Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

Upgrade controller-runtime to v0.11.1 and docker/distribution to v2.8.0 #583

Merged
merged 2 commits into from
Feb 18, 2022

Conversation

pjbgf
Copy link
Member

@pjbgf pjbgf commented Feb 17, 2022

Upgrade controller-runtime to v0.12.1
Fix for CVE-2022-21698 by upgrading the trasient dependency github.com/prometheus/client_golang.

Upgrade docker/distribution to v2.8.0
Fixes GHSA-qq97-vm5h-rrhg.

Module versions after the changes are applied:
image

@pjbgf pjbgf force-pushed the controller-runtime branch from 00ba691 to 78892f1 Compare February 17, 2022 08:20
@stefanprodan stefanprodan added the area/ci CI related issues and pull requests label Feb 17, 2022
Copy link
Member

@stefanprodan stefanprodan left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

Thanks @pjbgf

Paulo Gomes added 2 commits February 17, 2022 20:51
Fix for CVE-2022-21698 by upgrading the trasient dependency github.com/prometheus/client_golang.

Signed-off-by: Paulo Gomes <paulo.gomes@weave.works>
Fixes GHSA-qq97-vm5h-rrhg

Signed-off-by: Paulo Gomes <paulo.gomes@weave.works>
@pjbgf pjbgf force-pushed the controller-runtime branch from 78892f1 to 6e46d7f Compare February 17, 2022 20:51
@pjbgf pjbgf merged commit b65cf9d into fluxcd:main Feb 18, 2022
@pjbgf pjbgf deleted the controller-runtime branch February 18, 2022 09:12
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
area/ci CI related issues and pull requests
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants