Skip to content

Commit 8c1948d

Browse files
authored
Merge pull request #1745 from andyzhangx/CVE-2024-45337
fix: CVE-2024-45337
2 parents 974e625 + 4a0602d commit 8c1948d

File tree

5 files changed

+16
-8
lines changed

5 files changed

+16
-8
lines changed

.trivyignore

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
CVE-2024-45337

go.mod

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -139,7 +139,7 @@ require (
139139
go.opentelemetry.io/proto/otlp v1.3.1 // indirect
140140
go.uber.org/multierr v1.11.0 // indirect
141141
go.uber.org/zap v1.26.0 // indirect
142-
golang.org/x/crypto v0.30.0 // indirect
142+
golang.org/x/crypto v0.31.0 // indirect
143143
golang.org/x/exp v0.0.0-20240719175910-8a7402abbf56 // indirect
144144
golang.org/x/oauth2 v0.23.0 // indirect
145145
golang.org/x/sys v0.28.0 // indirect

go.sum

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -324,8 +324,8 @@ golang.org/x/crypto v0.0.0-20210921155107-089bfa567519/go.mod h1:GvvjBRRGRdwPK5y
324324
golang.org/x/crypto v0.0.0-20220722155217-630584e8d5aa/go.mod h1:IxCIyHEi3zRg3s0A5j5BB6A9Jmi73HwBIUl50j+osU4=
325325
golang.org/x/crypto v0.6.0/go.mod h1:OFC/31mSvZgRz0V1QTNCzfAI1aIRzbiufJtkMIlEp58=
326326
golang.org/x/crypto v0.17.0/go.mod h1:gCAAfMLgwOJRpTjQ2zCCt2OcSfYMTeZVSRtQlPC7Nq4=
327-
golang.org/x/crypto v0.30.0 h1:RwoQn3GkWiMkzlX562cLB7OxWvjH1L8xutO2WoJcRoY=
328-
golang.org/x/crypto v0.30.0/go.mod h1:kDsLvtWBEx7MV9tJOj9bnXsPbxwJQ6csT/x4KIN4Ssk=
327+
golang.org/x/crypto v0.31.0 h1:ihbySMvVjLAeSH1IbfcRTkD/iNscyz8rGzjF/E5hV6U=
328+
golang.org/x/crypto v0.31.0/go.mod h1:kDsLvtWBEx7MV9tJOj9bnXsPbxwJQ6csT/x4KIN4Ssk=
329329
golang.org/x/exp v0.0.0-20240719175910-8a7402abbf56 h1:2dVuKD2vS7b0QIHQbpyTISPd0LeHDbnYEryqj5Q1ug8=
330330
golang.org/x/exp v0.0.0-20240719175910-8a7402abbf56/go.mod h1:M4RDyNAINzryxdtnbRXRL/OHtkFuWGRjvuhBJpk2IlY=
331331
golang.org/x/mod v0.2.0/go.mod h1:s0Qsj1ACt9ePp/hMypM3fl4fZqREWJwdYDEqhRiZZUA=

vendor/golang.org/x/crypto/ssh/server.go

Lines changed: 11 additions & 4 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

vendor/modules.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -570,7 +570,7 @@ go.uber.org/zap/internal/pool
570570
go.uber.org/zap/internal/stacktrace
571571
go.uber.org/zap/zapcore
572572
go.uber.org/zap/zapgrpc
573-
# golang.org/x/crypto v0.30.0
573+
# golang.org/x/crypto v0.31.0
574574
## explicit; go 1.20
575575
golang.org/x/crypto/blowfish
576576
golang.org/x/crypto/chacha20

0 commit comments

Comments
 (0)