eks-anywhere-build-tooling icon indicating copy to clipboard operation
eks-anywhere-build-tooling copied to clipboard

Upgrade go version for harbor-scanner-trivy to 1.24

Open peirulu opened this issue 7 months ago • 2 comments

Harbor-Scanner-Trivy

Description of changes:

  • Upgrade go version of goharbor/harbor-scanner-trivy to 1.24.2 to resolve CVE

patches:

  • change the go.mod version from 1.22 to 1.24.2

Testing:

  • make build

Distribution

Description of changes:

  • Upgrade go version of distribution/distribution to 1.24.2 to resolve CVE

patches:

  • [0001-harbor-patch]
  • [0002-migrate-to-go-module]
    • The two patches above are the previous existing patch for Redis Sentinel and replace letsencrypt(deprecated) with autocert and add go.mod + go.sum
  • [0003-update-go.mod-and-go.sum]
    • the module github.com/garyburd/redigo is deprecated , replace it with github.com/gomodule/redigo
  • [0004-upgrade-go-version-to-1.24.2-and-fix-CVE]
    • Upgrade the go version to 1.24.2 and upgrade some modules' tag to solve CVE

Testing:

  • make build

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the terms of your choice.

peirulu avatar May 07 '25 23:05 peirulu

/lgtm /approve

jhaanvi5 avatar May 08 '25 16:05 jhaanvi5

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: jhaanvi5

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment Approvers can cancel approval by writing /approve cancel in a comment

eks-distro-bot avatar May 08 '25 16:05 eks-distro-bot