree/cle-v1alpha2cbaf5a0Merge pull request #128686 from thockin/take_over_pr-125233a503a4fMerge pull request #128687 from tallclair/allocated-status3f43b5aMerge pull request #128240 from LionelJouin/KEP-4817Updates
k8s.io/apiextensions-apiserverfrom 0.31.3 to 0.32.0Commits
7215469Update dependencies to v0.32.0 tag887679fMerge remote-tracking branch 'origin/master' into release-1.32bd027a4Drop use of winreadlinkvolume godebug option919f42bMerge remote-tracking branch 'origin/master' into release-1.32a4e1034Revert to go1.22 windows filesystem stdlib behavior89d6021Run codegen2a91f8aMerge pull request #127513 from tkashem/delete-undecryptable06dc95aapi: run codegen19f7123Merge pull request #128639 from jpbetz/fix-cost-test66631b6Fix flake in CEL cost stability testsUpdates
k8s.io/apimachineryfrom 0.31.3 to 0.32.0Commits
59e9003Merge remote-tracking branch 'origin/master' into release-1.32639247cDrop use of winreadlinkvolume godebug option220d7c3Merge remote-tracking branch 'origin/master' into release-1.32c199d3bRevert to go1.22 windows filesystem stdlib behavior16af2ffimplement unsafe deletion, and wire it6ff8305api: run codegenca9b8b2api: add a new field to meta/v1 DeleteOptionsd941d9fMerge pull request #128503 from benluddy/cbor-codecs-featuregate3b4250fWire serving codecs to CBOR feature gate.daaad09Merge pull request #128501 from benluddy/watch-cbor-seqUpdates
k8s.io/apiserverfrom 0.31.3 to 0.32.0Commits
9d86305Update dependencies to v0.32.0 tag34b7cc9Merge remote-tracking branch 'origin/master' into release-1.325945d46Drop use of winreadlinkvolume godebug optionadee259Merge remote-tracking branch 'origin/master' into release-1.32fbba927Merge pull request #129081 from stlaz/fg_remote_uidb3c0cb6Merge remote-tracking branch 'origin/master' into release-1.32bf14697Revert to go1.22 windows filesystem stdlib behaviorf76e404featuregate UID in RequestHeader authenticator1f546eePossible fix for alpha CI jobs failing with AllowUnsafeMalformedObjectDeletio...3423727Merge pull request #127581 from richabanker/flagz-apiserverUpdates
k8s.io/cli-runtimefrom 0.31.3 to 0.32.0Commits
49dbc54Update dependencies to v0.32.0 tagf8c45beMerge remote-tracking branch 'origin/master' into release-1.32f750fa0Drop use of winreadlinkvolume godebug option9da77ecMerge remote-tracking branch 'origin/master' into release-1.3215e0912Revert to go1.22 windows filesystem stdlib behavior3a2a8b4hack/pin-dependency.sh k8s.io/kube-openapi 32ad38e42d3faf1ce94eb29f4ea6d76333...8ceafc0Merge pull request #128396 from ritazh/deprecate-EnforceMountableSecretsAnnot...f78772ddeprecate EnforceMountableSecretsAnnotation in 1.3244c3029Merge pull request #128507 from dims/use-k8s.io/utils/lru-instead-of-github.c...16fbedbUse k8s.io/utils/lru instead of github.com/golang/groupcache/lruUpdates
k8s.io/client-gofrom 0.31.3 to 0.32.0Commits
0d55461Update dependencies to v0.32.0 tag4765adeMerge remote-tracking branch 'origin/master' into release-1.32692a511Drop use of winreadlinkvolume godebug option9df5099Merge remote-tracking branch 'origin/master' into release-1.32120beb2Revert to go1.22 windows filesystem stdlib behavior55d23e2Align fake client-go clients with the main interface646e79bRun codegenc475fe0Generify fake clientsets955401cMerge pull request #128407 from ndixita/pod-level-resourceseddb107Merge pull request #127857 from Jefftree/cle-v1alpha2Updates
golang.org/x/netfrom 0.31.0 to 0.33.0Commits
dfc720dgo.mod: update golang.org/x dependencies8e66b04html: use strings.EqualFold instead of lowering ourselvesb935f7bhtml: avoid endless loop on error token9af49efroute: remove unused sizeof* consts6705db9quic: clean up crypto streams when dropping packet protection keys4ef7588quic: handle ACK frame in packet which drops number space552d8acRevert "route: change from syscall to x/sys/unix"13a7c01Revert "route: remove unused sizeof* consts on freebsd"285e1cfgo.mod: update golang.org/x dependenciesd0a1049route: remove unused sizeof* consts on freebsdUpdates
helm.sh/helm/v3from 3.16.3 to 3.16.4Release notes
Sourced from helm.sh/helm/v3's releases.
Commits
7877b45Bump golang.org/x/crypto from 0.30.0 to 0.31.0848e586Bump the k8s-io group with 7 updatesUpdates
k8s.io/kubeletfrom 0.31.3 to 0.32.0Commits
ab6d6c0Update dependencies to v0.32.0 tag78330cbMerge remote-tracking branch 'origin/master' into release-1.329aa82a6Drop use of winreadlinkvolume godebug option351b167Merge remote-tracking branch 'origin/master' into release-1.3297885c0Revert to go1.22 windows filesystem stdlib behaviorde4c476DRA kubelet: use unique protobuf package name3b14f64KEP-4603: Node specific kubelet config for maximum backoff down to 1 second (...353a4bcMerge pull request #126503 from skitt/generic-fake-client35e9b33Generify fake clientsets2466f75Merge pull request #128646 from pohly/dra-kubelet-separate-beta-apiUpdates
k8s.io/metricsfrom 0.31.3 to 0.32.0Commits
747abc1Update dependencies to v0.32.0 tag5d76b1aMerge remote-tracking branch 'origin/master' into release-1.3254a1c04Drop use of winreadlinkvolume godebug optionf4ebf54Merge remote-tracking branch 'origin/master' into release-1.32140b464Revert to go1.22 windows filesystem stdlib behavior5197509Run codegen0eafb3fMerge pull request #128580 from jpbetz/bump-kube-openapi4175bc6hack/pin-dependency.sh k8s.io/kube-openapi 32ad38e42d3faf1ce94eb29f4ea6d76333...7658283Merge pull request #128507 from dims/use-k8s.io/utils/lru-instead-of-github.c...3f92891Use k8s.io/utils/lru instead of github.com/golang/groupcache/lruUpdates
k8s.io/utilsfrom 0.0.0-20240711033017-18e509b52bc8 to 0.0.0-20241104100929-3ea5e8cea738Commits
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions