Skip to content

Commit 9189799

Browse files
Fix vulnerability found in kubernetes library to fix the trivy scan check (litmuschaos#510)
*Updated the Kubernetes package version Signed-off-by: Ashis Kumar Naik <[email protected]>
1 parent 7edcbd4 commit 9189799

File tree

2 files changed

+161
-994
lines changed

2 files changed

+161
-994
lines changed

go.mod

+30-29
Original file line numberDiff line numberDiff line change
@@ -4,48 +4,49 @@ go 1.17
44

55
require (
66
github.com/Azure/azure-sdk-for-go v56.1.0+incompatible
7-
github.com/Azure/go-autorest/autorest v0.11.18
7+
github.com/Azure/go-autorest/autorest v0.11.27
88
github.com/Azure/go-autorest/autorest/azure/auth v0.5.7
99
github.com/aws/aws-sdk-go v1.38.59
1010
github.com/containerd/cgroups v1.0.1
1111
github.com/kyokomi/emoji v2.2.4+incompatible
1212
github.com/litmuschaos/chaos-operator v0.0.0-20220929101337-868b2827f820
1313
github.com/pkg/errors v0.9.1
14-
github.com/sirupsen/logrus v1.7.0
15-
github.com/spf13/cobra v1.1.1
16-
google.golang.org/api v0.48.0
14+
github.com/sirupsen/logrus v1.8.1
15+
github.com/spf13/cobra v1.4.0
16+
google.golang.org/api v0.60.0
1717
gopkg.in/yaml.v2 v2.4.0
1818
k8s.io/api v0.22.1
1919
k8s.io/apimachinery v0.22.1
2020
k8s.io/client-go v12.0.0+incompatible
2121
k8s.io/klog v1.0.0
22-
k8s.io/kubernetes v1.18.19
22+
k8s.io/kubernetes v1.25.2
2323
)
2424

