Skip to content

Commit d7c5a23

Browse files
authored
Merge pull request #1967 from mattcary/cve
Fix CVE-2022-1996
2 parents 6737973 + 54f9827 commit d7c5a23

File tree

222 files changed

+17485
-15090
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

222 files changed

+17485
-15090
lines changed

Diff for: go.mod

+13-15
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,7 @@
11
module sigs.k8s.io/gcp-compute-persistent-disk-csi-driver
22

3-
go 1.22.0
3+
go 1.23.0
4+
45
toolchain go1.23.6
56

67
require (
@@ -29,7 +30,7 @@ require (
2930
google.golang.org/api v0.183.0
3031
google.golang.org/genproto v0.0.0-20240528184218-531527333157
3132
google.golang.org/grpc v1.65.0
32-
google.golang.org/protobuf v1.36.1
33+
google.golang.org/protobuf v1.36.5
3334
gopkg.in/gcfg.v1 v1.2.3
3435
k8s.io/api v0.24.1
3536
k8s.io/apimachinery v0.24.1
@@ -38,7 +39,7 @@ require (
3839
k8s.io/component-base v0.24.1
3940
k8s.io/klog/v2 v2.130.1
4041
k8s.io/mount-utils v0.30.1
41-
k8s.io/utils v0.0.0-20230726121419-3b25d923346b
42+
k8s.io/utils v0.0.0-20240711033017-18e509b52bc8
4243
sigs.k8s.io/boskos v0.0.0-20220711194915-6cb8a6fb2dd1
4344
)
4445

@@ -49,26 +50,24 @@ require (
4950
cloud.google.com/go/iam v1.1.8 // indirect
5051
cloud.google.com/go/longrunning v0.5.7 // indirect
5152
github.com/Microsoft/go-winio v0.6.1 // indirect
52-
github.com/PuerkitoBio/purell v1.1.1 // indirect
53-
github.com/PuerkitoBio/urlesc v0.0.0-20170810143723-de5bf2ad4578 // indirect
5453
github.com/beorn7/perks v1.0.1 // indirect
5554
github.com/blang/semver/v4 v4.0.0 // indirect
5655
github.com/cenkalti/backoff/v4 v4.2.1 // indirect
5756
github.com/cespare/xxhash/v2 v2.3.0 // indirect
5857
github.com/davecgh/go-spew v1.1.1 // indirect
59-
github.com/emicklei/go-restful v2.9.5+incompatible // indirect
58+
github.com/emicklei/go-restful/v3 v3.12.2 // indirect
6059
github.com/felixge/httpsnoop v1.0.4 // indirect
6160
github.com/go-logr/logr v1.4.2 // indirect
6261
github.com/go-logr/stdr v1.2.2 // indirect
63-
github.com/go-openapi/jsonpointer v0.20.0 // indirect
64-
github.com/go-openapi/jsonreference v0.19.6 // indirect
65-
github.com/go-openapi/swag v0.22.4 // indirect
62+
github.com/go-openapi/jsonpointer v0.21.0 // indirect
63+
github.com/go-openapi/jsonreference v0.21.0 // indirect
64+
github.com/go-openapi/swag v0.23.0 // indirect
6665
github.com/go-task/slim-sprig/v3 v3.0.0 // indirect
6766
github.com/gogo/protobuf v1.3.2 // indirect
6867
github.com/golang/groupcache v0.0.0-20210331224755-41bb18bfe9da // indirect
6968
github.com/golang/protobuf v1.5.4 // indirect
7069
github.com/google/gnostic v0.7.0 // indirect
71-
github.com/google/gnostic-models v0.6.9-0.20230804172637-c7be7c783f49 // indirect
70+
github.com/google/gnostic-models v0.6.9 // indirect
7271
github.com/google/gofuzz v1.2.1-0.20210504230335-f78f29fc09ea // indirect
7372
github.com/google/pprof v0.0.0-20241210010833-40e02aabc2ad // indirect
7473
github.com/google/s2a-go v0.1.7 // indirect
@@ -79,13 +78,12 @@ require (
7978
github.com/imdario/mergo v0.3.12 // indirect
8079
github.com/josharian/intern v1.0.0 // indirect
8180
github.com/json-iterator/go v1.1.12 // indirect
82-
github.com/mailru/easyjson v0.7.7 // indirect
81+
github.com/mailru/easyjson v0.9.0 // indirect
8382
github.com/matttproud/golang_protobuf_extensions v1.0.2-0.20181231171920-c182affec369 // indirect
8483
github.com/moby/sys/mountinfo v0.6.2 // indirect
8584
github.com/modern-go/concurrent v0.0.0-20180306012644-bacd9c7ef1dd // indirect
8685
github.com/modern-go/reflect2 v1.0.2 // indirect
8786
github.com/munnerz/goautoneg v0.0.0-20191010083416-a7dc8b61c822 // indirect
88-
github.com/onsi/ginkgo v1.16.5 // indirect
8987
github.com/pkg/errors v0.9.1 // indirect
9088
github.com/prometheus/client_golang v1.12.1 // indirect
9189
github.com/prometheus/client_model v0.2.0 // indirect
@@ -112,10 +110,10 @@ require (
112110
gopkg.in/warnings.v0 v0.1.2 // indirect
113111
gopkg.in/yaml.v2 v2.4.0 // indirect
114112
gopkg.in/yaml.v3 v3.0.1 // indirect
115-
k8s.io/kube-openapi v0.0.0-20220328201542-3ee0da9b0b42 // indirect
113+
k8s.io/kube-openapi v0.0.0-20241212222426-2c72e554b1e7 // indirect
116114
k8s.io/test-infra v0.0.0-20210730160938-8ad9b8c53bd8 // indirect
117-
sigs.k8s.io/json v0.0.0-20211208200746-9f7c6b3444d2 // indirect
118-
sigs.k8s.io/structured-merge-diff/v4 v4.4.1 // indirect
115+
sigs.k8s.io/json v0.0.0-20221116044647-bc3834ca7abd // indirect
116+
sigs.k8s.io/structured-merge-diff/v4 v4.4.2 // indirect
119117
sigs.k8s.io/yaml v1.4.0 // indirect
120118
)
121119

Diff for: go.sum

+24-24
Large diffs are not rendered by default.

Diff for: vendor/github.com/PuerkitoBio/purell/.gitignore

-5
This file was deleted.

Diff for: vendor/github.com/PuerkitoBio/purell/.travis.yml

-12
This file was deleted.

Diff for: vendor/github.com/PuerkitoBio/purell/LICENSE

-12
This file was deleted.

Diff for: vendor/github.com/PuerkitoBio/purell/README.md

-188
This file was deleted.

0 commit comments

Comments
 (0)