Skip to content

Commit c2685c5

Browse files
committed
Fix more CVE's
Signed-off-by: Maxim Vasilenko <[email protected]>
1 parent adebe21 commit c2685c5

File tree

2 files changed

+220
-213
lines changed

2 files changed

+220
-213
lines changed

go.mod

Lines changed: 65 additions & 65 deletions
Original file line numberDiff line numberDiff line change
@@ -5,14 +5,14 @@ go 1.23.1
55
require (
66
github.com/Masterminds/semver/v3 v3.3.0
77
github.com/deckhouse/virtualization/api v0.0.0-20240326113112-979c4f4f17b9
8-
github.com/google/go-containerregistry v0.19.1
8+
github.com/google/go-containerregistry v0.20.0
99
github.com/gorilla/websocket v1.5.3
1010
github.com/int128/kubelogin v1.28.0
1111
github.com/pkg/errors v0.9.1
1212
github.com/povsister/scp v0.0.0-20210427074412-33febfd9f13e
1313
github.com/samber/lo v1.47.0
1414
github.com/sirupsen/logrus v1.9.3
15-
github.com/spf13/cobra v1.8.0
15+
github.com/spf13/cobra v1.8.1
1616
github.com/spf13/pflag v1.0.5
1717
github.com/stretchr/testify v1.9.0
1818
github.com/werf/3p-helm v0.0.0-20240806141915-3137f4cc1557
@@ -21,11 +21,11 @@ require (
2121
github.com/werf/werf/v2 v2.10.1-0.20240806161101-2bc58b7bad1c
2222
gitlab.com/greyxor/slogor v1.2.11
2323
go.cypherpunks.ru/gogost/v5 v5.13.0
24-
golang.org/x/crypto v0.23.0
25-
golang.org/x/exp v0.0.0-20240325151524-a685a6edb6d8
24+
golang.org/x/crypto v0.26.0
25+
golang.org/x/exp v0.0.0-20240719175910-8a7402abbf56
2626
golang.org/x/sys v0.24.0
27-
golang.org/x/term v0.20.0
28-
golang.org/x/text v0.16.0
27+
golang.org/x/term v0.23.0
28+
golang.org/x/text v0.17.0
2929
k8s.io/apimachinery v0.29.3
3030
k8s.io/client-go v0.29.3
3131
k8s.io/component-base v0.29.3
@@ -38,15 +38,15 @@ require (
3838
dario.cat/mergo v1.0.0 // indirect
3939
github.com/AdaLogics/go-fuzz-headers v0.0.0-20230811130428-ced1acdcaa24 // indirect
4040
github.com/Azure/go-ansiterm v0.0.0-20230124172434-306776ec8161 // indirect
41-
github.com/BurntSushi/toml v1.3.2 // indirect
41+
github.com/BurntSushi/toml v1.4.0 // indirect
4242
github.com/MakeNowJust/heredoc v1.0.0 // indirect
4343
github.com/Masterminds/goutils v1.1.1 // indirect
4444
github.com/Masterminds/semver v1.5.0 // indirect
4545
github.com/Masterminds/sprig/v3 v3.2.3 // indirect
4646
github.com/Masterminds/squirrel v1.5.4 // indirect
4747
github.com/Masterminds/vcs v1.13.3 // indirect
48-
github.com/Microsoft/go-winio v0.6.1 // indirect
49-
github.com/Microsoft/hcsshim v0.12.2 // indirect
48+
github.com/Microsoft/go-winio v0.6.2 // indirect
49+
github.com/Microsoft/hcsshim v0.12.5 // indirect
5050
github.com/ProtonMail/go-crypto v1.0.0 // indirect
5151
github.com/VividCortex/ewma v1.2.0 // indirect
5252
github.com/acarl005/stripansi v0.0.0-20180116102854-5a71ef0e047d // indirect
@@ -58,19 +58,19 @@ require (
5858
github.com/asaskevich/govalidator v0.0.0-20230301143203-a9d515a09cc2 // indirect
5959
github.com/avelino/slugify v0.0.0-20180501145920-855f152bd774 // indirect
6060
github.com/aws/aws-sdk-go v1.51.10 // indirect
61-
github.com/aws/aws-sdk-go-v2 v1.25.0 // indirect
62-
github.com/aws/aws-sdk-go-v2/config v1.26.6 // indirect
63-
github.com/aws/aws-sdk-go-v2/credentials v1.16.16 // indirect
64-
github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.14.11 // indirect
65-
github.com/aws/aws-sdk-go-v2/internal/configsources v1.3.0 // indirect
66-
github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.6.0 // indirect
67-
github.com/aws/aws-sdk-go-v2/internal/ini v1.7.3 // indirect
68-
github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.11.0 // indirect
