Skip to content

Conversation

@mostafa
Copy link
Member

@mostafa mostafa commented Jan 25, 2025

Ticket(s)

N/A

Description

  • Update Go to v1.23.5
  • Update deps
  • Update Alpine and packages in Dockerfile

Related PRs

N/A

Development Checklist

  • I have added a descriptive title to this PR.
  • I have squashed related commits together.
  • I have rebased my branch on top of the latest main branch.
  • I have performed a self-review of my own code.
  • I have commented on my code, particularly in hard-to-understand areas.
  • I have added docstring(s) to my code.
  • I have made corresponding changes to the documentation (docs).
  • I have updated docs using make gen-docs command.
  • I have added tests for my changes.
  • I have signed all the commits.

Legal Checklist

@github-actions
Copy link

github-actions bot commented Jan 25, 2025

Overview

Image reference ghcr.io/gatewayd-io/gatewayd:5e67670 gatewaydio/gatewayd:latest
- digest adfca0b0b113 383013efa302
- tag 5e67670 latest
- provenance b6df86a
- vulnerabilities critical: 1 high: 1 medium: 0 low: 0 critical: 1 high: 2 medium: 1 low: 0
- platform linux/amd64 linux/amd64
- size 20 MB 18 MB (-2.4 MB)
- packages 146 140 (-6)
Base Image alpine:3
also known as:
3.21
3.21.2
latest
alpine:3.20
also known as:
3
latest
- vulnerabilities critical: 0 high: 0 medium: 0 low: 0 critical: 0 high: 0 medium: 1 low: 0
Packages and Vulnerabilities (51 package changes and 1 vulnerability changes)
  • ➕ 1 packages added
  • ➖ 6 packages removed
  • ♾️ 44 packages changed
  • 91 packages unchanged
  • ❗ 1 vulnerabilities added
Changes for packages of type apk (19 changes)
Package Version
ghcr.io/gatewayd-io/gatewayd:5e67670
Version
gatewaydio/gatewayd:latest
alpine-base 3.21.2-r0
♾️ alpine-baselayout 3.6.8-r1 3.6.5-r0
♾️ alpine-baselayout-data 3.6.8-r1 3.6.5-r0
♾️ alpine-keys 2.5-r0 2.4-r1
alpine-release 3.21.2-r0
♾️ apk-tools 2.14.6-r2 2.14.4-r0
♾️ busybox 1.37.0-r9 1.36.1-r29
♾️ busybox-binsh 1.37.0-r9 1.36.1-r29
ca-certificates 20241121-r1
♾️ ca-certificates-bundle 20241121-r1 20240705-r0
♾️ libcrypto3 3.3.2-r4 3.3.2-r0
♾️ libssl3 3.3.2-r4 3.3.2-r0
♾️ musl 1.2.5-r8 1.2.5-r0
♾️ musl-utils 1.2.5-r8 1.2.5-r0
openssl 3.3.2-r4
pax-utils 1.3.8-r1
♾️ scanelf 1.3.8-r1 1.3.7-r2
♾️ ssl_client 1.37.0-r9 1.36.1-r29
♾️ zlib 1.3.1-r2 1.3.1-r1
Changes for packages of type golang (32 changes)
Package Version
ghcr.io/gatewayd-io/gatewayd:5e67670
Version
gatewaydio/gatewayd:latest
♾️ github.com/envoyproxy/protoc-gen-validate 1.2.1 1.1.0
♾️ github.com/gatewayd-io/gatewayd (devel) 0.0.0-20241214123014-b6df86a6fe94
♾️ github.com/gatewayd-io/gatewayd-plugin-sdk 0.4.0 0.3.5
♾️ github.com/getsentry/sentry-go 0.31.1 0.30.0
♾️ github.com/grpc-ecosystem/grpc-gateway/v2 2.26.0 2.24.0
github.com/hashicorp/go-metrics 0.5.4
♾️ github.com/hashicorp/go-plugin 1.6.3 1.6.2
♾️ github.com/hashicorp/raft 1.7.2 1.7.1
♾️ github.com/hashicorp/raft-boltdb 0.0.0-20250113192317-e8660f88bcc9 0.0.0-20241202213821-f9dd2ba30efd
♾️ github.com/invopop/jsonschema 0.13.0 0.12.0
♾️ github.com/jackc/pgx/v5 5.7.2 5.7.1
♾️ github.com/mattn/go-colorable 0.1.14 0.1.13
♾️ github.com/pganalyze/pg_query_go/v5 6.0.0 5.1.0
♾️ github.com/prometheus/common 0.62.0 0.61.0
♾️ github.com/spf13/cast 1.7.1 1.7.0
♾️ github.com/wasilibs/go-pgquery 0.0.0-20241226024732-8bfaa0ac5969 0.0.0-20241011013927-817756c5aae4
♾️ github.com/wasilibs/wazero-helpers 0.0.0-20250123031827-cd30c44769bb 0.0.0-20240620070341-3dff1577cd52
♾️ go.opentelemetry.io/otel 1.34.0 1.33.0
♾️ go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc 1.34.0 1.33.0
♾️ go.opentelemetry.io/otel/metric 1.34.0 1.33.0
♾️ go.opentelemetry.io/otel/sdk 1.34.0 1.33.0
♾️ go.opentelemetry.io/otel/trace 1.34.0 1.33.0
♾️ go.opentelemetry.io/proto/otlp 1.5.0 1.4.0
♾️ golang.org/x/crypto 0.32.0 0.31.0
golang.org/x/exp 0.0.0-20241210194714-1829a127f884
♾️ golang.org/x/net 0.34.0 0.32.0
critical: 0 high: 1 medium: 0 low: 0
Added vulnerabilities (1):
  • high : CVE--2024--45338
♾️ golang.org/x/oauth2 0.25.0 0.24.0
♾️ golang.org/x/sys 0.29.0 0.28.0
♾️ google.golang.org/genproto/googleapis/rpc 0.0.0-20250124145028-65684f501c47 0.0.0-20241209162323-e6fa225c2576
♾️ google.golang.org/grpc 1.70.0 1.69.0
♾️ google.golang.org/protobuf 1.36.4 1.35.2
♾️ stdlib go1.23.5 1.23.4

@mostafa mostafa marked this pull request as ready for review January 25, 2025 21:37
@mostafa mostafa merged commit c629f90 into main Jan 25, 2025
5 checks passed
@mostafa mostafa deleted the update-deps branch January 25, 2025 21:45
sinadarbouy pushed a commit that referenced this pull request Feb 18, 2025
* Update SDK
* Update direct deps
* Add install-deps target
* Regenerate stubs
* Update alpine and its packages
* Fix linter errors
* Increase timeout
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants