Skip to content

Commit e61b864

Browse files
committed
fix(build): bump go core and cypto modules to avoid CVE
Signed-off-by: Phil Adams <[email protected]>
1 parent c2d9dd9 commit e61b864

File tree

6 files changed

+31
-72
lines changed

6 files changed

+31
-72
lines changed

.github/workflows/build.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -44,7 +44,7 @@ jobs:
4444
runs-on: ubuntu-latest
4545
strategy:
4646
matrix:
47-
go-version: ['1.22', '1.23', '1.24']
47+
go-version: ['1.23', '1.24']
4848

4949
steps:
5050
- name: Checkout repository

.secrets.baseline

Lines changed: 11 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@
33
"files": "go.sum|^.secrets.baseline$|_test.go|package-lock.json|.cra/.cveignore",
44
"lines": null
55
},
6-
"generated_at": "2025-02-11T14:05:14Z",
6+
"generated_at": "2025-03-07T16:46:34Z",
77
"plugins_used": [
88
{
99
"name": "AWSKeyDetector"
@@ -70,55 +70,55 @@
7070
"hashed_secret": "dc893c9c63b0a9f1ac2b956b807ee3d8bc8e1128",
7171
"is_secret": false,
7272
"is_verified": false,
73-
"line_number": 6216,
73+
"line_number": 6210,
7474
"type": "Secret Keyword",
7575
"verified_result": null
7676
},
7777
{
7878
"hashed_secret": "c334fe1f9004e339ead59696c029181963999ff3",
7979
"is_secret": false,
8080
"is_verified": false,
81-
"line_number": 6240,
81+
"line_number": 6234,
8282
"type": "Secret Keyword",
8383
"verified_result": null
8484
},
8585
{
8686
"hashed_secret": "f971798ba28d8d6a66ee5bdea060b751a078c2fa",
8787
"is_secret": false,
8888
"is_verified": false,
89-
"line_number": 6349,
89+
"line_number": 6343,
9090
"type": "Secret Keyword",
9191
"verified_result": null
9292
},
9393
{
9494
"hashed_secret": "e7369ac81427d43f7615f691cd1cf5c3ef9b2f00",
9595
"is_secret": false,
9696
"is_verified": false,
97-
"line_number": 6373,
97+
"line_number": 6367,
9898
"type": "Secret Keyword",
9999
"verified_result": null
100100
},
101101
{
102102
"hashed_secret": "bc31992082895a108753616f5be455b3e897bb29",
103103
"is_secret": false,
104104
"is_verified": false,
105-
"line_number": 6568,
105+
"line_number": 6562,
106106
"type": "Secret Keyword",
107107
"verified_result": null
108108
},
109109
{
110110
"hashed_secret": "21ac4c0699bb3f370e2c21331fd8606739b1079b",
111111
"is_secret": false,
112112
"is_verified": false,
113-
"line_number": 6592,
113+
"line_number": 6586,
114114
"type": "Secret Keyword",
115115
"verified_result": null
116116
},
117117
{
118118
"hashed_secret": "6452e7c5a42f97b00af1a210afc7d4de315e57ec",
119119
"is_secret": false,
120120
"is_verified": false,
121-
"line_number": 24728,
121+
"line_number": 24694,
122122
"type": "Secret Keyword",
123123
"verified_result": null
124124
}
@@ -258,23 +258,23 @@
258258
"hashed_secret": "d4c3d66fd0c38547a3c7a4c6bdc29c36911bc030",
259259
"is_secret": false,
260260
"is_verified": false,
261-
"line_number": 4071,
261+
"line_number": 4069,
262262
"type": "Secret Keyword",
263263
"verified_result": null
264264
},
265265
{
266266
"hashed_secret": "6452e7c5a42f97b00af1a210afc7d4de315e57ec",
267267
"is_secret": false,
268268
"is_verified": false,
269-
"line_number": 4121,
269+
"line_number": 4119,
270270
"type": "Secret Keyword",
271271
"verified_result": null
272272
},
273273
{
274274
"hashed_secret": "2ba67e1adc3e8130403f16750f55f9949d877cec",
275275
"is_secret": false,
276276
"is_verified": false,
277-
"line_number": 7672,
277+
"line_number": 7670,
278278
"type": "Secret Keyword",
279279
"verified_result": null
280280
}

.travis.yml

Lines changed: 0 additions & 43 deletions
This file was deleted.