69-
github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.11.0 // indirect
70-
github.com/aws/aws-sdk-go-v2/service/sso v1.18.7 // indirect
71-
github.com/aws/aws-sdk-go-v2/service/ssooidc v1.21.7 // indirect
72-
github.com/aws/aws-sdk-go-v2/service/sts v1.26.7 // indirect
73-
github.com/aws/smithy-go v1.20.0 // indirect
61+
github.com/aws/aws-sdk-go-v2 v1.26.0 // indirect
62+
github.com/aws/aws-sdk-go-v2/config v1.27.9 // indirect
63+
github.com/aws/aws-sdk-go-v2/credentials v1.17.9 // indirect
64+
github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.16.0 // indirect
65+
github.com/aws/aws-sdk-go-v2/internal/configsources v1.3.4 // indirect
66+
github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.6.4 // indirect
67+
github.com/aws/aws-sdk-go-v2/internal/ini v1.8.0 // indirect
68+
github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.11.1 // indirect
69+
github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.11.6 // indirect
70+
github.com/aws/aws-sdk-go-v2/service/sso v1.20.3 // indirect
71+
github.com/aws/aws-sdk-go-v2/service/ssooidc v1.23.3 // indirect
72+
github.com/aws/aws-sdk-go-v2/service/sts v1.28.5 // indirect
73+
github.com/aws/smithy-go v1.20.1 // indirect
7474
github.com/aymanbagabas/go-udiff v0.2.0 // indirect
7575
github.com/beorn7/perks v1.0.1 // indirect
7676
github.com/blang/semver/v4 v4.0.0 // indirect
@@ -87,40 +87,40 @@ require (
8787
github.com/compose-spec/compose-go/v2 v2.0.0-rc.8 // indirect
8888
github.com/containerd/cgroups/v3 v3.0.3 // indirect
8989
github.com/containerd/console v1.0.4 // indirect
90-
github.com/containerd/containerd v1.7.14 // indirect
90+
github.com/containerd/containerd v1.7.18 // indirect
9191
github.com/containerd/continuity v0.4.3 // indirect
9292
github.com/containerd/errdefs v0.1.0 // indirect
9393
github.com/containerd/log v0.1.0 // indirect
9494
github.com/containerd/stargz-snapshotter/estargz v0.15.1 // indirect
95-
github.com/containerd/ttrpc v1.2.3 // indirect
95+
github.com/containerd/ttrpc v1.2.4 // indirect
9696
github.com/containerd/typeurl/v2 v2.1.1 // indirect
97-
github.com/containernetworking/cni v1.1.2 // indirect
98-
github.com/containernetworking/plugins v1.4.1 // indirect
97+
github.com/containernetworking/cni v1.2.3 // indirect
98+
github.com/containernetworking/plugins v1.5.1 // indirect
9999
github.com/containers/buildah v1.35.1 // indirect
100-
github.com/containers/common v0.58.1 // indirect
101-
github.com/containers/image/v5 v5.30.1 // indirect
100+
github.com/containers/common v0.60.4 // indirect
101+
github.com/containers/image/v5 v5.32.2 // indirect
102102
github.com/containers/libtrust v0.0.0-20230121012942-c1716e8a8d01 // indirect
103103
github.com/containers/luksy v0.0.0-20240312134643-3d2cf0e19c84 // indirect
104-
github.com/containers/ocicrypt v1.1.10 // indirect
105-
github.com/containers/storage v1.53.0 // indirect
106-
github.com/coreos/go-oidc/v3 v3.9.0 // indirect
104+
github.com/containers/ocicrypt v1.2.0 // indirect
105+
github.com/containers/storage v1.55.0 // indirect
106+
github.com/coreos/go-oidc/v3 v3.10.0 // indirect
107107
github.com/coreos/go-systemd/v22 v22.5.0 // indirect
108108
github.com/cpuguy83/go-md2man/v2 v2.0.4 // indirect
109109
github.com/cyberphone/json-canonicalization v0.0.0-20231217050601-ba74d44ecf5f // indirect
110-
github.com/cyphar/filepath-securejoin v0.2.4 // indirect
110+
github.com/cyphar/filepath-securejoin v0.3.1 // indirect
111111
github.com/davecgh/go-spew v1.1.2-0.20180830191138-d8f796af33cc // indirect
112112
