Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Upgrade go-proxyproto to v0.6.1 to fix vulnerabilities #9425

Merged
merged 1 commit into from
Dec 22, 2021

Conversation

frouioui
Copy link
Member

@frouioui frouioui commented Dec 20, 2021

Description

This pull request upgrades the go-proxyproto package to version v0.6.1 (https://github.com/pires/go-proxyproto/releases/tag/v0.6.1). A couple of vulnerabilities were found in versions < 0.6.0:

Checklist

  • Should this PR be backported?
  • Tests were added or are not required
  • Documentation was added or is not required

Signed-off-by: Florent Poinsard <florent.poinsard@outlook.fr>
@frouioui frouioui added Component: Build/CI dependencies Pull requests that update a dependency file release notes Type: Dependencies Dependency updates labels Dec 20, 2021
@frouioui frouioui changed the title Upgrade go-proxyproto to v0.6.1 to fix vulnerability CVE-2021-23409 Upgrade go-proxyproto to v0.6.1 to fix vulnerabilities Dec 20, 2021
@frouioui frouioui changed the title Upgrade go-proxyproto to v0.6.1 to fix vulnerabilities Upgrade go-proxyproto to v0.6.1 to fix vulnerabilities Dec 20, 2021
@frouioui frouioui merged commit ea7010e into vitessio:main Dec 22, 2021
@frouioui frouioui deleted the update-deps-go-proxyproto branch December 22, 2021 01:16
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Component: Build/CI dependencies Pull requests that update a dependency file Type: Dependencies Dependency updates
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants