vs4vijay / ScanMaster

A security tool designed to perform thorough scans on a target using OpenVAS, Zap, and Nexpose. It seamlessly consolidates and integrates the scan results, providing a comprehensive overview of the security vulnerabilities identified.
42 stars 11 forks source link

Update dependency paramiko to v2.10.1 [SECURITY] - autoclosed #50

Closed renovate[bot] closed 1 year ago

renovate[bot] commented 2 years ago

Mend Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
paramiko (source, changelog) ==2.6.0 -> ==2.10.1 age adoption passing confidence

GitHub Vulnerability Alerts

CVE-2022-24302

In Paramiko before 2.10.1, a race condition (between creation and chmod) in the write_private_key_file function could allow unauthorized information disclosure.


Release Notes

paramiko/paramiko ### [`v2.10.1`](https://togithub.com/paramiko/paramiko/compare/2.10.0...2.10.1) [Compare Source](https://togithub.com/paramiko/paramiko/compare/2.10.0...2.10.1) ### [`v2.10.0`](https://togithub.com/paramiko/paramiko/compare/2.9.5...2.10.0) [Compare Source](https://togithub.com/paramiko/paramiko/compare/2.9.5...2.10.0) ### [`v2.9.5`](https://togithub.com/paramiko/paramiko/compare/2.9.4...2.9.5) [Compare Source](https://togithub.com/paramiko/paramiko/compare/2.9.4...2.9.5) ### [`v2.9.4`](https://togithub.com/paramiko/paramiko/compare/2.9.3...2.9.4) [Compare Source](https://togithub.com/paramiko/paramiko/compare/2.9.3...2.9.4) ### [`v2.9.3`](https://togithub.com/paramiko/paramiko/compare/2.9.2...2.9.3) [Compare Source](https://togithub.com/paramiko/paramiko/compare/2.9.2...2.9.3) ### [`v2.9.2`](https://togithub.com/paramiko/paramiko/compare/2.9.1...2.9.2) [Compare Source](https://togithub.com/paramiko/paramiko/compare/2.9.1...2.9.2) ### [`v2.9.1`](https://togithub.com/paramiko/paramiko/compare/2.9.0...2.9.1) [Compare Source](https://togithub.com/paramiko/paramiko/compare/2.9.0...2.9.1) ### [`v2.9.0`](https://togithub.com/paramiko/paramiko/compare/2.8.1...2.9.0) [Compare Source](https://togithub.com/paramiko/paramiko/compare/2.8.1...2.9.0) ### [`v2.8.1`](https://togithub.com/paramiko/paramiko/compare/2.8.0...2.8.1) [Compare Source](https://togithub.com/paramiko/paramiko/compare/2.8.0...2.8.1) ### [`v2.8.0`](https://togithub.com/paramiko/paramiko/compare/2.7.2...2.8.0) [Compare Source](https://togithub.com/paramiko/paramiko/compare/2.7.2...2.8.0) ### [`v2.7.2`](https://togithub.com/paramiko/paramiko/compare/2.7.1...2.7.2) [Compare Source](https://togithub.com/paramiko/paramiko/compare/2.7.1...2.7.2) ### [`v2.7.1`](https://togithub.com/paramiko/paramiko/compare/2.7.0...2.7.1) [Compare Source](https://togithub.com/paramiko/paramiko/compare/2.7.0...2.7.1) ### [`v2.7.0`](https://togithub.com/paramiko/paramiko/compare/2.6.0...2.7.0) [Compare Source](https://togithub.com/paramiko/paramiko/compare/2.6.0...2.7.0)

Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Mend Renovate. View repository job log here.

sonarcloud[bot] commented 2 years ago

Kudos, SonarCloud Quality Gate passed!    Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
No Duplication information No Duplication information