New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
chore: upgrade haproxy to 2.6.9 to avoid multiple CVEs #12628
Conversation
Signed-off-by: Justin Marquis <34fathombelow@protonmail.com>
Codecov ReportBase: 47.78% // Head: 47.78% // No change to project coverage 👍
Additional details and impacted files@@ Coverage Diff @@
## master #12628 +/- ##
=======================================
Coverage 47.78% 47.78%
=======================================
Files 246 246
Lines 41944 41944
=======================================
Hits 20045 20045
Misses 19898 19898
Partials 2001 2001 Help us with your feedback. Take ten seconds to tell us how you rate us. Have a feature suggestion? Share it here. ☔ View full report at Codecov. |
/cherry-pick release-2.6 |
/cherry-pick release-2.5 |
Signed-off-by: Justin Marquis <34fathombelow@protonmail.com>
Signed-off-by: Justin Marquis <34fathombelow@protonmail.com>
Signed-off-by: Justin Marquis <34fathombelow@protonmail.com> Signed-off-by: Yi Cai <yicai@redhat.com>
Signed-off-by: Justin Marquis <34fathombelow@protonmail.com> Signed-off-by: rumstead <37445536+rumstead@users.noreply.github.com>
* Upgrade qs to avoid CVE-2022-24999 Signed-off-by: Yi Cai <yicai@redhat.com> * chore: upgrade haproxy to 2.6.9 to avoid multiple CVEs (#12628) Signed-off-by: Justin Marquis <34fathombelow@protonmail.com> Signed-off-by: Yi Cai <yicai@redhat.com> * chore: upgrade redis to 7.0.8 to avoid several CVEs (#12627) Signed-off-by: Justin Marquis <34fathombelow@protonmail.com> Signed-off-by: Yi Cai <yicai@redhat.com> * [Bot] docs: Update Snyk reports (#12660) Signed-off-by: CI <ci@argoproj.com> Co-authored-by: CI <ci@argoproj.com> Signed-off-by: Yi Cai <yicai@redhat.com> * Upgrade qs to avoid cve-2022-24999 Signed-off-by: Yi Cai <yicai@redhat.com> --------- Signed-off-by: Yi Cai <yicai@redhat.com> Signed-off-by: Justin Marquis <34fathombelow@protonmail.com> Signed-off-by: CI <ci@argoproj.com> Co-authored-by: Justin Marquis <34fathombelow@protonmail.com> Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: CI <ci@argoproj.com>
Signed-off-by: Justin Marquis <34fathombelow@protonmail.com>
* Upgrade qs to avoid CVE-2022-24999 Signed-off-by: Yi Cai <yicai@redhat.com> * chore: upgrade haproxy to 2.6.9 to avoid multiple CVEs (argoproj#12628) Signed-off-by: Justin Marquis <34fathombelow@protonmail.com> Signed-off-by: Yi Cai <yicai@redhat.com> * chore: upgrade redis to 7.0.8 to avoid several CVEs (argoproj#12627) Signed-off-by: Justin Marquis <34fathombelow@protonmail.com> Signed-off-by: Yi Cai <yicai@redhat.com> * [Bot] docs: Update Snyk reports (argoproj#12660) Signed-off-by: CI <ci@argoproj.com> Co-authored-by: CI <ci@argoproj.com> Signed-off-by: Yi Cai <yicai@redhat.com> * Upgrade qs to avoid cve-2022-24999 Signed-off-by: Yi Cai <yicai@redhat.com> --------- Signed-off-by: Yi Cai <yicai@redhat.com> Signed-off-by: Justin Marquis <34fathombelow@protonmail.com> Signed-off-by: CI <ci@argoproj.com> Co-authored-by: Justin Marquis <34fathombelow@protonmail.com> Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: CI <ci@argoproj.com>
This PR fixes several CVEs found in the recent Snyk Scan for HAProxy.
CVE-2022-4450
CVE-2023-0215
CVE-2023-0286
CVE-2022-4304