From 257a604e09ce3e191b88711210d532ab5500cd6c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 17 Dec 2019 00:20:42 +0000 Subject: [PATCH] fix: upgrade ssh2 from 0.6.1 to 0.8.7 Snyk has created this PR to upgrade ssh2 from 0.6.1 to 0.8.7. See this package in NPM: https://www.npmjs.com/package/ssh2 See this project in Snyk: https://app.snyk.io/org/lifecycle/project/b88febbd-1bbc-4478-b59b-b6be05f3f7d0?utm_source=github&utm_medium=upgrade-pr --- package.json | 2 +- yarn.lock | 34 ++++++++++++++++++++++------------ 2 files changed, 23 insertions(+), 13 deletions(-) diff --git a/package.json b/package.json index 803bd58..7d2ed92 100644 --- a/package.json +++ b/package.json @@ -13,7 +13,7 @@ "keypair": "1.0.1", "node-forge": "0.7.5", "smooth-progress": "1.1.0", - "ssh2": "0.6.1", + "ssh2": "0.8.7", "temp": "0.8.3", "uuid": "3.2.1" }, diff --git a/yarn.lock b/yarn.lock index f3a7fa4..e7aaf59 100644 --- a/yarn.lock +++ b/yarn.lock @@ -61,6 +61,13 @@ asn1@~0.2.0: version "0.2.3" resolved "https://registry.yarnpkg.com/asn1/-/asn1-0.2.3.tgz#dac8787713c9966849fc8180777ebe9c1ddf3b86" +bcrypt-pbkdf@^1.0.2: + version "1.0.2" + resolved "https://registry.yarnpkg.com/bcrypt-pbkdf/-/bcrypt-pbkdf-1.0.2.tgz#a4301d389b6a43f9b67ff3ca11a3f6637e360e9e" + integrity sha1-pDAdOJtqQ/m2f/PKEaP2Y342Dp4= + dependencies: + tweetnacl "^0.14.3" + cacheable-request@^2.1.1: version "2.1.4" resolved "https://registry.yarnpkg.com/cacheable-request/-/cacheable-request-2.1.4.tgz#0d808801b6342ad33c91df9d0b44dc09b91e5c3d" @@ -502,10 +509,6 @@ safe-buffer@^5.1.1, safe-buffer@~5.1.0, safe-buffer@~5.1.1: version "5.1.2" resolved "https://registry.yarnpkg.com/safe-buffer/-/safe-buffer-5.1.2.tgz#991ec69d296e0313747d59bdfd2b745c35f8828d" -semver@^5.1.0: - version "5.3.0" - resolved "https://registry.yarnpkg.com/semver/-/semver-5.3.0.tgz#9b2ce5d3de02d17c6012ad326aa6b4d0cf54f94f" - semver@^5.5.0: version "5.5.0" resolved "https://registry.yarnpkg.com/semver/-/semver-5.5.0.tgz#dc4bbc7a6ca9d916dee5d43516f0092b58f7b8ab" @@ -541,19 +544,21 @@ sprintf-js@^1.0.3: version "1.1.1" resolved "https://registry.yarnpkg.com/sprintf-js/-/sprintf-js-1.1.1.tgz#36be78320afe5801f6cea3ee78b6e5aab940ea0c" -ssh2-streams@~0.2.0: - version "0.2.1" - resolved "https://registry.yarnpkg.com/ssh2-streams/-/ssh2-streams-0.2.1.tgz#9c9c9964be60e9644575af328677f64b1e5cbd79" +ssh2-streams@~0.4.8: + version "0.4.8" + resolved "https://registry.yarnpkg.com/ssh2-streams/-/ssh2-streams-0.4.8.tgz#2ff92df2e0063fef86cf934eaea197967deda715" + integrity sha512-auxXfgYySz2vYw7TMU7PK7vFI7EPvhvTH8/tZPgGaWocK4p/vwCMiV3icz9AEkb0R40kOKZtFtqYIxDJyJiytw== dependencies: asn1 "~0.2.0" - semver "^5.1.0" + bcrypt-pbkdf "^1.0.2" streamsearch "~0.1.2" -ssh2@0.6.1: - version "0.6.1" - resolved "https://registry.yarnpkg.com/ssh2/-/ssh2-0.6.1.tgz#5dde1a7394bb978b1f9c2f014affee2f5493bd40" +ssh2@0.8.7: + version "0.8.7" + resolved "https://registry.yarnpkg.com/ssh2/-/ssh2-0.8.7.tgz#2dc15206f493010b98027201cf399b90bab79c89" + integrity sha512-/u1BO12kb0lDVxJXejWB9pxyF3/ncgRqI9vPCZuPzo05pdNDzqUeQRavScwSPsfMGK+5H/VRqp1IierIx0Bcxw== dependencies: - ssh2-streams "~0.2.0" + ssh2-streams "~0.4.8" streamsearch@~0.1.2: version "0.1.2" @@ -628,6 +633,11 @@ tunnel-agent@^0.6.0: dependencies: safe-buffer "^5.0.1" +tweetnacl@^0.14.3: + version "0.14.5" + resolved "https://registry.yarnpkg.com/tweetnacl/-/tweetnacl-0.14.5.tgz#5ae68177f192d4456269d108afa93ff8743f4f64" + integrity sha1-WuaBd/GS1EViadEIr6k/+HQ/T2Q= + url-parse-lax@^3.0.0: version "3.0.0" resolved "https://registry.yarnpkg.com/url-parse-lax/-/url-parse-lax-3.0.0.tgz#16b5cafc07dbe3676c1b1999177823d6503acb0c"