Skip to content

Commit 329ccba

Browse files
[8.19] Upgrading pbkdf2 (#225160) (#225277)
# Backport This will backport the following commits from `main` to `8.19`: - [Upgrading pbkdf2 (#225160)](#225160) <!--- Backport version: 9.6.6 --> ### Questions ? Please refer to the [Backport tool documentation](https://github.com/sorenlouv/backport) <!--BACKPORT [{"author":{"name":"Kurt","email":"kc13greiner@users.noreply.github.com"},"sourceCommit":{"committedDate":"2025-06-25T12:14:50Z","message":"Upgrading pbkdf2 (#225160)\n\n## Summary\n\nUpgrade `pbkdf2` from `v3.1.2` to `v3.1.3`\n\n## Changelog\nhttps://github.com/browserify/pbkdf2/blob/master/CHANGELOG.md\n\n---------\n\nCo-authored-by: kibanamachine <42973632+kibanamachine@users.noreply.github.com>","sha":"e31f1a584ff98f469bc0d6806d45bc840c2958d0","branchLabelMapping":{"^v9.1.0$":"main","^v(\\d+).(\\d+).\\d+$":"$1.$2"}},"sourcePullRequest":{"labels":["chore","Team:Security","release_note:skip","backport:prev-minor","backport:prev-major","v9.1.0"],"title":"Upgrading pbkdf2","number":225160,"url":"https://github.com/elastic/kibana/pull/225160","mergeCommit":{"message":"Upgrading pbkdf2 (#225160)\n\n## Summary\n\nUpgrade `pbkdf2` from `v3.1.2` to `v3.1.3`\n\n## Changelog\nhttps://github.com/browserify/pbkdf2/blob/master/CHANGELOG.md\n\n---------\n\nCo-authored-by: kibanamachine <42973632+kibanamachine@users.noreply.github.com>","sha":"e31f1a584ff98f469bc0d6806d45bc840c2958d0"}},"sourceBranch":"main","suggestedTargetBranches":[],"targetPullRequestStates":[{"branch":"main","label":"v9.1.0","branchLabelMappingKey":"^v9.1.0$","isSourceBranch":true,"state":"MERGED","url":"https://github.com/elastic/kibana/pull/225160","number":225160,"mergeCommit":{"message":"Upgrading pbkdf2 (#225160)\n\n## Summary\n\nUpgrade `pbkdf2` from `v3.1.2` to `v3.1.3`\n\n## Changelog\nhttps://github.com/browserify/pbkdf2/blob/master/CHANGELOG.md\n\n---------\n\nCo-authored-by: kibanamachine <42973632+kibanamachine@users.noreply.github.com>","sha":"e31f1a584ff98f469bc0d6806d45bc840c2958d0"}}]}] BACKPORT--> Co-authored-by: Kurt <kc13greiner@users.noreply.github.com>
1 parent 8a56fc7 commit 329ccba

1 file changed

Lines changed: 39 additions & 19 deletions

File tree

yarn.lock

Lines changed: 39 additions & 19 deletions
Original file line numberDiff line numberDiff line change
@@ -15692,7 +15692,7 @@ create-ecdh@^4.0.4:
1569215692
bn.js "^4.1.0"
1569315693
elliptic "^6.5.3"
1569415694

15695-
create-hash@^1.1.0, create-hash@^1.1.2, create-hash@^1.2.0:
15695+
create-hash@^1.1.0, create-hash@^1.2.0:
1569615696
version "1.2.0"
1569715697
resolved "https://registry.yarnpkg.com/create-hash/-/create-hash-1.2.0.tgz#889078af11a63756bcfb59bd221996be3a9ef196"
1569815698
integrity sha512-z00bCGNHDG8mHAkP7CtT1qVu+bFQUPjYq/4Iv3C3kWjTFV10zIjfSoeqXo9Asws8gwSHDGj/hl2u4OGIjapeCg==
@@ -15703,7 +15703,17 @@ create-hash@^1.1.0, create-hash@^1.1.2, create-hash@^1.2.0:
1570315703
ripemd160 "^2.0.1"
1570415704
sha.js "^2.4.0"
1570515705

15706-
create-hmac@^1.1.4, create-hmac@^1.1.7:
15706+
create-hash@~1.1.3:
15707+
version "1.1.3"
15708+
resolved "https://registry.yarnpkg.com/create-hash/-/create-hash-1.1.3.tgz#606042ac8b9262750f483caddab0f5819172d8fd"
15709+
integrity sha512-snRpch/kwQhcdlnZKYanNF1m0RDlrCdSKQaH87w1FCFPVPNCQ/Il9QJKAX2jVBZddRdaHBMC+zXa9Gw9tmkNUA==
15710+
dependencies:
15711+
cipher-base "^1.0.1"
15712+
inherits "^2.0.1"
15713+
ripemd160 "^2.0.0"
15714+
sha.js "^2.4.0"
15715+
15716+
create-hmac@^1.1.7:
1570715717
version "1.1.7"
1570815718
resolved "https://registry.yarnpkg.com/create-hmac/-/create-hmac-1.1.7.tgz#69170c78b3ab957147b2b8b04572e47ead2243ff"
1570915719
integrity sha512-MJG9liiZ+ogc4TzUwuvbER1JRdgvUFSB5+VR/g5h82fGaIRWMWddtKBHi7/sVhfjQZ6SehlyhvQYrcYkaUIpLg==
@@ -21216,7 +21226,7 @@ is-symbol@^1.0.2, is-symbol@^1.0.3:
2121621226
dependencies:
2121721227
has-symbols "^1.0.1"
2121821228

21219-
is-typed-array@^1.1.13, is-typed-array@^1.1.3:
21229+
is-typed-array@^1.1.13, is-typed-array@^1.1.14, is-typed-array@^1.1.3:
2122021230
version "1.1.15"
2122121231
resolved "https://registry.yarnpkg.com/is-typed-array/-/is-typed-array-1.1.15.tgz#4bfb4a45b61cee83a5a46fba778e4e8d59c0ce0b"
2122221232
integrity sha512-p3EcsicXjit7SaskXHs1hA91QxgTw46Fv6EFKKGS5DRFLD8yKnohjF3hxoju94b/OcMZoQukzpPpBE9uLVKzgQ==
@@ -25425,15 +25435,16 @@ pbf@^3.2.1, pbf@^3.3.0:
2542525435
resolve-protobuf-schema "^2.1.0"
2542625436

2542725437
pbkdf2@^3.1.2:
25428-
version "3.1.2"
25429-
resolved "https://registry.yarnpkg.com/pbkdf2/-/pbkdf2-3.1.2.tgz#dd822aa0887580e52f1a039dc3eda108efae3075"
25430-
integrity sha512-iuh7L6jA7JEGu2WxDwtQP1ddOpaJNC4KlDEFfdQajSGgGPNi4OyDc2R7QnbY2bR9QjBVGwgvTdNJZoE7RaxUMA==
25438+
version "3.1.3"
25439+
resolved "https://registry.yarnpkg.com/pbkdf2/-/pbkdf2-3.1.3.tgz#8be674d591d65658113424592a95d1517318dd4b"
25440+
integrity sha512-wfRLBZ0feWRhCIkoMB6ete7czJcnNnqRpcoWQBLqatqXXmelSRqfdDK4F3u9T2s2cXas/hQJcryI/4lAL+XTlA==
2543125441
dependencies:
25432-
create-hash "^1.1.2"
25433-
create-hmac "^1.1.4"
25434-
ripemd160 "^2.0.1"
25435-
safe-buffer "^5.0.1"
25436-
sha.js "^2.4.8"
25442+
create-hash "~1.1.3"
25443+
create-hmac "^1.1.7"
25444+
ripemd160 "=2.0.1"
25445+
safe-buffer "^5.2.1"
25446+
sha.js "^2.4.11"
25447+
to-buffer "^1.2.0"
2543725448

2543825449
pdfmake@^0.2.15:
2543925450
version "0.2.15"
@@ -27792,7 +27803,7 @@ rimraf@^5.0.5:
2779227803
dependencies:
2779327804
glob "^10.3.7"
2779427805

27795-
ripemd160@^2.0.0, ripemd160@^2.0.1:
27806+
ripemd160@=2.0.1, ripemd160@^2.0.0, ripemd160@^2.0.1:
2779627807
version "2.0.1"
2779727808
resolved "https://registry.yarnpkg.com/ripemd160/-/ripemd160-2.0.1.tgz#0f4584295c53a3628af7e6d79aca21ce57d1c6e7"
2779827809
integrity sha1-D0WEKVxTo2KK9+bXmsohzlfRxuc=
@@ -28362,7 +28373,7 @@ setprototypeof@1.2.0:
2836228373
resolved "https://registry.yarnpkg.com/setprototypeof/-/setprototypeof-1.2.0.tgz#66c9a24a73f9fc28cbe66b09fed3d33dcaf1b424"
2836328374
integrity sha512-E5LDX7Wrp85Kil5bhZv46j8jOeboKq5JMmYM3gVGdGH8xFpPWXUMsNrlODCrkoxMEeNi/XZIwuRvY4XNwYMJpw==
2836428375

