Skip to content

Commit 31e0d14

Browse files
authored
Merge pull request Mirantis#147 from gcradden/bump-cve-deps
Bump dependencies where Trivy reports high or critical CVEs
2 parents 0de30fc + 2f07796 commit 31e0d14

File tree

3,677 files changed

+367902
-124851
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

3,677 files changed

+367902
-124851
lines changed

containermanager/container_manager_linux.go

Lines changed: 6 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,4 @@
1+
//go:build linux
12
// +build linux
23

34
/*
@@ -28,6 +29,7 @@ import (
2829
"github.com/opencontainers/runc/libcontainer/cgroups"
2930
cgroupfs "github.com/opencontainers/runc/libcontainer/cgroups/fs"
3031
"github.com/opencontainers/runc/libcontainer/configs"
32+
"github.com/opencontainers/runc/libcontainer/devices"
3133
"github.com/sirupsen/logrus"
3234
utilversion "k8s.io/apimachinery/pkg/util/version"
3335
"k8s.io/apimachinery/pkg/util/wait"
@@ -124,18 +126,18 @@ func createCgroupManager(name string) (cgroups.Manager, error) {
124126
Memory: int64(memoryLimit),
125127
MemorySwap: -1,
126128
SkipDevices: true,
127-
Devices: []*configs.DeviceRule{
129+
Devices: []*devices.Rule{
128130
{
129-
Minor: configs.Wildcard,
130-
Major: configs.Wildcard,
131+
Minor: devices.Wildcard,
132+
Major: devices.Wildcard,
131133
Type: 'a',
132134
Permissions: "rwm",
133135
Allow: true,
134136
},
135137
},
136138
},
137139
}
138-
return cgroupfs.NewManager(cg, nil, false), nil
140+
return cgroupfs.NewManager(cg, nil)
139141
}
140142

141143
// getMemoryCapacity returns the memory capacity on the machine in bytes.

go.mod

Lines changed: 132 additions & 106 deletions
Original file line numberDiff line numberDiff line change
@@ -3,141 +3,167 @@ module github.com/Mirantis/cri-dockerd
33
go 1.18
44

55
require (
6-
github.com/Microsoft/hcsshim v0.8.10-0.20200715222032-5eafd1556990
6+
github.com/Microsoft/hcsshim v0.8.22
77
github.com/armon/circbuf v0.0.0-20150827004946-bbbad097214e
88
github.com/blang/semver v3.5.1+incompatible
9-
github.com/containernetworking/cni v0.8.0
10-
github.com/coreos/go-systemd/v22 v22.1.0
9+
github.com/containernetworking/cni v1.1.2
10+
github.com/coreos/go-systemd/v22 v22.5.0
1111
github.com/davecgh/go-spew v1.1.1
12-
github.com/docker/distribution v2.7.1+incompatible
12+
github.com/docker/distribution v2.8.1+incompatible
1313
github.com/docker/docker v20.10.17+incompatible
1414
github.com/docker/go-connections v0.4.0
15-
github.com/emicklei/go-restful v2.9.5+incompatible
15+
github.com/emicklei/go-restful v2.16.0+incompatible
1616
github.com/golang/mock v1.6.0
1717
github.com/opencontainers/go-digest v1.0.0
18-
github.com/opencontainers/image-spec v1.0.1
19-
github.com/opencontainers/runc v1.0.0-rc92
18+
github.com/opencontainers/image-spec v1.0.2
19+
github.com/opencontainers/runc v1.1.4
2020
github.com/pkg/errors v0.9.1
21-
github.com/sirupsen/logrus v1.8.1
22-
github.com/spf13/cobra v1.1.1
21+
github.com/sirupsen/logrus v1.9.0
22+
github.com/spf13/cobra v1.6.1
2323
github.com/spf13/pflag v1.0.5
24-
github.com/stretchr/testify v1.6.1
24+
github.com/stretchr/testify v1.8.0
2525
github.com/vishvananda/netlink v1.1.0
26-
golang.org/x/sys v0.0.0-20220319134239-a9b59b0215f8
27-
google.golang.org/grpc v1.27.1
28-
k8s.io/api v0.20.4
29-
k8s.io/apimachinery v0.20.4
30-
k8s.io/apiserver v0.20.4
31-
k8s.io/client-go v0.20.4
32-
k8s.io/component-base v0.20.4
33-
k8s.io/cri-api v0.20.4
34-
k8s.io/kubernetes v1.20.4
35-
k8s.io/utils v0.0.0-20201110183641-67b214c5f920
26+
golang.org/x/sys v0.4.0
27+
google.golang.org/grpc v1.51.0
28+
k8s.io/api v0.26.0
29+
k8s.io/apimachinery v0.26.0
30+
k8s.io/apiserver v0.22.8
31+
k8s.io/client-go v0.26.0
32+
k8s.io/component-base v0.23.15
33+
k8s.io/component-helpers v0.26.0
34+
k8s.io/cri-api v0.22.8
35+
k8s.io/kubernetes v1.22.8
36+
k8s.io/utils v0.0.0-20221107191617-1a15be271d1d
3637
)
3738

3839
require (
39-
github.com/Azure/go-ansiterm v0.0.0-20170929234023-d6e3b3328b78 // indirect
40+
github.com/Azure/go-ansiterm v0.0.0-20210617225240-d185dfc1b5a1 // indirect
4041
github.com/JeffAshton/win_pdh v0.0.0-20161109143554-76bb4ee9f0ab // indirect
41-
github.com/Microsoft/go-winio v0.4.15 // indirect
42-
github.com/NYTimes/gziphandler v0.0.0-20170623195520-56545f4a5d46 // indirect
43-
github.com/PuerkitoBio/purell v1.1.1 // indirect
44-
github.com/PuerkitoBio/urlesc v0.0.0-20170810143723-de5bf2ad4578 // indirect
42+
github.com/Microsoft/go-winio v0.4.17 // indirect
43+
github.com/NYTimes/gziphandler v1.1.1 // indirect
4544
github.com/beorn7/perks v1.0.1 // indirect
46-
github.com/cespare/xxhash/v2 v2.1.1 // indirect
47-
github.com/containerd/cgroups v0.0.0-20200531161412-0dbf7f05ba59 // indirect
45+
github.com/cespare/xxhash/v2 v2.2.0 // indirect
46+
github.com/containerd/cgroups v1.0.1 // indirect
4847
github.com/coreos/go-semver v0.3.0 // indirect
49-
github.com/coreos/go-systemd v0.0.0-20190321100706-95778dfbb74e // indirect
50-
github.com/coreos/pkg v0.0.0-20180928190104-399ea9e2e55f // indirect
51-
github.com/cyphar/filepath-securejoin v0.2.2 // indirect
52-
github.com/docker/go-units v0.4.0 // indirect
53-
github.com/docker/spdystream v0.0.0-20160310174837-449fdfce4d96 // indirect
54-
github.com/evanphx/json-patch v4.9.0+incompatible // indirect
55-
github.com/go-logr/logr v0.2.0 // indirect
56-
github.com/go-openapi/jsonpointer v0.19.3 // indirect
57-
github.com/go-openapi/jsonreference v0.19.3 // indirect
58-
github.com/go-openapi/spec v0.19.3 // indirect
59-
github.com/go-openapi/swag v0.19.5 // indirect
60-
github.com/godbus/dbus/v5 v5.0.3 // indirect
61-
github.com/gogo/protobuf v1.3.1 // indirect
62-
github.com/golang/groupcache v0.0.0-20200121045136-8c9f03a8e57e // indirect
48+
github.com/cyphar/filepath-securejoin v0.2.3 // indirect
49+
github.com/docker/go-units v0.5.0 // indirect
50+
github.com/evanphx/json-patch v4.12.0+incompatible // indirect
51+
github.com/felixge/httpsnoop v1.0.1 // indirect
52+
github.com/fsnotify/fsnotify v1.4.9 // indirect
53+
github.com/go-logr/logr v1.2.3 // indirect
54+
github.com/go-openapi/jsonpointer v0.19.5 // indirect
55+
github.com/go-openapi/jsonreference v0.20.0 // indirect
56+
github.com/go-openapi/swag v0.19.14 // indirect
57+
github.com/godbus/dbus/v5 v5.1.0 // indirect
58+
github.com/gogo/protobuf v1.3.2 // indirect
59+
github.com/golang/groupcache v0.0.0-20210331224755-41bb18bfe9da // indirect
6360
github.com/golang/protobuf v1.5.2 // indirect
64-
github.com/google/cadvisor v0.38.7 // indirect
65-
github.com/google/go-cmp v0.5.5 // indirect
61+
github.com/google/btree v1.1.2 // indirect
62+
github.com/google/cadvisor v0.44.1 // indirect
63+
github.com/google/go-cmp v0.5.9 // indirect
6664
github.com/google/gofuzz v1.1.0 // indirect
67-
github.com/google/uuid v1.1.2 // indirect
68-
github.com/googleapis/gnostic v0.4.1 // indirect
65+
github.com/google/uuid v1.3.0 // indirect
66+
github.com/googleapis/gnostic v0.5.5 // indirect
67+
github.com/gorilla/websocket v1.5.0 // indirect
6968
github.com/grpc-ecosystem/go-grpc-prometheus v1.2.0 // indirect
70-
github.com/hashicorp/golang-lru v0.5.1 // indirect
69+
github.com/grpc-ecosystem/grpc-gateway v1.16.0 // indirect
7170
github.com/imdario/mergo v0.3.7 // indirect
72-
github.com/inconshreveable/mousetrap v1.0.0 // indirect
73-
github.com/json-iterator/go v1.1.10 // indirect
71+
github.com/inconshreveable/mousetrap v1.1.0 // indirect
72+
github.com/jonboulle/clockwork v0.3.0 // indirect
73+
github.com/josharian/intern v1.0.0 // indirect
74+
github.com/json-iterator/go v1.1.12 // indirect
75+
github.com/kr/pretty v0.3.0 // indirect
7476
github.com/lithammer/dedent v1.1.0 // indirect
75-
github.com/mailru/easyjson v0.7.0 // indirect
76-
github.com/matttproud/golang_protobuf_extensions v1.0.2-0.20181231171920-c182affec369 // indirect
77-
github.com/moby/sys/mountinfo v0.1.3 // indirect
78-
github.com/moby/term v0.0.0-20200312100748-672ec06f55cd // indirect
77+
github.com/mailru/easyjson v0.7.6 // indirect
78+
github.com/matttproud/golang_protobuf_extensions v1.0.4 // indirect
79+
github.com/moby/spdystream v0.2.0 // indirect
80+
github.com/moby/sys/mountinfo v0.6.2 // indirect
81+
github.com/moby/term v0.0.0-20210619224110-3f7ff695adc6 // indirect
7982
github.com/modern-go/concurrent v0.0.0-20180306012644-bacd9c7ef1dd // indirect
80-
github.com/modern-go/reflect2 v1.0.1 // indirect
83+
github.com/modern-go/reflect2 v1.0.2 // indirect
8184
github.com/morikuni/aec v1.0.0 // indirect
8285
github.com/munnerz/goautoneg v0.0.0-20191010083416-a7dc8b61c822 // indirect
8386
github.com/onsi/gomega v1.19.0 // indirect
84-
github.com/opencontainers/runtime-spec v1.0.3-0.20200728170252-4d89ac9fbff6 // indirect
87+
github.com/opencontainers/runtime-spec v1.0.3-0.20210326190908-1c3f411f0417 // indirect
88+
github.com/opencontainers/selinux v1.10.0 // indirect
8589
github.com/pmezard/go-difflib v1.0.0 // indirect
86-
github.com/prometheus/client_golang v1.7.1 // indirect
87-
github.com/prometheus/client_model v0.2.0 // indirect
88-
github.com/prometheus/common v0.10.0 // indirect
89-
github.com/prometheus/procfs v0.2.0 // indirect
90-
github.com/stretchr/objx v0.2.0 // indirect
91-
github.com/vishvananda/netns v0.0.0-20200728191858-db3c7e526aae // indirect
92-
go.etcd.io/etcd v0.5.0-alpha.5.0.20200910180754-dd1b699fc489 // indirect
93-
go.opencensus.io v0.22.3 // indirect
94-
go.uber.org/atomic v1.4.0 // indirect
95-
go.uber.org/multierr v1.1.0 // indirect
96-
go.uber.org/zap v1.10.0 // indirect
97-
golang.org/x/crypto v0.0.0-20201002170205-7f63de1d35b0 // indirect
98-
golang.org/x/net v0.0.0-20220225172249-27dd8689420f // indirect
99-
golang.org/x/oauth2 v0.0.0-20200107190931-bf48bf16ab8d // indirect
100-
golang.org/x/sync v0.0.0-20210220032951-036812b2e83c // indirect
101-
golang.org/x/text v0.3.7 // indirect
102-
golang.org/x/time v0.0.0-20200630173020-3af7569d3a1e // indirect
103-
google.golang.org/appengine v1.6.5 // indirect
104-
google.golang.org/genproto v0.0.0-20201110150050-8816d57aaa9a // indirect
105-
