Skip to content

[Merged by Bors] - Update dependencies incl Tokio#3866

Closed
michaelsproul wants to merge 1 commit intosigp:unstablefrom
michaelsproul:cargo-update
Closed

[Merged by Bors] - Update dependencies incl Tokio#3866
michaelsproul wants to merge 1 commit intosigp:unstablefrom
michaelsproul:cargo-update

Conversation

@michaelsproul
Copy link
Member

Proposed Changes

Update all dependencies to new semver-compatible releases with cargo update. Importantly this patches a Tokio vuln: https://rustsec.org/advisories/RUSTSEC-2023-0001. I don't think we were affected by the vuln because it only applies to named pipes on Windows, but it's still good hygiene to patch.

@michaelsproul michaelsproul added ready-for-review The code is ready for review v3.4.0 Minor release following v3.3.0 labels Jan 9, 2023
Copy link
Member

@paulhauner paulhauner left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Looks good to me, perhaps someone from the networking side could eyeball the libp2p/tokio upgrades?

Copy link
Member

@AgeManning AgeManning left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@michaelsproul michaelsproul added ready-for-merge This PR is ready to merge. and removed ready-for-review The code is ready for review labels Jan 9, 2023
@michaelsproul
Copy link
Member Author

bors r+

bors bot pushed a commit that referenced this pull request Jan 9, 2023
## Proposed Changes

Update all dependencies to new semver-compatible releases with `cargo update`. Importantly this patches a Tokio vuln: https://rustsec.org/advisories/RUSTSEC-2023-0001. I don't think we were affected by the vuln because it only applies to named pipes on Windows, but it's still good hygiene to patch.
@bors bors bot changed the title Update dependencies incl Tokio [Merged by Bors] - Update dependencies incl Tokio Jan 10, 2023
@bors bors bot closed this Jan 10, 2023
@michaelsproul michaelsproul deleted the cargo-update branch January 10, 2023 01:55
bors bot pushed a commit that referenced this pull request Jan 11, 2023
## Issue Addressed

NA

## Proposed Changes

Bump versions

## Additional Info

- [x] ~~Blocked on #3728, #3801~~
- [x] ~~Blocked on #3866~~
- [x] Requires additional testing
bors bot pushed a commit that referenced this pull request Jan 11, 2023
## Issue Addressed

NA

## Proposed Changes

Bump versions

## Additional Info

- [x] ~~Blocked on #3728, #3801~~
- [x] ~~Blocked on #3866~~
- [x] Requires additional testing
bors bot pushed a commit that referenced this pull request Jan 11, 2023
## Issue Addressed

NA

## Proposed Changes

Bump versions

## Additional Info

- [x] ~~Blocked on #3728, #3801~~
- [x] ~~Blocked on #3866~~
- [x] Requires additional testing
bors bot pushed a commit that referenced this pull request Jan 11, 2023
## Issue Addressed

NA

## Proposed Changes

Bump versions

## Additional Info

- [x] ~~Blocked on #3728, #3801~~
- [x] ~~Blocked on #3866~~
- [x] Requires additional testing
Woodpile37 pushed a commit to Woodpile37/lighthouse that referenced this pull request Jan 6, 2024
## Issue Addressed

NA

## Proposed Changes

Bump versions

## Additional Info

- [x] ~~Blocked on sigp#3728, sigp#3801~~
- [x] ~~Blocked on sigp#3866~~
- [x] Requires additional testing
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

ready-for-merge This PR is ready to merge. v3.4.0 Minor release following v3.3.0

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants