Bump the cargo group across 3 directories with 8 updates #37
+118
−83
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the cargo group with 1 update in the /anoncreds directory: openssl.
Bumps the cargo group with 5 updates in the /askar directory:
4.1.24.1.30.8.100.8.110.9.60.9.80.7.30.7.41.4.11.6.0Bumps the cargo group with 3 updates in the /indy-vdr directory: openssl, ring and rustls.
Updates
opensslfrom 0.10.64 to 0.10.72Release notes
Sourced from openssl's releases.
... (truncated)
Commits
87085bdMerge pull request #2390 from alex/uaf-fixd1a12e2Fixed two UAFs and bumped versions for release7c7b2e6Merge pull request #2389 from skmcgrail/aws-lc-follow-up34a477bUse --experimental with bindgen-cli with aws-lc buildd4bf071Merge pull request #2386 from skmcgrail/aws-lc-follow-upa86bf67Remove comment705dbfbFix teste0df413Skip final call for LibreSSL 4.1.0 for CCM mode2f1164bEnable additional capabilities for AWS-LCdde9ffbMerge pull request #1805 from skmcgrail/aws-lc-support-finalUpdates
curve25519-dalekfrom 4.1.2 to 4.1.3Commits
5312a03curve: Bump version to 4.1.3 (#660)b4f9e4dSECURITY: fix timing variability in backend/serial/u32/scalar.rs (#661)415892aSECURITY: fix timing variability in backend/serial/u64/scalar.rs (#659)56bf398Updates license field to valid SPDX format (#647)9252fa5Mitigate check-cfg until MSRV 1.77 (#652)1efe6a9Fix a minor typo in signing.rs (#649)cc3421aIndicate that the rand_core feature is required (#641)858c4caAddress new nightly clippy unnecessary qualifications (#639)31ccb67Remove platforms in favor using CARGO_CFG_TARGET_POINTER_WIDTH (#636)19c7f4aFix new nightly redundant import lint warns (#638)Updates
miofrom 0.8.10 to 0.8.11Changelog
Sourced from mio's changelog.
Commits
0328bdeRelease v0.8.117084498Fix warnings90d4fe0named-pipes: fix receiving IOCP events after deregisterc710a30Add v0.8.x to the CIc29e21cRelease v0.8.10Updates
rsafrom 0.9.6 to 0.9.8Changelog
Sourced from rsa's changelog.
Commits
85f03b5Release v0.9.8 (#495)bd3575bAdd comment to specify the rand version (#473)551f6e5release: v0.9.72edd479fix: always validate keys in from_components201ad81fix: handle tiny keysUpdates
sqlxfrom 0.7.3 to 0.7.4Changelog
Sourced from sqlx's changelog.
... (truncated)
Commits
635dba5fix: deprecation inpostgres::types::chronoa2b89d7fix: deprecation warnings insqlite::types::chrono, documentDATETIMEbeh...248d617chore: prepare 0.7.4 released005111fix: better I/O errors whenmigrate!()cannot read a file24be262fix: restoreMigratorto the public APIbbfd0d7fix: AnyRow not support PgType::Varchar (#2976)b29eab0feat: addto_url_lossyto connect options (#2902)34860b7fix(ci): just cfg-out the wholetests/sqlite/sqlcipher.rs791a7f5doc(pg): document behavior ofbigdecimalandrust_decimalwith out-of-ran...e5c18b3fix: gatesqlciphertesting behindcfgto make development less annoyingUpdates
whoamifrom 1.4.1 to 1.6.0Release notes
Sourced from whoami's releases.
Changelog
Sourced from whoami's changelog.
... (truncated)
Commits
8170882Release v1.6.0 (#162)109da1cBackport v2->v1: Fix reading escaped unix pretty names (#178)bc489c0Version 1.6.0 pre.2 (#158)7aabbfaAdd discriminants to ExtendedNameFormat enum (#156)7aba7a4Backport v2 -> v1: Fix license link (#154)d90a4f81.6.0-pre.1 and Backport v2 -> v1: Adjusts langs() to match POSIX locale spec...a027097Backport v2 -> v1: Improved error handling (#149)d9df517Backport v2 -> v1: Switch Windowshostname()to return `PhysicalDnsHostname...85933dcBackport v2 -> v1: Check more environment variables for language (#146)ef86159v1: Update wasm-bindgen to v0.2.89 (#138)Updates
opensslfrom 0.10.64 to 0.10.72Release notes
Sourced from openssl's releases.
... (truncated)
Commits
87085bdMerge pull request #2390 from alex/uaf-fixd1a12e2Fixed two UAFs and bumped versions for release7c7b2e6Merge pull request #2389 from skmcgrail/aws-lc-follow-up34a477bUse --experimental with bindgen-cli with aws-lc buildd4bf071Merge pull request #2386 from skmcgrail/aws-lc-follow-upa86bf67Remove comment705dbfbFix teste0df413Skip final call for LibreSSL 4.1.0 for CCM mode2f1164bEnable additional capabilities for AWS-LCdde9ffbMerge pull request #1805 from skmcgrail/aws-lc-support-finalUpdates
ringfrom 0.17.8 to 0.17.14Changelog
Sourced from ring's changelog.
Commits
Updates
rustlsfrom 0.21.10 to 0.21.12Commits
3633152Cargo: v0.21.11 -> v0.21.120baaebaproj: MSRV 1.61 -> 1.636fd691atls13: fix clippy::unnecessary_lazy_evaluations finding6da5337Test for illegal IP address in server name extension75f8857Ignore server_name extension containing IP address7b8d1dbPrepare 0.21.11ebcb478complete_io: bail out if progress is impossible20f35dfRegression test forcomplete_ioinfinite loop bug2f2aae1Don't specially handle unauthenticated close_notify alertse163587Don't deny warnings from nightly clippyDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.