28365-
sha.js@^2.4.0, sha.js@^2.4.8:
28376+
sha.js@^2.4.0, sha.js@^2.4.11, sha.js@^2.4.8:
2836628377
version "2.4.11"
2836728378
resolved "https://registry.yarnpkg.com/sha.js/-/sha.js-2.4.11.tgz#37a5cf0b81ecbc6943de109ba2960d1b26584ae7"
2836828379
integrity sha512-QMEp5B7cftE7APOjk5Y6xgrbWu+WkLVQwk8JNjZ8nKRciZaByEW6MubieAiToS7+dwvrjGhH8jRXz3MVd0AYqQ==
@@ -30131,6 +30142,15 @@ tmpl@1.0.5:
3013130142
resolved "https://registry.yarnpkg.com/tmpl/-/tmpl-1.0.5.tgz#8683e0b902bb9c20c4f726e3c0b69f36518c07cc"
3013230143
integrity sha512-3f0uOEAQwIqGuWW2MVzYg8fV/QNnc/IpuJNG837rLuczAaLVHslWHZQj4IGiEl5Hs3kkbhwL9Ab7Hrsmuj+Smw==
3013330144

30145+
to-buffer@^1.2.0:
30146+
version "1.2.1"
30147+
resolved "https://registry.yarnpkg.com/to-buffer/-/to-buffer-1.2.1.tgz#2ce650cdb262e9112a18e65dc29dcb513c8155e0"
30148+
integrity sha512-tB82LpAIWjhLYbqjx3X4zEeHN6M8CiuOEy2JY8SEQVdYRe3CCHOFaqrBW1doLDrfpWhplcW7BL+bO3/6S3pcDQ==
30149+
dependencies:
30150+
isarray "^2.0.5"
30151+
safe-buffer "^5.2.1"
30152+
typed-array-buffer "^1.0.3"
30153+
3013430154
to-camel-case@^1.0.0:
3013530155
version "1.0.0"
3013630156
resolved "https://registry.yarnpkg.com/to-camel-case/-/to-camel-case-1.0.0.tgz#1a56054b2f9d696298ce66a60897322b6f423e46"
@@ -30510,14 +30530,14 @@ type@^2.7.2:
3051030530
resolved "https://registry.yarnpkg.com/type/-/type-2.7.3.tgz#436981652129285cc3ba94f392886c2637ea0486"
3051130531
integrity sha512-8j+1QmAbPvLZow5Qpi6NCaN8FB60p/6x8/vfNqOk/hC+HuvFZhL4+WfekuhQLiqFZXOgQdrs3B+XxEmCc6b3FQ==
3051230532

30513-
typed-array-buffer@^1.0.2:
30514-
version "1.0.2"
30515-
resolved "https://registry.yarnpkg.com/typed-array-buffer/-/typed-array-buffer-1.0.2.tgz#1867c5d83b20fcb5ccf32649e5e2fc7424474ff3"
30516-
integrity sha512-gEymJYKZtKXzzBzM4jqa9w6Q1Jjm7x2d+sh19AdsD4wqnMPDYyvwpsIc2Q/835kHuo3BEQ7CjelGhfTsoBb2MQ==
30533+
typed-array-buffer@^1.0.2, typed-array-buffer@^1.0.3:
30534+
version "1.0.3"
30535+
resolved "https://registry.yarnpkg.com/typed-array-buffer/-/typed-array-buffer-1.0.3.tgz#a72395450a4869ec033fd549371b47af3a2ee536"
30536+
integrity sha512-nAYYwfY3qnzX30IkA6AQZjVbtK6duGontcQm1WSG1MD94YLqK0515GNApXkoxKOWMusVssAHWLh9SeaoefYFGw==
3051730537
dependencies:
30518-
call-bind "^1.0.7"
30538+
call-bound "^1.0.3"
3051930539
es-errors "^1.3.0"
30520-
is-typed-array "^1.1.13"
30540+
is-typed-array "^1.1.14"
3052130541

3052230542
typed-array-byte-length@^1.0.1:
3052330543
version "1.0.1"

0 commit comments

Comments
 (0)