Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Security upgrades #96

Merged
merged 7 commits into from
Jun 20, 2024
Merged

Security upgrades #96

merged 7 commits into from
Jun 20, 2024

Conversation

TAGraves
Copy link
Member

No description provided.

dependabot bot added 3 commits June 20, 2024 11:18
Bumps [mio](https://github.com/tokio-rs/mio) from 0.8.4 to 0.8.11.
- [Release notes](https://github.com/tokio-rs/mio/releases)
- [Changelog](https://github.com/tokio-rs/mio/blob/master/CHANGELOG.md)
- [Commits](tokio-rs/mio@v0.8.4...v0.8.11)

---
updated-dependencies:
- dependency-name: mio
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [@babel/traverse](https://github.com/babel/babel/tree/HEAD/packages/babel-traverse) from 7.20.13 to 7.24.7.
- [Release notes](https://github.com/babel/babel/releases)
- [Changelog](https://github.com/babel/babel/blob/main/CHANGELOG.md)
- [Commits](https://github.com/babel/babel/commits/v7.24.7/packages/babel-traverse)

---
updated-dependencies:
- dependency-name: "@babel/traverse"
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [h2](https://github.com/hyperium/h2) from 0.3.14 to 0.3.26.
- [Release notes](https://github.com/hyperium/h2/releases)
- [Changelog](https://github.com/hyperium/h2/blob/v0.3.26/CHANGELOG.md)
- [Commits](hyperium/h2@v0.3.14...v0.3.26)

---
updated-dependencies:
- dependency-name: h2
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
@TAGraves TAGraves self-assigned this Jun 20, 2024
Bumps [webpki](https://github.com/briansmith/webpki) from 0.22.0 to 0.22.2.
- [Commits](https://github.com/briansmith/webpki/commits)

---
updated-dependencies:
- dependency-name: webpki
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Copy link

Bigtest for 452541c (run)

Benchmarks:

  • RSpec: 6.05% overhead
    • RSpec time: 17.68 seconds
    • ABQ time: 18.75 seconds
  • RSpec parallel, 10 runs: max 12.39% overhead
    • min 5.88% overhead
    • standard deviation: 2.09%
  • Jest: 3.36% overhead
    • Jest time: 19.841 seconds
    • ABQ time: 20.508 seconds

Fuzz result sizes:

  • PASSED

dependabot bot added 3 commits June 20, 2024 12:41
Bumps [aws-sigv4](https://github.com/smithy-lang/smithy-rs) from 0.55.0 to 0.55.3.
- [Release notes](https://github.com/smithy-lang/smithy-rs/releases)
- [Changelog](https://github.com/smithy-lang/smithy-rs/blob/main/CHANGELOG.md)
- [Commits](https://github.com/smithy-lang/smithy-rs/commits)

---
updated-dependencies:
- dependency-name: aws-sigv4
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [rustix](https://github.com/bytecodealliance/rustix) from 0.35.13 to 0.35.16.
- [Release notes](https://github.com/bytecodealliance/rustix/releases)
- [Commits](bytecodealliance/rustix@v0.35.13...v0.35.16)

---
updated-dependencies:
- dependency-name: rustix
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Bumps [bumpalo](https://github.com/fitzgen/bumpalo) from 3.11.0 to 3.16.0.
- [Changelog](https://github.com/fitzgen/bumpalo/blob/main/CHANGELOG.md)
- [Commits](fitzgen/bumpalo@3.11.0...3.16.0)

---
updated-dependencies:
- dependency-name: bumpalo
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
Copy link

Bigtest for 44a8367 (run)

Benchmarks:

  • RSpec: 5.89% overhead
    • RSpec time: 17.67 seconds
    • ABQ time: 18.71 seconds
  • RSpec parallel, 10 runs: max 8.6% overhead
    • min 6% overhead
    • standard deviation: 0.72%
  • Jest: 3.46% overhead
    • Jest time: 19.886 seconds
    • ABQ time: 20.575 seconds

Fuzz result sizes:

  • PASSED

@TAGraves TAGraves merged commit 46cec8c into main Jun 20, 2024
17 checks passed
@TAGraves TAGraves deleted the tg-security-upgrades branch June 20, 2024 17:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants