From 7dc02f727927ffee134a56fb68725b17696aed0e Mon Sep 17 00:00:00 2001 From: pjuarezd Date: Tue, 2 Jul 2024 18:24:20 -0600 Subject: [PATCH 1/4] update go to 1.22.5 to fix vulnerable package net/http ``` Vulnerability #1: GO-2024-2963 Denial of service due to improper 100-continue handling in net/http More info: https://pkg.go.dev/vuln/GO-2024-2963 Standard library Found in: net/http@go1.22.4 Fixed in: net/http@go1.22.5 ``` Signed-off-by: pjuarezd --- go.mod | 4 +--- sidecar/go.mod | 4 +--- 2 files changed, 2 insertions(+), 6 deletions(-) diff --git a/go.mod b/go.mod index ec9aa5598d5..f7b286d3887 100644 --- a/go.mod +++ b/go.mod @@ -1,8 +1,6 @@ module github.com/minio/operator -go 1.22.0 - -toolchain go1.22.4 +go 1.22.5 require ( github.com/blang/semver/v4 v4.0.0 diff --git a/sidecar/go.mod b/sidecar/go.mod index f3ad16c6299..1cfd3ca1084 100644 --- a/sidecar/go.mod +++ b/sidecar/go.mod @@ -1,8 +1,6 @@ module github.com/minio/operator/sidecar -go 1.22.0 - -toolchain go1.22.4 +go 1.22.5 require ( github.com/gorilla/mux v1.8.1 From f79bb638f51b7a16adde52a4ccccee6540632eb3 Mon Sep 17 00:00:00 2001 From: Harshavardhana Date: Tue, 2 Jul 2024 17:32:51 -0700 Subject: [PATCH 2/4] Update go.mod --- go.mod | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/go.mod b/go.mod index f7b286d3887..ed41c8ca9eb 100644 --- a/go.mod +++ b/go.mod @@ -1,6 +1,6 @@ module github.com/minio/operator -go 1.22.5 +go 1.22 require ( github.com/blang/semver/v4 v4.0.0 From aa5c9c48dafcd374882b463ddb6424a6df47abb4 Mon Sep 17 00:00:00 2001 From: Harshavardhana Date: Tue, 2 Jul 2024 17:32:56 -0700 Subject: [PATCH 3/4] Update sidecar/go.mod --- sidecar/go.mod | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/sidecar/go.mod b/sidecar/go.mod index 1cfd3ca1084..fe1defcdfe8 100644 --- a/sidecar/go.mod +++ b/sidecar/go.mod @@ -1,6 +1,6 @@ module github.com/minio/operator/sidecar -go 1.22.5 +go 1.22 require ( github.com/gorilla/mux v1.8.1 From cf32a06453b78b6ba06aa1c6528b3d4baed8eae9 Mon Sep 17 00:00:00 2001 From: Harshavardhana Date: Tue, 2 Jul 2024 21:39:54 -0700 Subject: [PATCH 4/4] update go.mod's --- go.mod | 2 +- sidecar/go.mod | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/go.mod b/go.mod index ed41c8ca9eb..f7b286d3887 100644 --- a/go.mod +++ b/go.mod @@ -1,6 +1,6 @@ module github.com/minio/operator -go 1.22 +go 1.22.5 require ( github.com/blang/semver/v4 v4.0.0 diff --git a/sidecar/go.mod b/sidecar/go.mod index fe1defcdfe8..1cfd3ca1084 100644 --- a/sidecar/go.mod +++ b/sidecar/go.mod @@ -1,6 +1,6 @@ module github.com/minio/operator/sidecar -go 1.22 +go 1.22.5 require ( github.com/gorilla/mux v1.8.1