Update dependency org.xerial:sqlite-jdbc to v3.41.2.2 [SECURITY] #81
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
3.34.0
->3.41.2.2
GitHub Vulnerability Alerts
CVE-2023-32697
Summary
Sqlite-jdbc addresses a remote code execution vulnerability via JDBC URL.
Impacted versions :
3.6.14.1-3.41.2.1
References
https://github.com/xerial/sqlite-jdbc/releases/tag/3.41.2.2
Release Notes
xerial/sqlite-jdbc (org.xerial:sqlite-jdbc)
v3.41.2.2
Compare Source
Changelog
🚀 Features
jdbc
native-image
🐛 Fixes
🛠 Build
deps
deps-dev
unscoped
📝 Documentation
Contributors
We'd like to thank the following people for their contributions:
Andrew Pikler, Andy Cheung, Gauthier, Gauthier Roebroeck, Javier Goday, Kristof, Taro L. Saito
v3.41.2.1
Changelog
🚀 Features
sqlite
🛠 Build
jreleaser
Contributors
We'd like to thank the following people for their contributions:
Gauthier Roebroeck
v3.41.0.1
Compare Source
Changelog
🚀 Features
🐛 Fixes
🛠 Build
Contributors
We'd like to thank the following people for their contributions:
Gauthier, Gauthier Roebroeck, Kristof, Sualeh Fatehi, Talha Javed, mruddy
v3.41.0.0
Compare Source
Changelog
🚀 Features
🐛 Fixes
🛠 Build
Contributors
We'd like to thank the following people for their contributions:
Gauthier Roebroeck
v3.40.1.0
Compare Source
Changelog
🚀 Features
🐛 Fixes
🔄️ Changes
🛠 Build
📝 Documentation
Contributors
We'd like to thank the following people for their contributions:
Andrew Pikler, Gauthier, Gauthier Roebroeck, Kristof, Sebastiano Galeazzo, pyckle, 谭九鼎
v3.40.0.0
Compare Source
Changelog
🚀 Features
🛠 Build
📝 Documentation
Contributors
We'd like to thank the following people for their contributions:
Gauthier, Gauthier Roebroeck, github-actions
v3.39.4.1
Compare Source
Changelog
🐛 Fixes
🛠 Build
📝 Documentation
Contributors
We'd like to thank the following people for their contributions:
Gauthier, Gauthier Roebroeck, GitHub, Petr Hadraba, dependabot[bot], github-actions
v3.39.4.0
Compare Source
Changelog
🚀 Features
🐛 Fixes
🔄️ Changes
🛠 Build
📝 Documentation
Contributors
We'd like to thank the following people for their contributions:
Gauthier Roebroeck, GitHub, Petr Hadraba, Valentin Koeltgen, github-actions
v3.39.3.0
Compare Source
Changelog
🚀 Features
🐛 Fixes
🛠 Build
📝 Documentation
Contributors
We'd like to thank the following people for their contributions:
GitHub, Gauthier Roebroeck, Martin, github-actions, Gauthier, martin.haeusler
v3.39.2.1
Compare Source
Changelog
🚀 Features
🐛 Fixes
🔄️ Changes
🛠 Build
📝 Documentation
Bumps actions/setup-java from 2 to 3.
Instead of relying of changing ifdefs use the variable declaration as anchor
provide valid COLUMN_SIZE and DECIMAL_DIGITS values for columns queried using
Contributors
We'd like to thank the following people for their contributions:
Sebastian Baumhekel, dependabot[bot], Michael Osipov, GitHub, Gauthier Roebroeck, github-actions, Gauthier, Andrew Pikler
v3.39.2.0
Compare Source
Changelog
🛠 Build
📝 Documentation
fix memory leak when calling Connection.getMetaData()
UNKNOWN_ERROR
(#689)Show numeric code instead of UNKNOWN_ERROR
Removed outdated version of OSInfo.class
Use of setDefaultUseCaches impacts all URLClassLoaders and HttpURLConnections, which can lead to erratic behavior of non-sqlite components running on a system since the variable is static.
Closes: #450
-it
/-ti
flags from docker calls (#654)These control whether to run docker in interactive mode and attach the tty,
Contributors
We'd like to thank the following people for their contributions:
GitHub, Gauthier Roebroeck, Andy-2639, Andrey.Tarashevskiy, github-actions, Villena Guillaume, Carl Dea, Gauthier, Changwei Miao, Andrew Pikler, mdavidsaver, Lukas, Taro L. Saito, Tim McCormack, Michael Osipov, Aurora Lahtela, pyckle, Roman Parshikov
v3.36.0.3
Compare Source
v3.36.0.2
Compare Source
New Features
Newly Supported OS and Arch
Other Intenal Fixes
Special thanks to @gotson for adding collation support and build configurations for more OS and CPU types!
v3.36.0.1
Compare Source
v3.36.0
Compare Source
v3.35.0.1
Compare Source
(Note: Don't use 3.35.0 if you are Apple Silicon (M1) user. 3.35.0 failed to include M1 binary)
v3.35.0
Compare Source
Configuration
📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate. View repository job log here.