github.com/daviddengcn/go-colortext v1.0.0 // indirect
113113
github.com/deislabs/oras v1.1.0 // indirect
114114
github.com/disiqueira/gotree/v3 v3.0.2 // indirect
115-
github.com/distribution/reference v0.5.0 // indirect
115+
github.com/distribution/reference v0.6.0 // indirect
116116
github.com/djherbis/buffer v1.2.0 // indirect
117117
github.com/djherbis/nio/v3 v3.0.1 // indirect
118118
github.com/docker/buildx v0.13.0-rc2 // indirect
119-
github.com/docker/cli v25.0.5+incompatible // indirect
119+
github.com/docker/cli v27.3.1+incompatible // indirect
120120
github.com/docker/cli-docs-tool v0.7.0 // indirect
121121
github.com/docker/distribution v2.8.3+incompatible // indirect
122-
github.com/docker/docker v25.0.6+incompatible // indirect
123-
github.com/docker/docker-credential-helpers v0.8.1 // indirect
122+
github.com/docker/docker v27.3.1+incompatible // indirect
123+
github.com/docker/docker-credential-helpers v0.8.2 // indirect
124124
github.com/docker/go v1.5.1-1.0.20160303222718-d30aec9fd63c // indirect
125125
github.com/docker/go-connections v0.5.0 // indirect
126126
github.com/docker/go-metrics v0.0.1 // indirect
@@ -144,8 +144,8 @@ require (
144144
github.com/go-git/go-billy/v5 v5.5.0 // indirect
145145
github.com/go-git/go-git/v5 v5.11.0 // indirect
146146
github.com/go-gorp/gorp/v3 v3.1.0 // indirect
147-
github.com/go-jose/go-jose/v3 v3.0.3 // indirect
148-
github.com/go-logr/logr v1.4.1 // indirect
147+
github.com/go-jose/go-jose/v4 v4.0.2 // indirect
148+
github.com/go-logr/logr v1.4.2 // indirect
149149
github.com/go-logr/stdr v1.2.2 // indirect
150150
github.com/go-openapi/analysis v0.23.0 // indirect
151151
github.com/go-openapi/errors v0.22.0 // indirect
@@ -171,7 +171,7 @@ require (
171171
github.com/google/gofuzz v1.2.0 // indirect
172172
github.com/google/shlex v0.0.0-20191202100458-e7afc7fbc510 // indirect
173173
github.com/google/uuid v1.6.0 // indirect
174-
github.com/google/wire v0.5.0 // indirect
174+
github.com/google/wire v0.6.0 // indirect
175175
github.com/gookit/color v1.5.4 // indirect
176176
github.com/gorilla/mux v1.8.1 // indirect
177177
github.com/gosuri/uitable v0.0.4 // indirect
@@ -193,7 +193,7 @@ require (
193193
github.com/int128/oauth2dev v1.0.0 // indirect
194194
github.com/jbenet/go-context v0.0.0-20150711004518-d14ea06fba99 // indirect
195195
github.com/jedib0t/go-pretty/v6 v6.5.5 // indirect
196-
github.com/jellydator/ttlcache/v3 v3.1.1 // indirect
196+
github.com/jellydator/ttlcache/v3 v3.2.0 // indirect
197197
github.com/jinzhu/copier v0.4.0 // indirect
198198
github.com/jinzhu/inflection v1.0.0 // indirect
199199
github.com/jmespath/go-jmespath v0.4.0 // indirect
@@ -202,11 +202,11 @@ require (
202202
github.com/josharian/intern v1.0.0 // indirect
203203
github.com/json-iterator/go v1.1.12 // indirect
204204
github.com/kevinburke/ssh_config v1.2.0 // indirect
205-
github.com/klauspost/compress v1.17.7 // indirect
205+
github.com/klauspost/compress v1.17.9 // indirect
206206
github.com/klauspost/pgzip v1.2.6 // indirect
207207
github.com/lann/builder v0.0.0-20180802200727-47ae307949d0 // indirect
208208
github.com/lann/ps v0.0.0-20150810152359-62de8c46ede0 // indirect
209-
github.com/letsencrypt/boulder v0.0.0-20240328001739-6149ac63e632 // indirect
209+
github.com/letsencrypt/boulder v0.0.0-20240418210053-89b07f4543e0 // indirect
210210
github.com/lib/pq v1.10.9 // indirect
211211
github.com/liggitt/tabwriter v0.0.0-20181228230101-89fcab3d43de // indirect
212212
github.com/lithammer/dedent v1.1.0 // indirect
@@ -215,7 +215,7 @@ require (
215215
github.com/manifoldco/promptui v0.9.0 // indirect
216216
github.com/mattn/go-colorable v0.1.13 // indirect
217217
github.com/mattn/go-isatty v0.0.20 // indirect
218-
github.com/mattn/go-runewidth v0.0.15 // indirect
218+
github.com/mattn/go-runewidth v0.0.16 // indirect
219219
github.com/mattn/go-shellwords v1.0.12 // indirect
220220
github.com/mattn/go-sqlite3 v1.14.22 // indirect
221221
github.com/miekg/pkcs11 v1.1.1 // indirect
@@ -230,11 +230,11 @@ require (
230230
github.com/moby/locker v1.0.1 // indirect
231231
github.com/moby/patternmatcher v0.6.0 // indirect
232232
github.com/moby/spdystream v0.2.0 // indirect
233-
github.com/moby/sys/mountinfo v0.7.1 // indirect
233+
github.com/moby/sys/mountinfo v0.7.2 // indirect
234234
github.com/moby/sys/sequential v0.5.0 // indirect
235235
github.com/moby/sys/signal v0.7.0 // indirect
236236
github.com/moby/sys/symlink v0.2.0 // indirect
237-
github.com/moby/sys/user v0.1.0 // indirect
237+
github.com/moby/sys/user v0.3.0 // indirect
238238
github.com/moby/term v0.5.0 // indirect
239239
github.com/modern-go/concurrent v0.0.0-20180306012644-bacd9c7ef1dd // indirect
240240
github.com/modern-go/reflect2 v1.0.2 // indirect
@@ -243,7 +243,7 @@ require (
243243
github.com/munnerz/goautoneg v0.0.0-20191010083416-a7dc8b61c822 // indirect
244244
github.com/mxk/go-flowrate v0.0.0-20140419014527-cca7078d478f // indirect
245245
github.com/oklog/ulid v1.3.1 // indirect
246-
github.com/onsi/gomega v1.32.0 // indirect
246+
github.com/onsi/gomega v1.34.1 // indirect
247247
github.com/opencontainers/go-digest v1.0.0 // indirect
248248
github.com/opencontainers/image-spec v1.1.0 // indirect
249249
github.com/opencontainers/runc v1.1.14 // indirect
@@ -263,8 +263,8 @@ require (
263263
github.com/proglottis/gpgme v0.1.3 // indirect
264264
github.com/prometheus/client_golang v1.19.0 // indirect
265265
github.com/prometheus/client_model v0.6.0 // indirect
266-
github.com/prometheus/common v0.48.0 // indirect
267-
github.com/prometheus/procfs v0.13.0 // indirect
266+
github.com/prometheus/common v0.51.1 // indirect
267+
github.com/prometheus/procfs v0.15.1 // indirect
268268
github.com/rivo/uniseg v0.4.7 // indirect
269269
github.com/rodaine/table v1.1.1 // indirect
270270
github.com/rubenv/sql-migrate v1.6.1 // indirect
@@ -274,16 +274,16 @@ require (
274274
github.com/sergi/go-diff v1.3.1 // indirect
275275
github.com/shibumi/go-pathspec v1.3.0 // indirect
276276
github.com/shopspring/decimal v1.3.1 // indirect
277-
github.com/sigstore/fulcio v1.4.4 // indirect
278-
github.com/sigstore/rekor v1.3.5 // indirect
279-
github.com/sigstore/sigstore v1.8.2 // indirect
277+
github.com/sigstore/fulcio v1.4.5 // indirect
278+
github.com/sigstore/rekor v1.3.6 // indirect
279+
github.com/sigstore/sigstore v1.8.4 // indirect
280280
github.com/skeema/knownhosts v1.2.2 // indirect
281281
github.com/sourcegraph/conc v0.3.0 // indirect
282282
github.com/spaolacci/murmur3 v1.1.0 // indirect
283283
github.com/spf13/cast v1.6.0 // indirect
284284
github.com/stefanberger/go-pkcs11uri v0.0.0-20230803200340-78284954bff6 // indirect
285285
github.com/stretchr/objx v0.5.2 // indirect
286-
github.com/sylabs/sif/v2 v2.16.0 // indirect
286+
github.com/sylabs/sif/v2 v2.18.0 // indirect
287287
github.com/syndtr/gocapability v0.0.0-20200815063812-42c35b437635 // indirect
288288
github.com/tchap/go-patricia/v2 v2.3.1 // indirect
289289
github.com/theupdateframework/notary v0.7.0 // indirect
@@ -295,9 +295,9 @@ require (
295295
github.com/tonistiigi/fsutil v0.0.0-20240301111122-7525a1af2bb5 // indirect
