Open rwsu opened 2 months ago
@rwsu: This pull request references Jira Issue OCPBUGS-16483, which is invalid:
Comment /jira refresh
to re-evaluate validity if changes to the Jira bug are made, or edit the title of this pull request to link to a different bug.
The bug has been updated to refer to the pull request using the external bug tracker.
[APPROVALNOTIFIER] This PR is NOT APPROVED
This pull-request has been approved by: rwsu Once this PR has been reviewed and has the lgtm label, please assign paul-maidment for approval. For more information see the Kubernetes Code Review Process.
The full list of commands accepted by this bot can be found here.
/jira cherrypick OCPBUGS-16483
@rwsu: Jira Issue OCPBUGS-16483 has been cloned as Jira Issue OCPBUGS-33146. Will retitle bug to link to clone. /retitle OCPBUGS-33146: [release-4.14] OCPBUGS-16483: Update apimachinery dependency to remove goproxy dep
@rwsu: This pull request references Jira Issue OCPBUGS-33146, which is invalid:
Comment /jira refresh
to re-evaluate validity if changes to the Jira bug are made, or edit the title of this pull request to link to a different bug.
The bug has been updated to refer to the pull request using the external bug tracker.
@rwsu: all tests passed!
Full PR test history. Your PR dashboard.
This is a manual cherrypick of PR#590
A denial of service (DoS) via unspecified vectors issue was found in goproxy (CVE-2023-37788). goproxy is not used directly by the agent. It is pulled in by apimachinery. apimachinery ceases to use goproxy after v0.27.0.
To prevent the potential issue, apimachiney is updated to v0.27.2.