README.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -84,7 +84,7 @@ Service Name | Package name
8484
* An [IBM Cloud][ibm-cloud-onboarding] account.
8585
* An IAM API key to allow the SDK to access your account. Create one
8686
[here](https://cloud.ibm.com/iam/apikeys).
87-
* Go version 1.22 or above.
87+
* Go version 1.23 or above.
8888

8989
## Installation
9090
The current version of this SDK: 0.78.0

go.mod

Lines changed: 8 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -1,9 +1,11 @@
11
module github.com/IBM/platform-services-go-sdk
22

3-
go 1.22
3+
go 1.23.0
4+
5+
toolchain go1.23.6
46

57
require (
6-
github.com/IBM/go-sdk-core/v5 v5.18.5
8+
github.com/IBM/go-sdk-core/v5 v5.19.0
79
github.com/go-openapi/strfmt v0.23.0
810
github.com/google/uuid v1.6.0
911
github.com/onsi/ginkgo v1.16.5
@@ -29,10 +31,10 @@ require (
2931
github.com/oklog/ulid v1.3.1 // indirect
3032
github.com/pmezard/go-difflib v1.0.0 // indirect
3133
go.mongodb.org/mongo-driver v1.17.2 // indirect
32-
golang.org/x/crypto v0.33.0 // indirect
33-
golang.org/x/net v0.35.0 // indirect
34-
golang.org/x/sys v0.30.0 // indirect
35-
golang.org/x/text v0.22.0 // indirect
34+
golang.org/x/crypto v0.36.0 // indirect
35+
golang.org/x/net v0.37.0 // indirect
36+
golang.org/x/sys v0.31.0 // indirect
37+
golang.org/x/text v0.23.0 // indirect
3638
gopkg.in/tomb.v1 v1.0.0-20141024135613-dd632973f1e7 // indirect
3739
gopkg.in/yaml.v2 v2.4.0 // indirect
3840
gopkg.in/yaml.v3 v3.0.1 // indirect

go.sum

Lines changed: 10 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,5 @@
1-
github.com/IBM/go-sdk-core/v5 v5.18.5 h1:g0JRl3sYXJczB/yuDlrN6x22LJ6jIxhp0Sa4ARNW60c=
2-
github.com/IBM/go-sdk-core/v5 v5.18.5/go.mod h1:KonTFRR+8ZSgw5cxBSYo6E4WZoY1+7n1kfHM82VcjFU=
1+
github.com/IBM/go-sdk-core/v5 v5.19.0 h1:YN2S5JUvq/EwYulmcNFwgyYBxZhVWl9nkY22H7Hpghw=
2+
github.com/IBM/go-sdk-core/v5 v5.19.0/go.mod h1:deZO1J5TSlU69bCnl/YV7nPxFZA2UEaup7cq/7ZTOgw=
33
github.com/asaskevich/govalidator v0.0.0-20230301143203-a9d515a09cc2 h1:DklsrG3dyBCFEj5IhUbnKptjxatkF07cF2ak3yi77so=
44
github.com/asaskevich/govalidator v0.0.0-20230301143203-a9d515a09cc2/go.mod h1:WaHUgvxTVq04UNunO+XhnAqY/wQc+bxr74GqbsZ/Jqw=
55
github.com/davecgh/go-spew v1.1.0/go.mod h1:J7Y8YcW2NihsgmVo/mv3lAwl/skON4iLHjSsI+c5H38=
@@ -94,16 +94,16 @@ go.mongodb.org/mongo-driver v1.17.2/go.mod h1:Hy04i7O2kC4RS06ZrhPRqj/u4DTYkFDAAc
9494
golang.org/x/crypto v0.0.0-20190308221718-c2843e01d9a2/go.mod h1:djNgcEr1/C05ACkg1iLfiJU5Ep61QUkGW8qpdssI0+w=
9595
golang.org/x/crypto v0.0.0-20191011191535-87dc89f01550/go.mod h1:yigFU9vqHzYiE8UmvKecakEJjdnWj3jj499lnFckfCI=
9696
golang.org/x/crypto v0.0.0-20200622213623-75b288015ac9/go.mod h1:LzIPMQfyMNhhGPhUkYOs5KpL4U8rLKemX1yGLhDgUto=
97-
golang.org/x/crypto v0.33.0 h1:IOBPskki6Lysi0lo9qQvbxiQ+FvsCC/YWOecCHAixus=
98-
golang.org/x/crypto v0.33.0/go.mod h1:bVdXmD7IV/4GdElGPozy6U7lWdRXA4qyRVGJV57uQ5M=
97+
golang.org/x/crypto v0.36.0 h1:AnAEvhDddvBdpY+uR+MyHmuZzzNqXSe/GvuDeob5L34=
98+
golang.org/x/crypto v0.36.0/go.mod h1:Y4J0ReaxCR1IMaabaSMugxJES1EpwhBHhv2bDHklZvc=
9999
golang.org/x/mod v0.3.0/go.mod h1:s0Qsj1ACt9ePp/hMypM3fl4fZqREWJwdYDEqhRiZZUA=
100100
golang.org/x/net v0.0.0-20180906233101-161cd47e91fd/go.mod h1:mL1N/T3taQHkDXs73rZJwtUhF3w3ftmwwsq0BUmARs4=
101101
golang.org/x/net v0.0.0-20190404232315-eb5bcb51f2a3/go.mod h1:t9HGtf8HONx5eT2rtn7q6eTqICYqUVnKs3thJo3Qplg=
102102
golang.org/x/net v0.0.0-20190620200207-3b0461eec859/go.mod h1:z5CRVTTTmAJ677TzLLGU+0bjPO0LkuOLi4/5GtJWs/s=
103103
golang.org/x/net v0.0.0-20200520004742-59133d7f0dd7/go.mod h1:qpuaurCH72eLCgpAm/N6yyVIVM9cpaDIP3A8BGJEC5A=
104104
golang.org/x/net v0.0.0-20201021035429-f5854403a974/go.mod h1:sp8m0HH+o8qH0wwXwYZr8TS3Oi6o0r6Gce1SSxlDquU=
105-
golang.org/x/net v0.35.0 h1:T5GQRQb2y08kTAByq9L4/bz8cipCdA8FbRTXewonqY8=
106-
golang.org/x/net v0.35.0/go.mod h1:EglIi67kWsHKlRzzVMUD93VMSWGFOMSZgxFjparz1Qk=
105+
golang.org/x/net v0.37.0 h1:1zLorHbz+LYj7MQlSf1+2tPIIgibq2eL5xkrGk6f+2c=
106+
golang.org/x/net v0.37.0/go.mod h1:ivrbrMbzFq5J41QOQh0siUuly180yBYtLp+CKbEaFx8=
107107
golang.org/x/sync v0.0.0-20180314180146-1d60e4601c6f/go.mod h1:RxMgew5VJxzue5/jJTE5uejpjVlOe/izrB70Jof72aM=
108108
golang.org/x/sync v0.0.0-20190423024810-112230192c58/go.mod h1:RxMgew5VJxzue5/jJTE5uejpjVlOe/izrB70Jof72aM=
109109
golang.org/x/sync v0.0.0-20201020160332-67f06af15bc9/go.mod h1:RxMgew5VJxzue5/jJTE5uejpjVlOe/izrB70Jof72aM=
@@ -117,12 +117,12 @@ golang.org/x/sys v0.0.0-20200323222414-85ca7c5b95cd/go.mod h1:h1NjWce9XRLGQEsW7w
117117
golang.org/x/sys v0.0.0-20200930185726-fdedc70b468f/go.mod h1:h1NjWce9XRLGQEsW7wpKNCjG9DtNlClVuFLEZdDNbEs=
118118
golang.org/x/sys v0.0.0-20210112080510-489259a85091/go.mod h1:h1NjWce9XRLGQEsW7wpKNCjG9DtNlClVuFLEZdDNbEs=
119119
golang.org/x/sys v0.0.0-20220908164124-27713097b956/go.mod h1:oPkhp1MJrh7nUepCBck5+mAzfO9JrbApNNgaTdGDITg=
120-
golang.org/x/sys v0.30.0 h1:QjkSwP/36a20jFYWkSue1YwXzLmsV5Gfq7Eiy72C1uc=
121-
golang.org/x/sys v0.30.0/go.mod h1:/VUhepiaJMQUp4+oa/7Zr1D23ma6VTLIYjOOTFZPUcA=
120+
golang.org/x/sys v0.31.0 h1:ioabZlmFYtWhL+TRYpcnNlLwhyxaM9kWTDEmfnprqik=
121+
golang.org/x/sys v0.31.0/go.mod h1:BJP2sWEmIv4KK5OTEluFJCKSidICx8ciO85XgH3Ak8k=
122122
golang.org/x/text v0.3.0/go.mod h1:NqM8EUOU14njkJ3fqMW+pc6Ldnwhi/IjpwHt7yyuwOQ=
123123
golang.org/x/text v0.3.3/go.mod h1:5Zoc/QRtKVWzQhOtBMvqHzDpF6irO9z98xDceosuGiQ=
124-
golang.org/x/text v0.22.0 h1:bofq7m3/HAFvbF51jz3Q9wLg3jkvSPuiZu/pD1XwgtM=
125-
golang.org/x/text v0.22.0/go.mod h1:YRoo4H8PVmsu+E3Ou7cqLVH8oXWIHVoX0jqUWALQhfY=
124+
golang.org/x/text v0.23.0 h1:D71I7dUrlY+VX0gQShAThNGHFxZ13dGLBHQLVl1mJlY=
125+
golang.org/x/text v0.23.0/go.mod h1:/BLNzu4aZCJ1+kcD0DNRotWKage4q2rGVAg4o22unh4=
126126
golang.org/x/tools v0.0.0-20180917221912-90fa682c2a6e/go.mod h1:n7NCudcB/nEzxVGmLbDWY5pfWTLqBcC2KZ6jyYvM4mQ=
127127
golang.org/x/tools v0.0.0-20191119224855-298f0cb1881e/go.mod h1:b+2E5dAYhXwXZwtnZ6UAqBI28+e2cm9otk0dWdXHAEo=
128128
golang.org/x/tools v0.0.0-20201224043029-2b0845dc783e/go.mod h1:emZCQorbCU4vsT4fOWvOPXz4eW1wZW4PmDk9uLelYpA=

0 commit comments

Comments
 (0)