Releases: kubescape/node-agent
Releases · kubescape/node-agent
Release v0.2.345
Bumps github.com/cloudflare/circl from 1.3.8 to 1.6.1.
Release notes
Sourced from github.com/cloudflare/circl's releases.
CIRCL v1.6.1
- Fixes some point checks on the FourQ curve.
- Hybrid KEM fails on low-order points.
What's Changed
- kem/hybrid: ensure X25519 hybrids fails with low order points by
@Lekensteyn
in cloudflare/circl#541- .github: Use native ARM64 builders instead of QEMU by
@Lekensteyn
in cloudflare/circl#542- Fixes several errors on twisted Edwards curves. by
@armfazh
in cloudflare/circl#545- Release v1.6.1 by
@armfazh
in cloudflare/circl#546Full Changelog: cloudflare/circl@v1.6.0...v1.6.1
CIRCL v1.6.0
New!
- Prio3 Verifiable Distributed Aggregation Function (draft-irtf-cfrg-vdaf).
- X-Wing: general-purpose hybrid post-quantum KEM (draft-connolly-cfrg-xwing-kem)
What's Changed
- Add OIDs to ML-DSA by
@bwesterb
in cloudflare/circl#519- Adds Prio3 a set of verifiable distributed aggregation functions. by
@armfazh
in cloudflare/circl#522- Run semgrep cronjob only in upstream repository. by
@armfazh
in cloudflare/circl#526- X-Wing PQ/T hybrid by
@bwesterb
in cloudflare/circl#471- ckem: move crypto/elliptic to crypto/ecdh by
@MingLLuo
in cloudflare/circl#529- hpke: Update HPKE code to use ecdh stdlib package. by
@armfazh
in cloudflare/circl#530- prio3: Adds polynomial multiplication using NTT by
@armfazh
in cloudflare/circl#532- Add Prio3 in readme. by
@armfazh
in cloudflare/circl#527New Contributors
@MingLLuo
made their first contribution in cloudflare/circl#529Full Changelog: cloudflare/circl@v1.5.0...v1.6.0
CIRCL v1.5.0
New: ML-DSA, Module-Lattice-based Digital Signature Algorithm.
What's Changed
- kem: add X25519MLKEM768 TLS hybrid KEM by
@bwesterb
in cloudflare/circl#510- Create semgrep.yml by
@hrushikeshdeshpande
in cloudflare/circl#514- repo: Some fixes reported by CodeQL by
@armfazh
in cloudflare/circl#515- Add ML-DSA (FIPS204) by
@bwesterb
in cloudflare/circl#480- sign/mldsa: Add test for ML-DSA signature verification. by
@armfazh
in cloudflare/circl#517- Release v1.5.0 by
@armfazh
in cloudflare/circl#518New Contributors
@hrushikeshdeshpande
made their first contribution in cloudflare/circl#514Full Changelog: cloudflare/circl@v1.4.0...v1.5.0
... (truncated)
Commits
c6d33e3
Release v1.6.10c3868e
curve4q: Shared must fail with low order points.9fd570d
curve4q: Test showing DH does not fails on identity point.c988ceb
fourq: Correctly unmarshalling point.ef2611d
fourq: Test showing point unmarshal fails.05eba44
fourq: Handle the case of Z=0 for IsOnCurve and IsEqual.eef0878
fourq: Test showing isEqual and IsOnCurve fail.2298474
goldilocks; Handling points with z=0.5a940a1
goldilocks: Test for IsEqual must fail with Z=048c3b6a
ed25519: Fix isEqual to handle points with Z=0.- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase
.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
You can disable automated security fix PRs for this repo from the Security Alerts page.
Release v0.2.343
Overview
Release v0.2.342
Overview
Release v0.2.341
Overview
Release v0.2.340
…tart
Overview
Release v0.2.335
Overview
Release v0.2.333
Overview
Release v0.2.332
Overview
Release v0.2.331
Merge pull request #567 from kubescape/sbom do not save spec for sbom marked as too large