Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump cryptography from 40.0.2 to 42.0.4 #404

Closed
wants to merge 209 commits into from

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Feb 21, 2024

Bumps cryptography from 40.0.2 to 42.0.4.

Changelog

Sourced from cryptography's changelog.

42.0.4 - 2024-02-20


* Fixed a null-pointer-dereference and segfault that could occur when creating
  a PKCS#12 bundle. Credit to **Alexander-Programming** for reporting the
  issue. **CVE-2024-26130**
* Fixed ASN.1 encoding for PKCS7/SMIME signed messages. The fields ``SMIMECapabilities``
  and ``SignatureAlgorithmIdentifier`` should now be correctly encoded according to the
  definitions in :rfc:`2633` :rfc:`3370`.

.. _v42-0-3:

42.0.3 - 2024-02-15

  • Fixed an initialization issue that caused key loading failures for some users.

.. _v42-0-2:

42.0.2 - 2024-01-30


* Updated Windows, macOS, and Linux wheels to be compiled with OpenSSL 3.2.1.
* Fixed an issue that prevented the use of Python buffer protocol objects in
  ``sign`` and ``verify`` methods on asymmetric keys.
* Fixed an issue with incorrect keyword-argument naming with ``EllipticCurvePrivateKey``
  :meth:`~cryptography.hazmat.primitives.asymmetric.ec.EllipticCurvePrivateKey.exchange`,
  ``X25519PrivateKey``
  :meth:`~cryptography.hazmat.primitives.asymmetric.x25519.X25519PrivateKey.exchange`,
  ``X448PrivateKey``
  :meth:`~cryptography.hazmat.primitives.asymmetric.x448.X448PrivateKey.exchange`,
  and ``DHPrivateKey``
  :meth:`~cryptography.hazmat.primitives.asymmetric.dh.DHPrivateKey.exchange`.

.. _v42-0-1:

42.0.1 - 2024-01-24

  • Fixed an issue with incorrect keyword-argument naming with EllipticCurvePrivateKey :meth:~cryptography.hazmat.primitives.asymmetric.ec.EllipticCurvePrivateKey.sign.
  • Resolved compatibility issue with loading certain RSA public keys in :func:~cryptography.hazmat.primitives.serialization.load_pem_public_key.

.. _v42-0-0:

42.0.0 - 2024-01-22


</tr></table> 

... (truncated)

Commits

Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

Juan Valacco and others added 30 commits August 15, 2023 14:11
* DH-4434/removing the hardcoded gpt-4 from eval

* DH-4434/reformat with black
* DH-4441/adding the docs for context, vector, evals

* Delete .DS_Store

* DH-4441/adding the DS_Store to gitignore

* Adding the .DS_Store again

* Changing the DS_Store

* Changing the DS_Store to what was in main
* bf/DH-4444 add quickstart

* bf/DH-4444_updated_documentation added the quickstart guide and introduction

* bf/DH-4444 fix links to API documentation from quickstart guide
…ector db (#97)

* DH-4453/creating the collection if doesn't exist

* DH-4453/changing the DS_store to the original

* DH-4453/adding the DS_Store to gitignore
* bf/DH-4457 fix small bug in README and updated modules.rst

* bf/DH-4457 fix GitHub and Discord links in modules docs

* Fix image name

---------

Co-authored-by: Juan Carlos Jose Camacho <[email protected]>
* DH-4449/removing the smart cache from API flow

* DH-4449/removing the cache from config
* bf/DH-4457 fix small bug in README and updated modules.rst

* bf/DH-4457 fix GitHub and Discord links in modules docs

* bf/DH-4457 update link to readthedocs
* DH-4459/updating the condfidence

* DH-4459/reformat with black
* DH-4474&4476/new endpoint and update update query

* DH-4474/updating the tests

* ft/DH-4474/refining the endpoints for golden db

* DH-4478/only update confidence, nl_answer when sql queries are different

* DH-4474/update golden records and return _id

* DH-4474/cast the type of _id to str
* bf/DH-4444 hide all toc links from the top level pages

* bf/DH-4444 clean up the index.html, modules, getting started and db files

* bf/DH-4444 updated text-to-sql and API documentation

* bf/DH-4444 fix bug in text-to-sql engine
* DH-4507/updating post response for golden records

* DH-4507/reformat with black
* DH-4506/updating_the delete_endpoint_response

* DH-4506/update the docs
#118)

* DH-4509/retruning the id together with the post response of golden records

* DH-4509/reformat with black
MohammadrezaPourreza and others added 24 commits February 27, 2024 12:48
* Adding descriptions to the new agent

* JC suggestion
* DH-5583/filtering the create table commands

* DH-5583/reformat with black
* Dh-5584/fixing the sql query stucking for ever issue

* DH-5584/updating the timeout
Bumps [cryptography](https://github.com/pyca/cryptography) from 40.0.2 to 42.0.4.
- [Changelog](https://github.com/pyca/cryptography/blob/main/CHANGELOG.rst)
- [Commits](pyca/cryptography@40.0.2...42.0.4)

---
updated-dependencies:
- dependency-name: cryptography
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
Copy link
Contributor Author

dependabot bot commented on behalf of github May 16, 2024

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

@dependabot dependabot bot deleted the dependabot/pip/cryptography-42.0.4 branch May 16, 2024 15:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

10 participants