Tero Saarni

Results 119 comments of Tero Saarni

Hi @Ozarklake, I did a short search in Envoy issues, but so far I did not find ticket discussing the option of having Envoy execute the OCSP request to fetch...

@Ozarklake > So it would be great if it could be implemented in Envoy, which would make Envoy a better edge proxy server. > > But implementing it in an...

>> By the way, please consider reporting such issues at [[email protected]](mailto:[email protected]) in the future instead, see New Issue/Report Security Vulnerability, thanks > Sure, even if it is a public CVE,...

May I ask one clarification for the GEP update? In the GEP is said that the initial list of properties to add includes "_TLS information for connection from the Gateway...

I continued iterating with the release versions. It is not individual file hashes that trigger the alert but it is this function: https://github.com/pouchdb/pouchdb/blob/2e2aa6c4e0157be2636effec40be04c779f1d4c8/dist/pouchdb.js#L7998-L8022 If I remove that function from v7.3.0...

I have submitted report to ClamAV at https://www.clamav.net/reports/fp, linking back to this github issue.

This still seems to be an issue today: ```console $ docker run --rm -it clamav/clamav /bin/ash / # wget https://github.com/pouchdb/pouchdb/releases/download/7.3.0/pouchdb-7.3.0.js Connecting to github.com (140.82.121.3:443) Connecting to objects.githubusercontent.com (185.199.111.133:443) saving to...

> Thanks for submitting this! I'd also like to copy the image you used into our testing repo so we can use it for regression tests in the future as...

I've found out that the problematic images that lead to submitting #1080 were uploaded by proprietary software which directly interacts with the registry REST API. So far, I don't have...

@Vijay-P Sure, I've now rebased the PR.