Skip to content

Commit 4aa7873

Browse files
Revert "Universal & Javascript-node: Update 'ansi-regex' due to CVE-2021-3807"
This reverts commit 9863b2c.
1 parent 9863b2c commit 4aa7873

File tree

4 files changed

+1
-17
lines changed

4 files changed

+1
-17
lines changed

src/javascript-node/.devcontainer/library-scripts/add-patch.sh

Lines changed: 0 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -10,7 +10,4 @@ IMAGE_VARIANT=$1
1010
if [[ "${IMAGE_VARIANT}" =~ "14" ]] ; then
1111
cd /usr/local/lib/node_modules/npm
1212
npm update --save
13-
14-
cd /usr/local/lib/node_modules/npm/node_modules/string-width
15-
npm install ansi-regex --save
1613
fi

src/javascript-node/test-project/test.sh

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -22,10 +22,6 @@ sudo rm -rf node_modules
2222
git_version=$(git --version)
2323
check-version-ge "git-requirement" "${git_version}" "git version 2.38.1"
2424

25-
cd /usr/local/lib/node_modules/npm/node_modules/string-width/
26-
27-
ansiVersion=$(npm ls --depth 1 --json | jq -r '.dependencies."ansi-regex".version')
28-
check-version-ge "ansi-regex" "${ansiVersion}" "6.0.1"
2925

3026
# Report result
3127
reportResults

src/universal/.devcontainer/local-features/setup-user/install.sh

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -58,10 +58,6 @@ NPM_PACKAGES_LIST="decode-uri-component
5858
cd /usr/local/share/nvm/versions/node/v14*/lib/node_modules/npm
5959
npm install ${NPM_PACKAGES_LIST}
6060

61-
# ansi-regex: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3807
62-
cd /usr/local/share/nvm/versions/node/v14*/lib/node_modules/npm/node_modules/string-width
63-
npm install ansi-regex --save
64-
6561
# Temporary: Due to https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0536 & https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0155
6662
rm -rf /usr/local/nvs/deps/node_modules/follow-redirects/*
6763
curl -sSL https://github.com/follow-redirects/follow-redirects/archive/refs/tags/v1.15.2.tar.gz | tar -xzC /tmp 2>&1

src/universal/test-project/test.sh

Lines changed: 1 addition & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -184,19 +184,14 @@ decodeVersion=$(npm ls --depth 1 --json | jq -r '.dependencies."decode-uri-compo
184184
check-version-ge "decode-uri-component" "${decodeVersion}" "0.2.1"
185185

186186
ansiVersion=$(npm ls --depth 1 --json | jq -r '.dependencies."ansi-regex".version')
187-
check-version-ge "ansi-regex" "${ansiVersion}" "6.0.1"
187+
check-version-ge "ansi-regex" "${ansiVersion}" "6.0.0"
188188

189189
minimatchVersion=$(npm ls --depth 1 --json | jq -r '.dependencies.minimatch.version')
190190
check-version-ge "minimatch" "${minimatchVersion}" "3.0.5"
191191

192192
gotVersion=$(npm ls --depth 1 --json | jq -r '.dependencies.got.version')
193193
check-version-ge "got" "${gotVersion}" "12.1.0"
194194

195-
cd /usr/local/share/nvm/versions/node/v14*/lib/node_modules/npm/node_modules/string-width
196-
197-
ansiVersion=$(npm ls --depth 1 --json | jq -r '.dependencies."ansi-regex".version')
198-
check-version-ge "ansi-regex-2" "${ansiVersion}" "6.0.1"
199-
200195
ls -la /home/codespace
201196

202197
# Report result

0 commit comments

Comments
 (0)