Skip to content

Bump github.com/awslabs/soci-snapshotter from 0.11.1 to 0.12.1 in /functions/source/soci-index-generator-lambda#160

Open
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/go_modules/functions/source/soci-index-generator-lambda/github.com/awslabs/soci-snapshotter-0.12.1
Open

Bump github.com/awslabs/soci-snapshotter from 0.11.1 to 0.12.1 in /functions/source/soci-index-generator-lambda#160
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/go_modules/functions/source/soci-index-generator-lambda/github.com/awslabs/soci-snapshotter-0.12.1

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Mar 19, 2026

Bumps github.com/awslabs/soci-snapshotter from 0.11.1 to 0.12.1.

Release notes

Sourced from github.com/awslabs/soci-snapshotter's releases.

v0.12.1

Changelog

  • Fix a regression where soci convert or soci create fails when artifacts DB is out of sync with the content store. (#1796)
  • Fix incorrect GC labeling of image layers in soci convert. (#1804)

Full Changelog: awslabs/soci-snapshotter@v0.12.0...v0.12.1

These binaries were compiled using glibc 2.34.

v0.12.0

Changelog

  • Parallel pull mode improvements
    • Create fewer requests when using ranged GETs (#1631, #1781)
      • This should fix GOAWAY and similar errors thrown by registries with abuse protection.
    • Add asynchronous digest verification (#1654)
    • Harden image cleanup logic on image pull failures (#1638)
  • Add soci-snapshotter-grpc config command
    • soci-snapshotter-grpc config dump (#1693)
    • soci-snapshotter-grpc config default (#1702)
  • Skip existing zTOCs when regenerating zTOCs (#1720)
  • Hard-fail on config parsing errors (#1651)
  • Lower “layer not found” severity from Error to Warn for id-mapping (#1772)
  • Fix incorrect node info output (#1755)
  • Fix race condition in soci rebuild-db (#1729)
  • Fix soci ztoc ls showing wrong zTOCs for shared layers (#1728)

Full Changelog: awslabs/soci-snapshotter@v0.11.1...v0.12.0

These binaries were compiled using glibc 2.34.

Commits
  • c140af2 Update version in docs to v0.12.1
  • 7b1064c Add third party licenses for v0.12.1
  • fab49f4 Upgrade go to 1.24.11 in CI
  • d89bd30 add garbage collection labels to image mainfest
  • 23e3bae fix: skip processing ztocs/indexes that are found in the artifacts store but ...
  • eef118c Update version in docs to v0.12.0
  • 85c2893 Add third party licenses for v0.12.0
  • 9ec9719 Bump dependencies using scripts/bump-deps.sh
  • b0ee432 Upgrade Go 1.24.10 in CI
  • eaf7aba Bump actions/checkout from 5 to 6
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot added dependencies Pull requests that update a dependency file go Pull requests that update go code labels Mar 19, 2026
@dependabot dependabot bot requested a review from a team as a code owner March 19, 2026 22:03
@dependabot dependabot bot added dependencies Pull requests that update a dependency file go Pull requests that update go code labels Mar 19, 2026
@sondavidb
Copy link
Contributor

@dependabot recreate

Bumps [github.com/awslabs/soci-snapshotter](https://github.com/awslabs/soci-snapshotter) from 0.11.1 to 0.12.1.
- [Release notes](https://github.com/awslabs/soci-snapshotter/releases)
- [Changelog](https://github.com/awslabs/soci-snapshotter/blob/main/RELEASES.md)
- [Commits](awslabs/soci-snapshotter@v0.11.1...v0.12.1)

---
updated-dependencies:
- dependency-name: github.com/awslabs/soci-snapshotter
  dependency-version: 0.12.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/go_modules/functions/source/soci-index-generator-lambda/github.com/awslabs/soci-snapshotter-0.12.1 branch from 2895ecd to 1f9ba65 Compare March 19, 2026 22:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file go Pull requests that update go code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant