From 6255a1775d1f2978dee1b797cc7223770435150e Mon Sep 17 00:00:00 2001 From: Charuka Tharindu Date: Mon, 21 Aug 2023 21:22:55 +0530 Subject: [PATCH 1/6] Update .trivyignore file --- .trivyignore | 1 + 1 file changed, 1 insertion(+) diff --git a/.trivyignore b/.trivyignore index 63c4f72619..b0919823c8 100644 --- a/.trivyignore +++ b/.trivyignore @@ -1,2 +1,3 @@ # False positive CVE-2020-7768 +CVE-2023-2976 \ No newline at end of file From 7524b628f5ff316152bc15f91b2b14c30b9b4ef2 Mon Sep 17 00:00:00 2001 From: MohamedSabthar Date: Tue, 22 Aug 2023 12:28:37 +0530 Subject: [PATCH 2/6] Update websocket timestamp version --- gradle.properties | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/gradle.properties b/gradle.properties index 92f9e4af9f..1a19aeab28 100644 --- a/gradle.properties +++ b/gradle.properties @@ -59,7 +59,7 @@ stdlibHttpVersion=2.10.0-20230816-003400-5c82fda stdlibGrpcVersion=1.10.0-20230816-004100-2c618f2 stdlibSoapVersion=0.2.0-20230821-111200-007b34e stdlibTransactionVersion=1.8.0-20230816-004200-c647e17 -stdlibWebsocketVersion=2.10.0-20230816-004200-999dcee +stdlibWebsocketVersion=2.10.0-20230822-121900-980d9c0 stdlibWebsubVersion=2.10.0-20230816-004200-cf1a4cd stdlibWebsubhubVersion=1.10.0-20230816-004200-42bfa5e From 817a315402491f3d276968fd19840450eff401fb Mon Sep 17 00:00:00 2001 From: Charuka Tharindu Date: Tue, 22 Aug 2023 14:17:10 +0530 Subject: [PATCH 3/6] Remove version check after installation --- installers/linux-deb/resources/DEBIAN/postinst | 1 - 1 file changed, 1 deletion(-) diff --git a/installers/linux-deb/resources/DEBIAN/postinst b/installers/linux-deb/resources/DEBIAN/postinst index e096a314d8..011f81f664 100755 --- a/installers/linux-deb/resources/DEBIAN/postinst +++ b/installers/linux-deb/resources/DEBIAN/postinst @@ -18,4 +18,3 @@ elif [ "$(basename -- "$SHELL")" = "zsh" ]; then chmod 766 ~/.ballerina/completion/_bal fi -bal -v From cf7d6a6230ee6cd3a37ba7e07d5b1e412274f91d Mon Sep 17 00:00:00 2001 From: MadhukaHarith Date: Tue, 22 Aug 2023 17:19:33 +0530 Subject: [PATCH 4/6] Update soap module and protoc tool versions --- gradle.properties | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/gradle.properties b/gradle.properties index 1a19aeab28..091adf9df3 100644 --- a/gradle.properties +++ b/gradle.properties @@ -57,7 +57,7 @@ stdlibHttpVersion=2.10.0-20230816-003400-5c82fda # Stdlib Level 06 stdlibGrpcVersion=1.10.0-20230816-004100-2c618f2 -stdlibSoapVersion=0.2.0-20230821-111200-007b34e +stdlibSoapVersion=0.2.0-20230822-163900-f44f52a stdlibTransactionVersion=1.8.0-20230816-004200-c647e17 stdlibWebsocketVersion=2.10.0-20230822-121900-980d9c0 stdlibWebsubVersion=2.10.0-20230816-004200-cf1a4cd @@ -81,7 +81,7 @@ ballerinaCommandVersion=1.3.15 graphqlVersion=0.8.0-20230821-143200-f063270 # Protoc Tool -protocToolVersion=0.1.3-20230713-142600-0648ca1 +protocToolVersion=0.2.0-20230821-121200-8933a55 # OpenAPI Module openapiVersion=1.8.0-20230817-102700-875e6f8 From 1f68cbae94dde23c8e3cafc508c655bddeccf07a Mon Sep 17 00:00:00 2001 From: Charuka Tharindu Date: Wed, 23 Aug 2023 07:07:12 +0530 Subject: [PATCH 5/6] Ignore medium level vulnerabilities detected in devcontainer image --- .trivyignore | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/.trivyignore b/.trivyignore index b0919823c8..1d5ff4d68a 100644 --- a/.trivyignore +++ b/.trivyignore @@ -1,3 +1,5 @@ # False positive CVE-2020-7768 -CVE-2023-2976 \ No newline at end of file +CVE-2023-2976 +CVE-2021-3737 +CVE-2021-3997 \ No newline at end of file From e43e9c74c8f96c243a3ee5f38c7f16d882c67914 Mon Sep 17 00:00:00 2001 From: Charuka Tharindu Date: Wed, 23 Aug 2023 07:17:57 +0530 Subject: [PATCH 6/6] Update lang timestamp version --- gradle.properties | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/gradle.properties b/gradle.properties index 091adf9df3..fe16ce8f32 100644 --- a/gradle.properties +++ b/gradle.properties @@ -4,7 +4,7 @@ group=org.ballerinalang version=2201.8.0-SNAPSHOT codeName=swan-lake -ballerinaLangVersion=2201.8.0-20230816-121900-c1174ddd +ballerinaLangVersion=2201.8.0-20230823-064000-de0dbb56 ballerinaJreVersion=2.0.0 dependencyJREVersion=jdk-17.0.7+7-jre specVersion=2023R1