buildah/vendor
Lokesh Mandvekar 55e2081cc9
Bump golang.org/x/crypto to 7b82a4e
Resolves: GHSA-8c26-wmh5-6g9v - CVE-2022-27191

Buildah doesn't seem to be directly affected as the logic in question
is not called.

golang.org/x/crypto@1baeb1ce contains the actual CVE fix. Using the
latest upstream commit to also include support for SHA-2.

Signed-off-by: Lokesh Mandvekar <lsm5@fedoraproject.org>
2022-04-12 14:11:44 -04:00
..
github.com vendor: bump c/image to v5.16.0-rhel/8b06d33 2022-04-07 01:15:53 +05:30
go.etcd.io/bbolt build(deps): bump go.etcd.io/bbolt from 1.3.5 to 1.3.6 2021-06-09 19:35:21 +00:00
go.mozilla.org/pkcs7 Bump github.com/containers/ocicrypt from 1.0.2 to 1.0.3 2020-07-13 16:23:06 -04:00
go.opencensus.io vendor containers/common@main 2021-07-07 13:28:20 +02:00
golang.org/x Bump golang.org/x/crypto to 7b82a4e 2022-04-12 14:11:44 -04:00
google.golang.org vendor containers/common@main 2021-07-07 13:28:20 +02:00
gopkg.in vendor containers/common@main 2021-07-07 13:28:20 +02:00
k8s.io/klog Rework conformance testing 2020-07-23 15:30:58 -04:00
modules.txt Bump golang.org/x/crypto to 7b82a4e 2022-04-12 14:11:44 -04:00