Commit 76bcde3
authored
Bump chainguard.dev/apko from 0.25.6 to 0.25.7 (#509)
Bumps [chainguard.dev/apko](https://github.com/chainguard-dev/apko) from
0.25.6 to 0.25.7.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/chainguard-dev/apko/releases">chainguard.dev/apko's
releases</a>.</em></p>
<blockquote>
<h2>Release v0.25.7</h2>
<h2>What's Changed</h2>
<ul>
<li>build(deps): bump github/codeql-action from 3.27.9 to 3.28.14 by <a
href="https://github.com/dependabot"><code>@dependabot</code></a> in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1603">chainguard-dev/apko#1603</a></li>
<li>build(deps): bump golang.org/x/sync from 0.12.0 to 0.13.0 by <a
href="https://github.com/dependabot"><code>@dependabot</code></a> in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1602">chainguard-dev/apko#1602</a></li>
<li>build(deps): bump step-security/harden-runner from 2.11.0 to 2.11.1
by <a href="https://github.com/dependabot"><code>@dependabot</code></a>
in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1599">chainguard-dev/apko#1599</a></li>
<li>build(deps): bump goreleaser/goreleaser-action from 6.2.1 to 6.3.0
by <a href="https://github.com/dependabot"><code>@dependabot</code></a>
in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1597">chainguard-dev/apko#1597</a></li>
<li>build(deps): bump sigs.k8s.io/release-utils from 0.11.0 to 0.11.1 by
<a href="https://github.com/dependabot"><code>@dependabot</code></a> in
<a
href="https://redirect.github.com/chainguard-dev/apko/pull/1594">chainguard-dev/apko#1594</a></li>
<li>build(deps): bump google.golang.org/api from 0.225.0 to 0.228.0 by
<a href="https://github.com/dependabot"><code>@dependabot</code></a> in
<a
href="https://redirect.github.com/chainguard-dev/apko/pull/1591">chainguard-dev/apko#1591</a></li>
<li>build(deps): bump golang.org/x/sys from 0.31.0 to 0.32.0 by <a
href="https://github.com/dependabot"><code>@dependabot</code></a> in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1601">chainguard-dev/apko#1601</a></li>
<li>build(deps): bump go.step.sm/crypto from 0.59.1 to 0.60.0 by <a
href="https://github.com/dependabot"><code>@dependabot</code></a> in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1592">chainguard-dev/apko#1592</a></li>
<li>Pass through ReadAt to tarfs by <a
href="https://github.com/jonjohnsonjr"><code>@jonjohnsonjr</code></a>
in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1607">chainguard-dev/apko#1607</a></li>
<li>Un-abstract the tarball package by <a
href="https://github.com/jonjohnsonjr"><code>@jonjohnsonjr</code></a>
in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1609">chainguard-dev/apko#1609</a></li>
<li>Drop pkg/apk/tarball by <a
href="https://github.com/jonjohnsonjr"><code>@jonjohnsonjr</code></a>
in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1613">chainguard-dev/apko#1613</a></li>
<li>refactor: slim down interface requirements for fetching packages by
<a href="https://github.com/luhring"><code>@luhring</code></a> in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1614">chainguard-dev/apko#1614</a></li>
<li>Consider deps resolved if other resolved deps already provide them
by <a href="https://github.com/dannf"><code>@dannf</code></a> in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1606">chainguard-dev/apko#1606</a></li>
<li>For multi-layer images, include all layers in sbom by <a
href="https://github.com/jonjohnsonjr"><code>@jonjohnsonjr</code></a>
in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1611">chainguard-dev/apko#1611</a></li>
<li>Rewrite writeTar in terms of iterators by <a
href="https://github.com/jonjohnsonjr"><code>@jonjohnsonjr</code></a>
in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1615">chainguard-dev/apko#1615</a></li>
<li>Use a lazy layerWriter for writing tar files by <a
href="https://github.com/jonjohnsonjr"><code>@jonjohnsonjr</code></a>
in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1616">chainguard-dev/apko#1616</a></li>
<li>apk: fix cached APKINDEX to be world readable by <a
href="https://github.com/xnox"><code>@xnox</code></a> in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1621">chainguard-dev/apko#1621</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/dannf"><code>@dannf</code></a> made
their first contribution in <a
href="https://redirect.github.com/chainguard-dev/apko/pull/1606">chainguard-dev/apko#1606</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/chainguard-dev/apko/compare/v0.25.6...v0.25.7">https://github.com/chainguard-dev/apko/compare/v0.25.6...v0.25.7</a></p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/chainguard-dev/apko/commit/5361acd8a7a96bb955b247d226b338206972bfec"><code>5361acd</code></a>
apk: fix cached APKINDEX to be world readable (<a
href="https://redirect.github.com/chainguard-dev/apko/issues/1621">#1621</a>)</li>
<li><a
href="https://github.com/chainguard-dev/apko/commit/8f267519ba25b98f89cf8efabbd1bed9c8e657e8"><code>8f26751</code></a>
Use a lazy layerWriter for writing tar files (<a
href="https://redirect.github.com/chainguard-dev/apko/issues/1616">#1616</a>)</li>
<li><a
href="https://github.com/chainguard-dev/apko/commit/548b1860ad4bab8e7b25de981a571a3c57a5079d"><code>548b186</code></a>
Rewrite writeTar in terms of iterators (<a
href="https://redirect.github.com/chainguard-dev/apko/issues/1615">#1615</a>)</li>
<li><a
href="https://github.com/chainguard-dev/apko/commit/f2764a0fb7bf7b65f743dc79d6730a62807558ca"><code>f2764a0</code></a>
For multi-layer images, include all layers (<a
href="https://redirect.github.com/chainguard-dev/apko/issues/1611">#1611</a>)</li>
<li><a
href="https://github.com/chainguard-dev/apko/commit/6d7c37669b045468f9fa3a9bb7ca151a2b78a6e2"><code>6d7c376</code></a>
Consider deps resolved if other resolved deps already provide them (<a
href="https://redirect.github.com/chainguard-dev/apko/issues/1606">#1606</a>)</li>
<li><a
href="https://github.com/chainguard-dev/apko/commit/5871d0a6c8b0f95e65dc4c14661f29ef907085a2"><code>5871d0a</code></a>
refactor: slim down interface requirements for fetching packages (<a
href="https://redirect.github.com/chainguard-dev/apko/issues/1614">#1614</a>)</li>
<li><a
href="https://github.com/chainguard-dev/apko/commit/6b5bcefd68f0fcccec01ae9268c958130aa6f686"><code>6b5bcef</code></a>
Drop pkg/apk/tarball (<a
href="https://redirect.github.com/chainguard-dev/apko/issues/1613">#1613</a>)</li>
<li><a
href="https://github.com/chainguard-dev/apko/commit/2912068628b370bc2b14846885f0c574a5f799e3"><code>2912068</code></a>
Un-abstract the tarball package (<a
href="https://redirect.github.com/chainguard-dev/apko/issues/1609">#1609</a>)</li>
<li><a
href="https://github.com/chainguard-dev/apko/commit/ce38e2f7c7828454808ae905f81bc3003614583d"><code>ce38e2f</code></a>
Pass through ReadAt to tarfs (<a
href="https://redirect.github.com/chainguard-dev/apko/issues/1607">#1607</a>)</li>
<li><a
href="https://github.com/chainguard-dev/apko/commit/4e8acfdf8c5c8f5b7ea0a6f24ef2beb405121af4"><code>4e8acfd</code></a>
build(deps): bump go.step.sm/crypto from 0.59.1 to 0.60.0 (<a
href="https://redirect.github.com/chainguard-dev/apko/issues/1592">#1592</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/chainguard-dev/apko/compare/v0.25.6...v0.25.7">compare
view</a></li>
</ul>
</details>
<br />
[](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.
[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)
---
<details>
<summary>Dependabot commands and options</summary>
<br />
You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)
</details>
Signed-off-by: dependabot[bot] <[email protected]>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>1 parent f49afa6 commit 76bcde3
2 files changed
+9
-13
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
3 | 3 | | |
4 | 4 | | |
5 | 5 | | |
6 | | - | |
| 6 | + | |
7 | 7 | | |
8 | 8 | | |
9 | 9 | | |
| |||
23 | 23 | | |
24 | 24 | | |
25 | 25 | | |
26 | | - | |
| 26 | + | |
27 | 27 | | |
28 | 28 | | |
29 | 29 | | |
| |||
158 | 158 | | |
159 | 159 | | |
160 | 160 | | |
161 | | - | |
162 | 161 | | |
163 | 162 | | |
164 | 163 | | |
| |||
214 | 213 | | |
215 | 214 | | |
216 | 215 | | |
217 | | - | |
| 216 | + | |
218 | 217 | | |
219 | 218 | | |
220 | 219 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
1 | | - | |
2 | | - | |
| 1 | + | |
| 2 | + | |
3 | 3 | | |
4 | 4 | | |
5 | 5 | | |
| |||
9 | 9 | | |
10 | 10 | | |
11 | 11 | | |
12 | | - | |
13 | | - | |
| 12 | + | |
| 13 | + | |
14 | 14 | | |
15 | 15 | | |
16 | 16 | | |
| |||
266 | 266 | | |
267 | 267 | | |
268 | 268 | | |
269 | | - | |
270 | 269 | | |
271 | 270 | | |
272 | 271 | | |
| |||
499 | 498 | | |
500 | 499 | | |
501 | 500 | | |
502 | | - | |
503 | | - | |
504 | 501 | | |
505 | 502 | | |
506 | 503 | | |
| |||
761 | 758 | | |
762 | 759 | | |
763 | 760 | | |
764 | | - | |
765 | | - | |
| 761 | + | |
| 762 | + | |
766 | 763 | | |
767 | 764 | | |
768 | 765 | | |
| |||
0 commit comments