New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
MGMT-17518: Bump x/net to 0.24.0 to mitigate CVE-2023-45288 (api go.mod) #6212
MGMT-17518: Bump x/net to 0.24.0 to mitigate CVE-2023-45288 (api go.mod) #6212
Conversation
Bump x/net to 0.24.0 to mitigate CVE-2023-45288 (api go.mod) Forgot to deal with api/go.mod, this PR addresses that.
[APPROVALNOTIFIER] This PR is APPROVED This pull-request has been approved by: adriengentil, paul-maidment The full list of commands accepted by this bot can be found here. The pull request process is described here
Needs approval from an approver in each of these files:
Approvers can indicate their approval by writing |
Codecov ReportAll modified and coverable lines are covered by tests ✅
Additional details and impacted files@@ Coverage Diff @@
## master #6212 +/- ##
==========================================
+ Coverage 68.28% 68.42% +0.13%
==========================================
Files 240 240
Lines 35815 35962 +147
==========================================
+ Hits 24456 24606 +150
- Misses 9200 9202 +2
+ Partials 2159 2154 -5 |
/retitle OCPBUGS-30905: Bump x/net to 0.24.0 to mitigate CVE-2023-45288 (api go.mod) |
@paul-maidment: This pull request references Jira Issue OCPBUGS-30905, which is invalid:
Comment The bug has been updated to refer to the pull request using the external bug tracker. In response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the openshift-eng/jira-lifecycle-plugin repository. |
/retitle MGMT-17518: Bump x/net to 0.24.0 to mitigate GHSA-4v7x-pqxf-cx7m (api go.mod) |
@paul-maidment: This pull request references MGMT-17518 which is a valid jira issue. Warning: The referenced jira issue has an invalid target version for the target branch this PR targets: expected the story to target the "4.16.0" version, but no target version was set. In response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the openshift-eng/jira-lifecycle-plugin repository. |
/retitle MGMT-17518: Bump x/net to 0.24.0 to mitigate CVE-2023-45288 (api go.mod) |
@paul-maidment: all tests passed! Full PR test history. Your PR dashboard. Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes/test-infra repository. I understand the commands that are listed here. |
[ART PR BUILD NOTIFIER] This PR has been included in build ose-agent-installer-api-server-container-v4.16.0-202404190512.p0.g35aed7d.assembly.stream.el8 for distgit ose-agent-installer-api-server. |
Bump x/net to 0.24.0 to mitigate CVE-2023-45288 (api go.mod)
I Forgot to deal with api/go.mod, this PR addresses that.
List all the issues related to this PR
What environments does this code impact?
How was this code tested?
Checklist
docs
, README, etc)Reviewers Checklist