296296
github.com/tonistiigi/units v0.0.0-20180711220420-6950e57a87ea // indirect
297297
github.com/tonistiigi/vt100 v0.0.0-20230623042737-f9a4f7ef6531 // indirect
298-
github.com/ulikunitz/xz v0.5.11 // indirect
298+
github.com/ulikunitz/xz v0.5.12 // indirect
299299
github.com/vbatts/tar-split v0.11.5 // indirect
300-
github.com/vbauerster/mpb/v8 v8.7.2 // indirect
300+
github.com/vbauerster/mpb/v8 v8.7.5 // indirect
301301
github.com/vishvananda/netlink v1.2.1-beta.2 // indirect
302302
github.com/vishvananda/netns v0.0.4 // indirect
303303
github.com/wI2L/jsondiff v0.5.0 // indirect
@@ -311,7 +311,7 @@ require (
311311
github.com/xlab/treeprint v1.2.0 // indirect
312312
github.com/xo/terminfo v0.0.0-20220910002029-abceb7e1c41e // indirect
313313
github.com/zclconf/go-cty v1.14.1 // indirect
314-
go.etcd.io/bbolt v1.3.9 // indirect
314+
go.etcd.io/bbolt v1.3.10 // indirect
315315
go.mongodb.org/mongo-driver v1.14.0 // indirect
316316
go.mozilla.org/pkcs7 v0.0.0-20210826202110-33d05740a352 // indirect
317317
go.opencensus.io v0.24.0 // indirect
@@ -332,21 +332,18 @@ require (
332332
go.opentelemetry.io/proto/otlp v1.1.0 // indirect
333333
go.starlark.net v0.0.0-20231121155337-90ade8b19d09 // indirect
334334
go.uber.org/multierr v1.11.0 // indirect
335-
golang.org/x/mod v0.17.0 // indirect
336-
golang.org/x/net v0.25.0 // indirect
337-
golang.org/x/oauth2 v0.18.0 // indirect
338-
golang.org/x/sync v0.7.0 // indirect
335+
golang.org/x/mod v0.20.0 // indirect
336+
golang.org/x/net v0.28.0 // indirect
337+
golang.org/x/oauth2 v0.22.0 // indirect
338+
golang.org/x/sync v0.8.0 // indirect
339339
golang.org/x/time v0.5.0 // indirect
340-
golang.org/x/tools v0.21.1-0.20240508182429-e35e4ccd0d2d // indirect
341-
google.golang.org/appengine v1.6.8 // indirect
342340
google.golang.org/genproto v0.0.0-20240325203815-454cdb8f5daa // indirect
343341
google.golang.org/genproto/googleapis/api v0.0.0-20240325203815-454cdb8f5daa // indirect
344342
google.golang.org/genproto/googleapis/rpc v0.0.0-20240325203815-454cdb8f5daa // indirect
345-
google.golang.org/grpc v1.62.1 // indirect
346-
google.golang.org/protobuf v1.33.0 // indirect
343+
google.golang.org/grpc v1.64.1 // indirect
344+
google.golang.org/protobuf v1.34.1 // indirect
347345
gopkg.in/errgo.v2 v2.1.0 // indirect
348346
gopkg.in/evanphx/json-patch.v5 v5.8.0 // indirect
349-
gopkg.in/go-jose/go-jose.v2 v2.6.3 // indirect
350347
gopkg.in/inf.v0 v0.9.1 // indirect
351348
gopkg.in/ini.v1 v1.67.0 // indirect
352349
gopkg.in/oleiade/reflections.v1 v1.0.0 // indirect
@@ -372,11 +369,14 @@ require (
372369
sigs.k8s.io/kustomize/kustomize/v5 v5.3.0 // indirect
373370
sigs.k8s.io/kustomize/kyaml v0.16.0 // indirect
374371
sigs.k8s.io/structured-merge-diff/v4 v4.4.1 // indirect
375-
tags.cncf.io/container-device-interface v0.6.2 // indirect
372+
tags.cncf.io/container-device-interface v0.8.0 // indirect
376373
)
377374

378375
replace (
379376
github.com/deislabs/oras => github.com/werf/3p-oras v0.9.1-0.20240115121544-03962ecbd40a // upstream not maintained
377+
github.com/distribution/reference => github.com/distribution/reference v0.5.0
378+
github.com/docker/cli => github.com/docker/cli v25.0.6+incompatible
379+
github.com/docker/docker => github.com/docker/docker v25.0.6+incompatible
380380
github.com/jaguilar/vt100 => github.com/tonistiigi/vt100 v0.0.0-20190402012908-ad4c4a574305 // upstream not maintained
381381
go.cypherpunks.ru/gogost/v5 v5.13.0 => github.com/flant/gogost/v5 v5.13.0
382382
)

0 commit comments

Comments
 (0)