2525
require (
26-
cloud.google.com/go v0.83.0 // indirect
26+
cloud.google.com/go v0.97.0 // indirect
2727
github.com/Azure/go-autorest v14.2.0+incompatible // indirect
28-
github.com/Azure/go-autorest/autorest/adal v0.9.13 // indirect
28+
github.com/Azure/go-autorest/autorest/adal v0.9.20 // indirect
2929
github.com/Azure/go-autorest/autorest/azure/cli v0.4.2 // indirect
3030
github.com/Azure/go-autorest/autorest/date v0.3.0 // indirect
31-
github.com/Azure/go-autorest/autorest/to v0.3.1-0.20191028180845-3492b2aff503 // indirect
31+
github.com/Azure/go-autorest/autorest/to v0.4.0 // indirect
3232
github.com/Azure/go-autorest/autorest/validation v0.2.1-0.20191028180845-3492b2aff503 // indirect
3333
github.com/Azure/go-autorest/logger v0.2.1 // indirect
3434
github.com/Azure/go-autorest/tracing v0.6.0 // indirect
35-
github.com/cilium/ebpf v0.4.0 // indirect
36-
github.com/coreos/go-systemd/v22 v22.1.0 // indirect
35+
github.com/cilium/ebpf v0.7.0 // indirect
36+
github.com/coreos/go-systemd/v22 v22.3.2 // indirect
3737
github.com/davecgh/go-spew v1.1.1 // indirect
3838
github.com/dimchansky/utfbom v1.1.1 // indirect
3939
github.com/docker/go-units v0.4.0 // indirect
40-
github.com/form3tech-oss/jwt-go v3.2.3+incompatible // indirect
41-
github.com/go-logr/logr v0.4.0 // indirect
42-
github.com/godbus/dbus/v5 v5.0.3 // indirect
40+
github.com/go-logr/logr v1.2.3 // indirect
41+
github.com/godbus/dbus/v5 v5.0.6 // indirect
4342
github.com/gogo/protobuf v1.3.2 // indirect
43+
github.com/golang-jwt/jwt/v4 v4.2.0 // indirect
4444
github.com/golang/groupcache v0.0.0-20210331224755-41bb18bfe9da // indirect
4545
github.com/golang/protobuf v1.5.2 // indirect
46-
github.com/google/go-cmp v0.5.6 // indirect
46+
github.com/google/gnostic v0.5.7-v3refs // indirect
47+
github.com/google/go-cmp v0.5.8 // indirect
4748
github.com/google/gofuzz v1.1.0 // indirect
48-
github.com/googleapis/gax-go/v2 v2.0.5 // indirect
49+
github.com/googleapis/gax-go/v2 v2.1.1 // indirect
4950
github.com/googleapis/gnostic v0.5.5 // indirect
5051
github.com/imdario/mergo v0.3.12 // indirect
5152
github.com/inconshreveable/mousetrap v1.0.0 // indirect
@@ -55,27 +56,27 @@ require (
5556
github.com/moby/spdystream v0.2.0 // indirect
5657
github.com/modern-go/concurrent v0.0.0-20180306012644-bacd9c7ef1dd // indirect
5758
github.com/modern-go/reflect2 v1.0.2 // indirect
58-
github.com/opencontainers/runtime-spec v1.0.2 // indirect
59+
github.com/opencontainers/runtime-spec v1.0.3-0.20210326190908-1c3f411f0417 // indirect
5960
github.com/spf13/pflag v1.0.5 // indirect
6061
go.opencensus.io v0.23.0 // indirect
61-
golang.org/x/crypto v0.0.0-20220314234659-1baeb1ce4c0b // indirect
62-
golang.org/x/net v0.0.0-20211209124913-491a49abca63 // indirect
63-
golang.org/x/oauth2 v0.0.0-20210514164344-f6687ab2804c // indirect
64-
golang.org/x/sys v0.0.0-20220704084225-05e143d24a9e // indirect
65-
golang.org/x/term v0.0.0-20210220032956-6a3ed077a48d // indirect
62+
golang.org/x/crypto v0.0.0-20220315160706-3147a52a75dd // indirect
63+
golang.org/x/net v0.0.0-20220722155237-a158d28d115b // indirect
64+
golang.org/x/oauth2 v0.0.0-20211104180415-d3ed0bb246c8 // indirect
65+
golang.org/x/sys v0.0.0-20220722155257-8c9f86f7a55f // indirect
66+
golang.org/x/term v0.0.0-20210927222741-03fcf44c2211 // indirect
6667
golang.org/x/text v0.3.7 // indirect
67-
golang.org/x/time v0.0.0-20210723032227-1f47c861a9ac // indirect
68+
golang.org/x/time v0.0.0-20220210224613-90d013bbcef8 // indirect
6869
google.golang.org/appengine v1.6.7 // indirect
69-
google.golang.org/genproto v0.0.0-20210604141403-392c879c8b08 // indirect
70-
google.golang.org/grpc v1.38.0 // indirect
71-
google.golang.org/protobuf v1.26.0 // indirect
70+
google.golang.org/genproto v0.0.0-20220502173005-c8bf987b8c21 // indirect
71+
google.golang.org/grpc v1.47.0 // indirect
72+
google.golang.org/protobuf v1.28.0 // indirect
7273
gopkg.in/inf.v0 v0.9.1 // indirect
7374
gopkg.in/yaml.v3 v3.0.1 // indirect
74-
k8s.io/klog/v2 v2.9.0 // indirect
75-
k8s.io/kube-openapi v0.0.0-20210421082810-95288971da7e // indirect
76-
k8s.io/utils v0.0.0-20210819203725-bdf08cb9a70a // indirect
75+
k8s.io/klog/v2 v2.70.1 // indirect
76+
k8s.io/kube-openapi v0.0.0-20220803162953-67bda5d908f1 // indirect
77+
k8s.io/utils v0.0.0-20220728103510-ee6ede2d64ed // indirect
7778
sigs.k8s.io/controller-runtime v0.10.0 // indirect
78-
sigs.k8s.io/structured-merge-diff/v4 v4.1.2 // indirect
79+
sigs.k8s.io/structured-merge-diff/v4 v4.2.3 // indirect
7980
sigs.k8s.io/yaml v1.2.0 // indirect
8081
)
8182

0 commit comments

Comments
 (0)