Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

aws: updates docs with packer requirement #1

Open
wants to merge 6 commits into
base: aws-image
Choose a base branch
from

Conversation

snir911
Copy link

@snir911 snir911 commented Jul 10, 2022

Signed-off-by: Snir Sheriber [email protected]

@bpradipt bpradipt force-pushed the aws-image branch 3 times, most recently from b9b811c to ca7249c Compare July 15, 2022 06:03
Copy link
Author

@snir911 snir911 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

TODO:
Install aws packer plugin
packer plugins install github.com/hashicorp/amazon

bpradipt pushed a commit that referenced this pull request Jul 31, 2023
Module peerpodconfig-ctrl was vulnerable.
Vulnerability #1: GO-2023-1571
    Denial of service via crafted HTTP/2 stream in net/http and golang.org/x/net
  More info: https://pkg.go.dev/vuln/GO-2023-1571
  Module: golang.org/x/net
    Found in: golang.org/x/[email protected]
    Fixed in: golang.org/x/[email protected]

Signed-off-by: Paul Meyer <[email protected]>
bpradipt pushed a commit that referenced this pull request Aug 3, 2023
Vulnerability #1: GO-2023-1987
  Large RSA keys can cause high CPU usage in crypto/tls
  More info: https://pkg.go.dev/vuln/GO-2023-1987

Fixes: confidential-containers#1300

Signed-off-by: Paul Meyer <[email protected]>
bpradipt pushed a commit that referenced this pull request Aug 12, 2023
* Add Terraform template to build, upload and verify the podvm image
* Only create IAM console admin policy if it doesn't exist
* Add a note to the readme to say that the podvm Terraform template must be
ran on your client machine.

Signed-off-by: Matthew Arnold <[email protected]>
bpradipt pushed a commit that referenced this pull request Aug 12, 2023
Module peerpodconfig-ctrl was vulnerable.
Vulnerability #1: GO-2023-1571
    Denial of service via crafted HTTP/2 stream in net/http and golang.org/x/net
  More info: https://pkg.go.dev/vuln/GO-2023-1571
  Module: golang.org/x/net
    Found in: golang.org/x/[email protected]
    Fixed in: golang.org/x/[email protected]

Signed-off-by: Paul Meyer <[email protected]>
bpradipt pushed a commit that referenced this pull request Aug 12, 2023
Vulnerability #1: GO-2023-1987
  Large RSA keys can cause high CPU usage in crypto/tls
  More info: https://pkg.go.dev/vuln/GO-2023-1987

Fixes: confidential-containers#1300

Signed-off-by: Paul Meyer <[email protected]>
bpradipt pushed a commit that referenced this pull request Nov 18, 2023
Bump golang from 1.20.10 to 1.20.11
PR check failed e.g. https://github.com/confidential-containers/cloud-api-adaptor/actions/runs/6808420299/job/18512839352?pr=1564
Vulnerability #1: GO-2023-2186
Incorrect detection of reserved device names on Windows in path/filepath
More info: https://pkg.go.dev/vuln/GO-2023-2186
Standard library
Found in: path/[email protected]
Fixed in: path/[email protected]

Fixes: confidential-containers#1565

Signed-off-by: Yan Song YS Liu <[email protected]>
bpradipt added a commit that referenced this pull request Sep 9, 2024
Fixes Vulnerability #1: GO-2024-3106

Signed-off-by: Pradipta Banerjee <[email protected]>
bpradipt added a commit that referenced this pull request Sep 9, 2024
Fixes Vulnerability #1: GO-2024-3106

Signed-off-by: Pradipta Banerjee <[email protected]>
bpradipt added a commit that referenced this pull request Sep 9, 2024
Fixes Vulnerability #1: GO-2024-3106

Signed-off-by: Pradipta Banerjee <[email protected]>
bpradipt added a commit that referenced this pull request Sep 9, 2024
Fixes Vulnerability #1: GO-2024-3106

Signed-off-by: Pradipta Banerjee <[email protected]>
bpradipt added a commit that referenced this pull request Sep 9, 2024
Fixes Vulnerability #1: GO-2024-3106

Signed-off-by: Pradipta Banerjee <[email protected]>
bpradipt added a commit that referenced this pull request Sep 9, 2024
Fixes Vulnerability #1: GO-2024-3106

Signed-off-by: Pradipta Banerjee <[email protected]>
bpradipt added a commit that referenced this pull request Sep 9, 2024
Fixes Vulnerability #1: GO-2024-3106

Signed-off-by: Pradipta Banerjee <[email protected]>
bpradipt added a commit that referenced this pull request Sep 9, 2024
Fixes Vulnerability #1: GO-2024-3106

Signed-off-by: Pradipta Banerjee <[email protected]>
bpradipt added a commit that referenced this pull request Sep 9, 2024
Fixes Vulnerability #1: GO-2024-3106

Signed-off-by: Pradipta Banerjee <[email protected]>
bpradipt added a commit that referenced this pull request Sep 26, 2024
Fixes Vulnerability #1: GO-2024-3106

Signed-off-by: Pradipta Banerjee <[email protected]>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants