Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump github.com/fxamacker/cbor/v2 from 2.5.0-beta2 to 2.5.0-beta5 #17

Merged

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jun 26, 2023

Bumps github.com/fxamacker/cbor/v2 from 2.5.0-beta2 to 2.5.0-beta5.

Release notes

Sourced from github.com/fxamacker/cbor/v2's releases.

v2.5.0-beta5 is fuzz tested and production quality, but docs need to be updated before releasing v2.5.0. IMPORTANT: Please view these release notes (esp. v2.5.0-beta) before upgrading from v2.4 or earlier:

  • v2.5.0-beta4 - Bugfix for Diagnose to return io.EOF on empty data.
  • v2.5.0-beta3 - Add functions: Diagnose, DiagnoseFirst, UnmarshalFirst, Wellformed.
  • v2.5.0-beta2 - Bugfix to retry in Decoder if io.Reader's Read() returns 0 bytes read with nil error.
  • v2.5.0-beta - Notable improvements, optimizations, bugfixes, and 8 new contributors!

What's Changed since v2.5.0-beta4

Full Changelog: fxamacker/cbor@v2.5.0-beta4...v2.5.0-beta5

v2.5.0-beta4

Features already present in v2.4 are release quality. Newly added functions require more fuzzing and docs.
IMPORTANT: Please view these release notes (esp. v2.5.0-beta) before upgrading from v2.4:

  • v2.5.0-beta3 - Add Diagnose(), DiagnoseFirst(), UnmarshalFirst(), Wellformed().
  • v2.5.0-beta2 - Bugfix and release notes include benchmark comparison of v2.5.0-beta2 vs v2.4.0.
  • v2.5.0-beta - Notable improvements, optimizations, bugfixes, and 8 new contributors!

What's Changed Since v2.5.0-beta3

Full Changelog: fxamacker/cbor@v2.5.0-beta3...v2.5.0-beta4

v2.5.0-beta3

This release adds 4 new functions: UnmarshalFirst, Diagnose, DiagnoseFirst, and Wellformed. In addition Valid function is deprecated (use Wellformed instead).

  • UnmarshalFirst decodes first CBOR data item and returns remaining bytes. This is useful for CBOR Sequences (RFC 8742) and also because Unmarshal was fixed in v2.5.0-beta to return ExtraneousDataError if there are remaining bytes.
  • Diagnose and DiagnoseFirst returns human-readable Extended Diagnostic Notation (RFC 8610 Appendix G) for the given CBOR encoding. These are useful for debugging and allows more user-friendly error logging.

What's Changed (since v2.5.0-beta2)

Changes to CI and Documentation

Special Thanks

... (truncated)

Commits
  • 48c838c Merge pull request #413 from fxamacker/fxamacker/update-readme-v2.5.0-beta5
  • 1a406c5 Update README.md for v2.5.0-beta5
  • 56509bf Merge pull request #412 from fxamacker/fxamacker/add-decoder-buffered
  • a2dfeeb Add Decoder.Buffered() to return buffered data
  • e63ce52 Update govulncheck.yml
  • ebceec8 Update ci-go-cover.yml
  • a61ef50 Update ci-go-cover.yml
  • 340a5fb Merge pull request #411 from fxamacker/fxamacker/update-readme-for-v2.5.0-beta4
  • adcd2e4 Update README.md for cbor v2.5.0-beta4
  • 3ae4001 Merge pull request #410 from fxamacker/fxamacker/fix-diagnose-empty-data-error
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels Jun 26, 2023
@dependabot dependabot bot force-pushed the dependabot/go_modules/github.com/fxamacker/cbor/v2-2.5.0-beta5 branch 2 times, most recently from 1edc3f1 to 53a79ba Compare June 28, 2023 12:21
Bumps [github.com/fxamacker/cbor/v2](https://github.com/fxamacker/cbor) from 2.5.0-beta2 to 2.5.0-beta5.
- [Release notes](https://github.com/fxamacker/cbor/releases)
- [Commits](fxamacker/cbor@v2.5.0-beta2...v2.5.0-beta5)

---
updated-dependencies:
- dependency-name: github.com/fxamacker/cbor/v2
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/go_modules/github.com/fxamacker/cbor/v2-2.5.0-beta5 branch from 53a79ba to bb3eea6 Compare June 28, 2023 12:24
@zensh zensh merged commit 983fb7e into main Jun 28, 2023
@zensh zensh deleted the dependabot/go_modules/github.com/fxamacker/cbor/v2-2.5.0-beta5 branch June 28, 2023 12:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file go Pull requests that update Go code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant