core icon indicating copy to clipboard operation
core copied to clipboard

chore(deps): bump phpseclib/phpseclib from 3.0.43 to 3.0.44

Open dependabot[bot] opened this issue 7 months ago • 3 comments

Bumps phpseclib/phpseclib from 3.0.43 to 3.0.44.

Release notes

Sourced from phpseclib/phpseclib's releases.

3.0.44

  • SSH2: add send_eof() method (#2062)
  • SSH2: server identification string handling enhancements (#2082, #2083)
  • SSH2: shore up terrapin counter measures
  • SSH2: fix for packets sent between KEXINIT packets (#2084)
  • SFTP: convert filenames to strings (#2065)
  • Hash: add cmac_aes algorithm (#1967)
  • ASN1: support tags with values >= 30 (#2066)
  • PublicKeyLoader: improve handling of bad keys (#2077, #2079)
  • RSA: fix for keys with negative modulos (#2085)
  • BigInteger: adjust priority with which BCMath is used for PHP 8.4+
Changelog

Sourced from phpseclib/phpseclib's changelog.

3.0.44 - 2025-06-15

  • SSH2: add send_eof() method (#2062)
  • SSH2: server identification string handling enhancements (#2082, #2083)
  • SSH2: shore up terrapin counter measures
  • SSH2: fix for packets sent between KEXINIT packets (#2084)
  • SFTP: convert filenames to strings (#2065)
  • Hash: add cmac_aes algorithm (#1967)
  • ASN1: support tags with values >= 30 (#2066)
  • PublicKeyLoader: improve handling of bad keys (#2077, #2079)
  • RSA: fix for keys with negative modulos (#2085)
  • BigInteger: adjust priority with which BCMath is used for PHP 8.4+
Commits
  • 1d0b5e7 CHANGELOG: add 3.0.44 release
  • 6d130ad BigInteger: PHP 8.4 significantly sped up BCMath
  • e412112 RSA: fix for keys with negative modulos
  • 4a4d492 Tests/RSA: add unit test for negative modulos
  • 1ad2fee Merge branch '2.0' into 3.0
  • 717901b SSH2: shore up terrapin counter measures
  • c4de6e9 SSH2: fix for packets sent between KEXINIT packets
  • c28b121 Merge branch '1.0' into 2.0
  • 95c7b63 SSH2: allow SSH_MSG_IGNORE before SSH_MSG_KEXDH_REPLY
  • 5e3e631 Merge branch '2.0' into 3.0
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

dependabot[bot] avatar Jun 16 '25 23:06 dependabot[bot]

The reviewers field in the dependabot.yml file will be removed soon. Please use the code owners file to specify reviewers for Dependabot PRs. For more information, see this blog post.

dependabot[bot] avatar Jun 16 '25 23:06 dependabot[bot]

Thanks for opening this pull request! The maintainers of this repository would appreciate it if you would create a changelog item based on your changes.

update-docs[bot] avatar Jun 16 '25 23:06 update-docs[bot]

Superseded by #41377.

dependabot[bot] avatar Jun 24 '25 01:06 dependabot[bot]