google.golang.org/protobuf v1.26.0 // indirect
90+
github.com/prometheus/client_golang v1.14.0 // indirect
91+
github.com/prometheus/client_model v0.3.0 // indirect
92+
github.com/prometheus/common v0.39.0 // indirect
93+
github.com/prometheus/procfs v0.9.0 // indirect
94+
github.com/stretchr/objx v0.4.0 // indirect
95+
github.com/tmc/grpc-websocket-proxy v0.0.0-20220101234140-673ab2c3ae75 // indirect
96+
github.com/vishvananda/netns v0.0.1 // indirect
97+
github.com/xiang90/probing v0.0.0-20221125231312-a49e3df8f510 // indirect
98+
go.etcd.io/etcd/api/v3 v3.5.1 // indirect
99+
go.etcd.io/etcd/client/pkg/v3 v3.5.1 // indirect
100+
go.etcd.io/etcd/client/v3 v3.5.1 // indirect
101+
go.opencensus.io v0.23.0 // indirect
102+
go.opentelemetry.io/contrib v0.20.0 // indirect
103+
go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc v0.20.0 // indirect
104+
go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp v0.20.0 // indirect
105+
go.opentelemetry.io/otel v0.20.0 // indirect
106+
go.opentelemetry.io/otel/exporters/otlp v0.20.0 // indirect
107+
go.opentelemetry.io/otel/metric v0.20.0 // indirect
108+
go.opentelemetry.io/otel/sdk v0.20.0 // indirect
109+
go.opentelemetry.io/otel/sdk/export/metric v0.20.0 // indirect
110+
go.opentelemetry.io/otel/sdk/metric v0.20.0 // indirect
111+
go.opentelemetry.io/otel/trace v0.20.0 // indirect
112+
go.opentelemetry.io/proto/otlp v0.7.0 // indirect
113+
go.uber.org/atomic v1.10.0 // indirect
114+
go.uber.org/multierr v1.9.0 // indirect
115+
go.uber.org/zap v1.24.0 // indirect
116+
golang.org/x/crypto v0.5.0 // indirect
117+
golang.org/x/net v0.5.0 // indirect
118+
golang.org/x/oauth2 v0.3.0 // indirect
119+
golang.org/x/sync v0.1.0 // indirect
120+
golang.org/x/term v0.4.0 // indirect
121+
golang.org/x/text v0.6.0 // indirect
122+
golang.org/x/time v0.3.0 // indirect
123+
google.golang.org/appengine v1.6.7 // indirect
124+
google.golang.org/genproto v0.0.0-20230106154932-a12b697841d9 // indirect
125+
google.golang.org/protobuf v1.28.1 // indirect
106126
gopkg.in/inf.v0 v0.9.1 // indirect
107127
gopkg.in/yaml.v2 v2.4.0 // indirect
108-
gopkg.in/yaml.v3 v3.0.0-20200313102051-9f266ea9e77c // indirect
109-
k8s.io/cloud-provider v0.20.4 // indirect
110-
k8s.io/klog/v2 v2.4.0 // indirect
111-
k8s.io/kube-openapi v0.0.0-20201113171705-d219536bb9fd // indirect
112-
k8s.io/mount-utils v0.0.0 // indirect
113-
sigs.k8s.io/apiserver-network-proxy/konnectivity-client v0.0.14 // indirect
114-
sigs.k8s.io/structured-merge-diff/v4 v4.0.2 // indirect
115-
sigs.k8s.io/yaml v1.2.0 // indirect
128+
gopkg.in/yaml.v3 v3.0.1 // indirect
129+
k8s.io/cloud-provider v0.22.8 // indirect
130+
k8s.io/klog/v2 v2.80.1 // indirect
131+
k8s.io/kube-openapi v0.0.0-20221012153701-172d655c2280 // indirect
132+
k8s.io/mount-utils v0.22.8 // indirect
133+
sigs.k8s.io/apiserver-network-proxy/konnectivity-client v0.0.33 // indirect
134+
sigs.k8s.io/json v0.0.0-20220713155537-f223a00ba0e2 // indirect
135+
sigs.k8s.io/structured-merge-diff/v4 v4.2.3 // indirect
136+
sigs.k8s.io/yaml v1.3.0 // indirect
116137
)
117138

118139
replace (
119-
k8s.io/api => k8s.io/api v0.20.4
120-
k8s.io/apiextensions-apiserver => k8s.io/apiextensions-apiserver v0.20.4
121-
k8s.io/apimachinery => k8s.io/apimachinery v0.20.4
122-
k8s.io/apiserver => k8s.io/apiserver v0.20.4
123-
k8s.io/cli-runtime => k8s.io/cli-runtime v0.20.4
124-
k8s.io/client-go => k8s.io/client-go v0.20.4
125-
k8s.io/cloud-provider => k8s.io/cloud-provider v0.20.4
126-
k8s.io/cluster-bootstrap => k8s.io/cluster-bootstrap v0.20.4
127-
k8s.io/code-generator => k8s.io/code-generator v0.20.4
128-
k8s.io/component-base => k8s.io/component-base v0.20.4
129-
k8s.io/component-helpers => k8s.io/component-helpers v0.20.4
130-
k8s.io/controller-manager => k8s.io/controller-manager v0.20.4
131-
k8s.io/cri-api => k8s.io/cri-api v0.20.4
132-
k8s.io/csi-translation-lib => k8s.io/csi-translation-lib v0.20.4
133-
k8s.io/kube-aggregator => k8s.io/kube-aggregator v0.20.4
134-
k8s.io/kube-controller-manager => k8s.io/kube-controller-manager v0.20.4
135-
k8s.io/kube-proxy => k8s.io/kube-proxy v0.20.4
136-
k8s.io/kube-scheduler => k8s.io/kube-scheduler v0.20.4
137-
k8s.io/kubectl => k8s.io/kubectl v0.20.4
138-
k8s.io/kubelet => k8s.io/kubelet v0.20.4
139-
k8s.io/legacy-cloud-providers => k8s.io/legacy-cloud-providers v0.20.4
140-
k8s.io/metrics => k8s.io/metrics v0.20.4
141-
k8s.io/mount-utils => k8s.io/mount-utils v0.20.4
142-
k8s.io/sample-apiserver => k8s.io/sample-apiserver v0.20.4
140+
// github.com/go-logr/logr => github.com/go-logr/logr v0.4.0
141+
google.golang.org/grpc/naming => google.golang.org/grpc v1.29.0
142+
k8s.io/api => k8s.io/api v0.24.0
143+
k8s.io/apiextensions-apiserver => k8s.io/apiextensions-apiserver v0.22.8
144+
k8s.io/apimachinery => k8s.io/apimachinery v0.23.15
145+
k8s.io/apiserver => k8s.io/apiserver v0.23.15
146+
k8s.io/cli-runtime => k8s.io/cli-runtime v0.22.8
147+
k8s.io/client-go => k8s.io/client-go v0.23.15
148+
k8s.io/cloud-provider => k8s.io/cloud-provider v0.22.8
149+
k8s.io/cluster-bootstrap => k8s.io/cluster-bootstrap v0.22.8
150+
k8s.io/code-generator => k8s.io/code-generator v0.22.8
151+
k8s.io/component-base => k8s.io/component-base v0.23.15
152+
k8s.io/component-helpers => k8s.io/component-helpers v0.26.0
153+
k8s.io/controller-manager => k8s.io/controller-manager v0.22.8
154+
k8s.io/cri-api => k8s.io/cri-api v0.22.8
155+
k8s.io/csi-translation-lib => k8s.io/csi-translation-lib v0.22.8
156+
// k8s.io/klog/v2 => k8s.io/klog/v2 v2.4.0
157+
k8s.io/kube-aggregator => k8s.io/kube-aggregator v0.22.8
158+
k8s.io/kube-controller-manager => k8s.io/kube-controller-manager v0.22.8
159+
k8s.io/kube-openapi => k8s.io/kube-openapi v0.0.0-20211115234752-e816edb12b65
160+
k8s.io/kube-proxy => k8s.io/kube-proxy v0.22.8
161+
k8s.io/kube-scheduler => k8s.io/kube-scheduler v0.22.8
162+
k8s.io/kubectl => k8s.io/kubectl v0.22.8
163+
k8s.io/kubelet => k8s.io/kubelet v0.22.8
164+
k8s.io/legacy-cloud-providers => k8s.io/legacy-cloud-providers v0.22.8
165+
k8s.io/metrics => k8s.io/metrics v0.22.8
166+
k8s.io/mount-utils => k8s.io/mount-utils v0.22.8
167+
k8s.io/pod-security-admission => k8s.io/pod-security-admission v0.22.8
168+
k8s.io/sample-apiserver => k8s.io/sample-apiserver v0.22.8
143169
)

0 commit comments

Comments
 (0)