cf-networking-release icon indicating copy to clipboard operation
cf-networking-release copied to clipboard

Fix vet errors and force safe version of consul

Open BooleanCat opened this issue 3 years ago • 3 comments

This ensures no vulnerability to the following CVEs:

  • CVE-2021-37219
  • CVE-2021-3121
  • CVE-2020-7219
  • CVE-2021-38698
  • CVE-2020-25864
  • CVE-2018-19653

BooleanCat avatar Mar 18 '22 12:03 BooleanCat

@geofffranks I'm not able to see the test output from the failure. Lemme know what happened and I'll have a go at fixing it.

BooleanCat avatar Mar 21 '22 17:03 BooleanCat

@BooleanCat The ci failure was because there are some vendor files missing from the package specs.

Can you run ./scripts/sync-package-specs and try again?

geofffranks avatar Apr 01 '22 13:04 geofffranks

@BooleanCat Any updates on this?

geofffranks avatar May 16 '22 20:05 geofffranks

Closing this out to be replaced by #180. I'd like to get this done/merged, but @BooleanCat seems to be off the project driving this, and I need a new branch to fix the package sync script issue + resolve conflicts.

geofffranks avatar Nov 10 '22 15:11 geofffranks