Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

deps: update dependency helm/helm to v3.10.3 #722

Merged
merged 1 commit into from
Feb 2, 2023

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Jan 31, 2023

Mend Renovate

This PR contains the following updates:

Package Update Change
helm/helm patch v3.10.2 -> v3.10.3

Release Notes

helm/helm

v3.10.3: Helm v3.10.3

Compare Source

v3.10.3

Helm v3.10.3 is a security (patch) release. Users are strongly recommended to update to this release.

While fuzz testing Helm, provided by the CNCF:

  • a possible stack overflow was discovered with the strvals package. Stack overflow cannot be recovered from in Go. This can potentially be used to produce a denial of service (DOS) for SDK users. More details are available in the advisory.
  • a possible segmentation violation was discovered with the repo package. Some segmentation violations cannot be recovered from in Go. This can potentially be used to produce a denial of service (DOS) for SDK users. More details are available in the advisory.
  • a possible segmentation violation was discovered with the chartutil package. This can potentially be used to produce a denial of service (DOS) for SDK users. More details are available in the advisory

The community keeps growing, and we'd love to see you there!

  • Join the discussion in Kubernetes Slack:
    • for questions and just to hang out
    • for discussing PRs, code, and bugs
  • Hang out at the Public Developer Call: Thursday, 9:30 Pacific via Zoom
  • Test, debug, and contribute charts: ArtifactHub/packages

Installation and Upgrading

Download Helm v3.10.3. The common platform binaries are here:

This release was signed with F126 1BDE 9290 12C8 FF2E 501D 6EA5 D759 8529 A53E and can be found at @​hickeyma keybase account. Please use the attached signatures for verifying this release using gpg.

The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with bash.

What's Next

  • 3.11.0 is the next feature release and will be on January 18, 2023.

Changelog

  • Fix backwards compatibility 835b733 (Martin Hickey)
  • Update string handling 3caf8b5 (Martin Hickey)
  • Update repo handling 7c0e203 (Martin Hickey)
  • Update schema validation handling f4b9322 (Martin Hickey)

Configuration

📅 Schedule: Branch creation - "after 10pm every weekday,before 5am every weekday,every weekend" in timezone Europe/Vienna, Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate. View repository job log here.

@codecov
Copy link

codecov bot commented Jan 31, 2023

Codecov Report

Merging #722 (9797212) into main (48b0dbc) will increase coverage by 0.05%.
The diff coverage is n/a.

❗ Current head 9797212 differs from pull request most recent head e785442. Consider uploading reports for the commit e785442 to get more accurate results

Additional details and impacted files
@@            Coverage Diff             @@
##             main     #722      +/-   ##
==========================================
+ Coverage   57.69%   57.75%   +0.05%     
==========================================
  Files          91       91              
  Lines        7243     7243              
==========================================
+ Hits         4179     4183       +4     
+ Misses       2894     2891       -3     
+ Partials      170      169       -1     
Impacted Files Coverage Δ
...lers/lifecycle/keptnworkloadinstance/controller.go 82.80% <0.00%> (+1.80%) ⬆️
Flag Coverage Δ
component-tests 48.40% <ø> (+0.47%) ⬆️
keptn-lifecycle-operator 53.60% <ø> (ø)
klt-cert-manager 67.50% <ø> (ø)
scheduler 21.17% <ø> (ø)

Flags with carried forward coverage won't be shown. Click here to find out more.

@renovate renovate bot force-pushed the renovate/helm-helm-3.10.x branch 5 times, most recently from 2db11be to 05bae24 Compare February 1, 2023 09:26
mowies
mowies previously approved these changes Feb 1, 2023
@renovate renovate bot force-pushed the renovate/helm-helm-3.10.x branch 4 times, most recently from fc26296 to 9797212 Compare February 2, 2023 11:50
odubajDT
odubajDT previously approved these changes Feb 2, 2023
Signed-off-by: Renovate Bot <bot@renovateapp.com>
@sonarcloud
Copy link

sonarcloud bot commented Feb 2, 2023

Kudos, SonarCloud Quality Gate passed!    Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
No Duplication information No Duplication information

@odubajDT odubajDT merged commit 491874c into main Feb 2, 2023
@odubajDT odubajDT deleted the renovate/helm-helm-3.10.x branch February 2, 2023 13:55
@keptn-bot keptn-bot mentioned this pull request Feb 2, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants