Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(deps): bump github.com/cloudflare/circl from 1.3.2 to 1.3.3 #2991

Merged

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github May 11, 2023

Bumps github.com/cloudflare/circl from 1.3.2 to 1.3.3.

Release notes

Sourced from github.com/cloudflare/circl's releases.

CIRCL v1.3.3

New Features

  • ASCON light-weight authenticated encryption.
  • Hybrid KEM for HPKE based on Kyber and X25519.
  • CIRCL can be compiled both as static and dynamic linking modes.

Security

  • Fixes error-handling on rand readers.

What's Changed

New Contributors

Full Changelog: cloudflare/circl@v1.3.2...v1.3.3

Commits
  • 3bef500 Releasing CIRCL v1.3.3
  • 4002baf Add HPKE benchmarks
  • 7955403 Remove scalar sha3 amd64 assembly
  • aef7250 hpke: fix encapsulation seed in test for xyber
  • 808526a hpke: update and move xyber768d00 test vectors
  • c7845aa Address always nil parameter.
  • 2475a3f Adding NonceSize function to AEAD.
  • eaec71f Add X25519Kyber768Draft00 experimental HPKE KEM
  • f0db288 Fix encapsulation seed size
  • f4c0e87 Update go-ristretto dep
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [github.com/cloudflare/circl](https://github.com/cloudflare/circl) from 1.3.2 to 1.3.3.
- [Release notes](https://github.com/cloudflare/circl/releases)
- [Commits](cloudflare/circl@v1.3.2...v1.3.3)

---
updated-dependencies:
- dependency-name: github.com/cloudflare/circl
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the enhancement New feature or request label May 11, 2023
@twpayne twpayne merged commit 2ec90c4 into master May 14, 2023
19 checks passed
@twpayne twpayne deleted the dependabot/go_modules/github.com/cloudflare/circl-1.3.3 branch May 14, 2023 06:54
renovate bot added a commit to scottames/dots that referenced this pull request May 19, 2023
[![Mend
Renovate](https://app.renovatebot.com/images/banner.svg)](https://renovatebot.com)

This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [aquaproj/aqua-registry](https://togithub.com/aquaproj/aqua-registry)
| minor | `v4.3.0` -> `v4.6.0` |
| [fluxcd/flux2](https://togithub.com/fluxcd/flux2) | patch |
`v2.0.0-rc.2` -> `v2.0.0-rc.3` |
| [iwittkau/mage-select](https://togithub.com/iwittkau/mage-select) |
patch | `v1.4.2` -> `v1.4.3` |
| [kubernetes/kubectl](https://togithub.com/kubernetes/kubectl) | patch
| `1.27.1` -> `1.27.2` |
| [magefile/mage](https://togithub.com/magefile/mage) | minor |
`v1.14.0` -> `v1.15.0` |
| [twpayne/chezmoi](https://togithub.com/twpayne/chezmoi) | patch |
`v2.33.4` -> `v2.33.6` |
| [weaveworks/eksctl](https://togithub.com/weaveworks/eksctl) | minor |
`v0.140.0` -> `v0.141.0` |

---

### Release Notes

<details>
<summary>aquaproj/aqua-registry</summary>

###
[`v4.6.0`](https://togithub.com/aquaproj/aqua-registry/releases/tag/v4.6.0)

[Compare
Source](https://togithub.com/aquaproj/aqua-registry/compare/v4.5.0...v4.6.0)


[Issues](https://togithub.com/aquaproj/aqua-registry/issues?q=is%3Aissue+milestone%3Av4.6.0)
| [Pull
Requests](https://togithub.com/aquaproj/aqua-registry/pulls?q=is%3Apr+milestone%3Av4.6.0)
| aquaproj/aqua-registry@v4.5.0...v4.6.0

#### 🎉 New Packages


[#&#8203;12210](https://togithub.com/aquaproj/aqua-registry/issues/12210)
[k1LoW/gh-setup](https://togithub.com/k1LoW/gh-setup): Setup asset of
Github releases

⚠️ aqua installs gh-setup as not GitHub CLI extension but standalone CLI


[#&#8203;12209](https://togithub.com/aquaproj/aqua-registry/issues/12209)
[goark/depm](https://togithub.com/goark/depm): Visualize depndency
packages and modules

[#&#8203;12208](https://togithub.com/aquaproj/aqua-registry/issues/12208)
[future-architect/tftarget](https://togithub.com/future-architect/tftarget):
tftarget is a CLI tool for Terraform ( plan | apply | destroy ) with
target option. You can interactivity select resource to ( plan | apply |
destroy ) with target option

[#&#8203;12192](https://togithub.com/aquaproj/aqua-registry/issues/12192)
[cnosuke/kushi](https://togithub.com/cnosuke/kushi): Auto SSH
port-fowarding agent which gets forwarding configs from URL
[@&#8203;ponkio-o](https://togithub.com/ponkio-o)

###
[`v4.5.0`](https://togithub.com/aquaproj/aqua-registry/releases/tag/v4.5.0)

[Compare
Source](https://togithub.com/aquaproj/aqua-registry/compare/v4.4.0...v4.5.0)


[Issues](https://togithub.com/aquaproj/aqua-registry/issues?q=is%3Aissue+milestone%3Av4.5.0)
| [Pull
Requests](https://togithub.com/aquaproj/aqua-registry/pulls?q=is%3Apr+milestone%3Av4.5.0)
| aquaproj/aqua-registry@v4.4.0...v4.5.0

#### 🎉 New Packages


[#&#8203;12118](https://togithub.com/aquaproj/aqua-registry/issues/12118)
[enokawa/taskdiff](https://togithub.com/enokawa/taskdiff): Diff tool for
ECS Task Definition [@&#8203;ponkio-o](https://togithub.com/ponkio-o)

###
[`v4.4.0`](https://togithub.com/aquaproj/aqua-registry/releases/tag/v4.4.0)

[Compare
Source](https://togithub.com/aquaproj/aqua-registry/compare/v4.3.0...v4.4.0)


[Issues](https://togithub.com/aquaproj/aqua-registry/issues?q=is%3Aissue+milestone%3Av4.4.0)
| [Pull
Requests](https://togithub.com/aquaproj/aqua-registry/pulls?q=is%3Apr+milestone%3Av4.4.0)
| aquaproj/aqua-registry@v4.3.0...v4.4.0

#### 🎉 New Packages


[#&#8203;12096](https://togithub.com/aquaproj/aqua-registry/issues/12096)
[mattn/bsky](https://togithub.com/mattn/bsky): A cli application for
bluesky social [@&#8203;4513ECHO](https://togithub.com/4513ECHO)

[#&#8203;12097](https://togithub.com/aquaproj/aqua-registry/issues/12097)
[mattn/files](https://togithub.com/mattn/files): Fast file find
[@&#8203;4513ECHO](https://togithub.com/4513ECHO)

</details>

<details>
<summary>fluxcd/flux2</summary>

###
[`v2.0.0-rc.3`](https://togithub.com/fluxcd/flux2/releases/tag/v2.0.0-rc.3)

[Compare
Source](https://togithub.com/fluxcd/flux2/compare/v2.0.0-rc.2...v2.0.0-rc.3)

##### Highlights

This is the 3rd release candidate of Flux v2.0 GA. Users are advised to
upgrade from `v0.41` and older versions to `v2.0.0-rc.3` as soon as
possible.

Flux v2.0.0-rc.3 comes with security improvements, new features and
fixes to issues reported for RC.2.

:bulb: For upgrading from v0.x, please see [the procedure documented in
RC.1](https://togithub.com/fluxcd/flux2/releases/tag/v2.0.0-rc.1).

:warning: Note that Kubernetes 1.27.0 contains a regression bug that
affects Flux, it is recommended to upgrade Kubernetes to 1.27.1 or
newer.

##### Fixes and improvements

- Fix bootstrap on GKE (RC.2 regression due to insufficient quota for
critical pods).
-   All controller base images have been updated to Alpine 3.18.
- All components have been updated to patch CVE-2023-2253 and
CVE-2023-1732 (note that Flux is not affected, these CVEs are for
packages used in tests).
- Verify artifacts integrity, issue warning events and remove tempered
artifacts from storage forcing a re-download (source-controller).
- Files with executable permissions are now archived with their mode set
to `0o744`, allowing CI system to run them (source-controller).
- The `Alert` v1beta2 API has a new optional field `.spec.eventMetadata`
that allows users to enrich the alerts with information about the
cluster name, region, environment, etc. (notification-controller).
- Improve the detection of values changes for HelmReleases by stable
sorting them by key (helm-controller).

##### Components changelog

- source-controller
[v1.0.0-rc.3](https://togithub.com/fluxcd/source-controller/blob/v1.0.0-rc.3/CHANGELOG.md)
- kustomize-controller
[v1.0.0-rc.3](https://togithub.com/fluxcd/kustomize-controller/blob/v1.0.0-rc.3/CHANGELOG.md)
- notification-controller
[v1.0.0-rc.3](https://togithub.com/fluxcd/notification-controller/blob/v1.0.0-rc.3/CHANGELOG.md)
- helm-controller
[v0.33.0](https://togithub.com/fluxcd/helm-controller/blob/v0.33.0/CHANGELOG.md)
- image-reflector-controller
[v0.27.2](https://togithub.com/fluxcd/image-reflector-controller/blob/v0.27.2/CHANGELOG.md)
- image-automation-controller
[v0.33.1](https://togithub.com/fluxcd/image-automation-controller/blob/v0.33.1/CHANGELOG.md)

##### CLI Changelog

- PR [#&#8203;3883](https://togithub.com/fluxcd/flux2/issues/3883) -
[@&#8203;stefanprodan](https://togithub.com/stefanprodan) - e2e: Update
dependencies
- PR [#&#8203;3882](https://togithub.com/fluxcd/flux2/issues/3882) -
[@&#8203;fluxcdbot](https://togithub.com/fluxcdbot) - Update toolkit
components
- PR [#&#8203;3880](https://togithub.com/fluxcd/flux2/issues/3880) -
[@&#8203;stefanprodan](https://togithub.com/stefanprodan) - Add OSSF
Scorecard
- PR [#&#8203;3879](https://togithub.com/fluxcd/flux2/issues/3879) -
[@&#8203;stefanprodan](https://togithub.com/stefanprodan) - Add
ResourceQuota for critical pods
- PR [#&#8203;3877](https://togithub.com/fluxcd/flux2/issues/3877) -
[@&#8203;dependabot](https://togithub.com/dependabot)\[bot] -
build(deps): bump github.com/docker/distribution from 2.8.1+incompatible
to 2.8.2+incompatible
- PR [#&#8203;3876](https://togithub.com/fluxcd/flux2/issues/3876) -
[@&#8203;dependabot](https://togithub.com/dependabot)\[bot] -
build(deps): bump github.com/cloudflare/circl from 1.3.2 to 1.3.3 in
/tests/azure
- PR [#&#8203;3875](https://togithub.com/fluxcd/flux2/issues/3875) -
[@&#8203;dependabot](https://togithub.com/dependabot)\[bot] -
build(deps): bump github.com/cloudflare/circl from 1.3.2 to 1.3.3
- PR [#&#8203;3866](https://togithub.com/fluxcd/flux2/issues/3866) -
[@&#8203;onedr0p](https://togithub.com/onedr0p) - Update Alpine to 3.18

</details>

<details>
<summary>iwittkau/mage-select</summary>

###
[`v1.4.3`](https://togithub.com/iwittkau/mage-select/releases/tag/v1.4.3)

[Compare
Source](https://togithub.com/iwittkau/mage-select/compare/v1.4.2...v1.4.3)

#### What's Changed

- fix(deps): update ⬆️ go module github.com/magefile/mage to v1.15.0 by
[@&#8203;renovate](https://togithub.com/renovate) in
[iwittkau/mage-select#14

**Full Changelog**:
iwittkau/mage-select@v1.4.2...v1.4.3

</details>

<details>
<summary>kubernetes/kubectl</summary>

###
[`v1.27.2`](https://togithub.com/kubernetes/kubectl/compare/kubernetes-1.27.1...kubernetes-1.27.2)

[Compare
Source](https://togithub.com/kubernetes/kubectl/compare/kubernetes-1.27.1...kubernetes-1.27.2)

</details>

<details>
<summary>magefile/mage</summary>

### [`v1.15.0`](https://togithub.com/magefile/mage/releases/tag/v1.15.0)

[Compare
Source](https://togithub.com/magefile/mage/compare/v1.14.0...v1.15.0)

#### Changelog

- [`9e91a03`](https://togithub.com/magefile/mage/commit/9e91a03) Update
CI ([#&#8203;466](https://togithub.com/magefile/mage/issues/466))
- [`9199872`](https://togithub.com/magefile/mage/commit/9199872) fix
erroneous docstring of sh.Exec()
([#&#8203;452](https://togithub.com/magefile/mage/issues/452))
- [`02bde0b`](https://togithub.com/magefile/mage/commit/02bde0b) Update
jQuery to 3.5.0
([#&#8203;458](https://togithub.com/magefile/mage/issues/458))
- [`1b8774a`](https://togithub.com/magefile/mage/commit/1b8774a) -d dir
contains magefiles stop with "No .go files marked with the mage build
tag..." ([#&#8203;447](https://togithub.com/magefile/mage/issues/447))
([#&#8203;448](https://togithub.com/magefile/mage/issues/448))
- [`a920604`](https://togithub.com/magefile/mage/commit/a920604) mage:
cancel context on SIGINT
([#&#8203;313](https://togithub.com/magefile/mage/issues/313))

</details>

<details>
<summary>twpayne/chezmoi</summary>

###
[`v2.33.6`](https://togithub.com/twpayne/chezmoi/releases/tag/v2.33.6)

[Compare
Source](https://togithub.com/twpayne/chezmoi/compare/v2.33.5...v2.33.6)

#### What's Changed

- chore(deps): bump github.com/cloudflare/circl from 1.3.2 to 1.3.3 by
[@&#8203;dependabot](https://togithub.com/dependabot) in
[twpayne/chezmoi#2991
- fix: Only create empty files if they have the empty\_ attribute by
[@&#8203;twpayne](https://togithub.com/twpayne) in
[twpayne/chezmoi#2997
- chore: Refactor internal handling of remove\_ directories by
[@&#8203;twpayne](https://togithub.com/twpayne) in
[twpayne/chezmoi#2999
- chore(editorconfig): Remove quotes from editorconfig file by
[@&#8203;aarondill](https://togithub.com/aarondill) in
[twpayne/chezmoi#3000
- fix: Set CHEZMOI_SOURCE_DIR env var in init when using .chezmoiroot by
[@&#8203;twpayne](https://togithub.com/twpayne) in
[twpayne/chezmoi#3001
- chore: Update dependencies by
[@&#8203;twpayne](https://togithub.com/twpayne) in
[twpayne/chezmoi#3002

#### New Contributors

- [@&#8203;aarondill](https://togithub.com/aarondill) made their first
contribution in
[twpayne/chezmoi#3000

**Full Changelog**:
twpayne/chezmoi@v2.33.5...v2.33.6

###
[`v2.33.5`](https://togithub.com/twpayne/chezmoi/releases/tag/v2.33.5)

[Compare
Source](https://togithub.com/twpayne/chezmoi/compare/v2.33.4...v2.33.5)

#### What's Changed

- chore: Build with Go 1.20.4 by
[@&#8203;twpayne](https://togithub.com/twpayne) in
[twpayne/chezmoi#2970
- chore: Use github.com/alecthomas/assert instead of
github.com/stretchr/testify by
[@&#8203;twpayne](https://togithub.com/twpayne) in
[twpayne/chezmoi#2974
- fix: Fix commands for managed files in exact\_ directories by
[@&#8203;twpayne](https://togithub.com/twpayne) in
[twpayne/chezmoi#2980
- docs: Improved Bitwarden login documentation by
[@&#8203;halostatue](https://togithub.com/halostatue) in
[twpayne/chezmoi#2955
- chore: Update dependencies by
[@&#8203;twpayne](https://togithub.com/twpayne) in
[twpayne/chezmoi#2983
- chore(deps): bump github/codeql-action from 2.3.2 to 2.3.3 by
[@&#8203;dependabot](https://togithub.com/dependabot) in
[twpayne/chezmoi#2986
- chore(deps): bump cpina/github-action-push-to-another-repository from
1.6 to 1.7 by [@&#8203;dependabot](https://togithub.com/dependabot) in
[twpayne/chezmoi#2987
- chore(deps): bump reviewdog/action-misspell from 1.12.3 to 1.12.4 by
[@&#8203;dependabot](https://togithub.com/dependabot) in
[twpayne/chezmoi#2985
- fix: Ensure the sourceDir is updated before creating config file by
[@&#8203;twpayne](https://togithub.com/twpayne) in
[twpayne/chezmoi#2989

**Full Changelog**:
twpayne/chezmoi@v2.33.4...v2.33.5

</details>

<details>
<summary>weaveworks/eksctl</summary>

###
[`v0.141.0`](https://togithub.com/weaveworks/eksctl/releases/tag/v0.141.0):
eksctl 0.141.0 (permalink)

[Compare
Source](https://togithub.com/weaveworks/eksctl/compare/0.140.0...0.141.0)

### Release v0.141.0

#### 🐛 Bug Fixes

- Force kubeconfig get-token output format to json
([#&#8203;6554](https://togithub.com/weaveworks/eksctl/issues/6554))

#### 📝 Documentation

- Correct typo on NAT Gateway configuration value choices
([#&#8203;6569](https://togithub.com/weaveworks/eksctl/issues/6569))

#### Acknowledgments

Weaveworks would like to sincerely thank:
[@&#8203;khacminh](https://togithub.com/khacminh), and
[@&#8203;yuxiang-zhang](https://togithub.com/yuxiang-zhang)

</details>

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR is behind base branch, or you tick the
rebase/retry checkbox.

👻 **Immortal**: This PR will be recreated if closed unmerged. Get
[config help](https://togithub.com/renovatebot/renovate/discussions) if
that's undesired.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Mend
Renovate](https://www.mend.io/free-developer-tools/renovate/). View
repository job log
[here](https://app.renovatebot.com/dashboard#github/scottames/dots).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiIzNS45NS4xIiwidXBkYXRlZEluVmVyIjoiMzUuOTUuMSIsInRhcmdldEJyYW5jaCI6Im1haW4ifQ==-->

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
@github-actions github-actions bot locked as resolved and limited conversation to collaborators Feb 13, 2024
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
enhancement New feature or request
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

1 participant