[master] MGMT-24702: CVE-2026-53488 Bump github.com/containerd/containerd to v1.7.33#2204
Conversation
|
@shay23bra: This pull request references MGMT-24702 which is a valid jira issue. Warning: The referenced jira issue has an invalid target version for the target branch this PR targets: expected the vulnerability to target the "5.0.0" version, but no target version was set. DetailsIn response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the openshift-eng/jira-lifecycle-plugin repository. |
|
Caution Review failedAn error occurred during the review process. Please try again later. WalkthroughThis change updates the ChangesDependency update
Estimated code review effort: 1 (Trivial) | ~2 minutes Related PRs: None identified. Suggested labels: dependencies Suggested reviewers: None identified. 🐰 A tiny hop, a version bump so slight, ✨ Finishing Touches🧪 Generate unit tests (beta)
Warning Tools execution failed with the following error: Failed to run tools: 13 INTERNAL: Received RST_STREAM with code 2 (Internal server error) Comment |
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## master #2204 +/- ##
=======================================
Coverage 48.82% 48.82%
=======================================
Files 20 20
Lines 4397 4397
=======================================
Hits 2147 2147
Misses 2026 2026
Partials 224 224 🚀 New features to boost your workflow:
|
|
/retest-required |
2 similar comments
|
/retest-required |
|
/retest-required |
|
/override ci/prow/edge-e2e-ai-operator-ztp |
|
/approve |
|
@gamli75: Overrode contexts on behalf of gamli75: ci/prow/edge-e2e-ai-operator-ztp DetailsIn response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. |
|
@shay23bra: all tests passed! Full PR test history. Your PR dashboard. DetailsInstructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here. |
|
[APPROVALNOTIFIER] This PR is APPROVED This pull-request has been approved by: gamli75, shay23bra The full list of commands accepted by this bot can be found here. The pull request process is described here DetailsNeeds approval from an approver in each of these files:
Approvers can indicate their approval by writing |
Bump
github.com/containerd/containerdreplace directive from v1.7.29 to v1.7.33 to fix CVE-2026-53488.Strategy Selection
✓ Successful Strategy: Replace directive update
Updated existing replace directive to point to fixed version.
https://redhat.atlassian.net/browse/MGMT-24702
This PR was automatically generated by the CVE Automation tool.
For questions or issues, reach out in #cve-automation.
Summary by CodeRabbit