Tags: elastic/cloudbeat
Tags
[updatecli] 9.2 - Update to elastic/beats@37a8a640ee02 (#4088) ### What `elastic/beats` automatic sync *Changeset* * elastic/beats@37a8a640ee02 Generated automatically with https://github.com/elastic/cloudbeat/actions/runs/23825673918 --- <Actions> <action id="742d76d9d4ec4f9906248e3f9d8836e1b8bd061b94f4a35333dca522f420c533"> <h3>Update Elastic Beats go.mod Version</h3> <details id="d5803722f3983afbfa30b24a1ea991d1b2cb78805311b360128269ef495105af"> <summary>Update to elastic/beats@37a8a640ee02</summary> <p>ran shell command ".ci/updatecli/scripts/update-beats.sh 37a8a640ee02"</p> </details> <a href="proxy.php?url=https%3A%2F%2Fwww.github.com%2F%3Ca+href%3D"https://github.com/elastic/cloudbeat/actions/runs/23825673918">GitHub">https://github.com/elastic/cloudbeat/actions/runs/23825673918">GitHub Action workflow link</a> </action> </Actions> --- <table> <tr> <td width="77"> <img src="proxy.php?url=https%3A%2F%2Fwww.github.com%2F%3Ca+href%3D"https://www.updatecli.io/images/updatecli.png" rel="nofollow">https://www.updatecli.io/images/updatecli.png" alt="Updatecli logo" width="50" height="50" /> </td> <td> <p> Created automatically by <a href="proxy.php?url=https%3A%2F%2Fwww.github.com%2F%3Ca+href%3D"https://www.updatecli.io/">Updatecli</a" rel="nofollow">https://www.updatecli.io/">Updatecli</a> </p> <details><summary>Options:</summary> <br /> <p>Most of Updatecli configuration is done via <a href="proxy.php?url=https%3A%2F%2Fwww.github.com%2F%3Ca+href%3D"https://www.updatecli.io/docs/prologue/quick-start/">its" rel="nofollow">https://www.updatecli.io/docs/prologue/quick-start/">its manifest(s)</a>.</p> <ul> <li>If you close this pull request, Updatecli will automatically reopen it, the next time it runs.</li> <li>If you close this pull request and delete the base branch, Updatecli will automatically recreate it, erasing all previous commits made.</li> </ul> <p> Feel free to report any issues at <a href="proxy.php?url=https%3A%2F%2Fwww.github.com%2F%3Ca+href%3D"https://github.com/updatecli/updatecli/issues">github.com/updatecli/updatecli</a>.<br">https://github.com/updatecli/updatecli/issues">github.com/updatecli/updatecli</a>.<br /> If you find this tool useful, do not hesitate to star <a href="proxy.php?url=https%3A%2F%2Fwww.github.com%2F%3Ca+href%3D"https://github.com/updatecli/updatecli/stargazers">our">https://github.com/updatecli/updatecli/stargazers">our GitHub repository</a> as a sign of appreciation, and/or to tell us directly on our <a href="proxy.php?url=https%3A%2F%2Fwww.github.com%2F%3Ca+href%3D"https://matrix.to/#/#Updatecli_community:gitter.im">chat</a" rel="nofollow">https://matrix.to/#/#Updatecli_community:gitter.im">chat</a>! </p> </details> </td> </tr> </table>
[updatecli] 8.19 - Update to elastic/beats@8b17db95a512 (#4087) ### What `elastic/beats` automatic sync *Changeset* * elastic/beats@8b17db95a512 Generated automatically with https://github.com/elastic/cloudbeat/actions/runs/23825673918 --- <Actions> <action id="742d76d9d4ec4f9906248e3f9d8836e1b8bd061b94f4a35333dca522f420c533"> <h3>Update Elastic Beats go.mod Version</h3> <details id="d5803722f3983afbfa30b24a1ea991d1b2cb78805311b360128269ef495105af"> <summary>Update to elastic/beats@8b17db95a512</summary> <p>ran shell command ".ci/updatecli/scripts/update-beats.sh 8b17db95a512"</p> </details> <a href="proxy.php?url=https%3A%2F%2Fwww.github.com%2F%3Ca+href%3D"https://github.com/elastic/cloudbeat/actions/runs/23825673918">GitHub">https://github.com/elastic/cloudbeat/actions/runs/23825673918">GitHub Action workflow link</a> </action> </Actions> --- <table> <tr> <td width="77"> <img src="proxy.php?url=https%3A%2F%2Fwww.github.com%2F%3Ca+href%3D"https://www.updatecli.io/images/updatecli.png" rel="nofollow">https://www.updatecli.io/images/updatecli.png" alt="Updatecli logo" width="50" height="50" /> </td> <td> <p> Created automatically by <a href="proxy.php?url=https%3A%2F%2Fwww.github.com%2F%3Ca+href%3D"https://www.updatecli.io/">Updatecli</a" rel="nofollow">https://www.updatecli.io/">Updatecli</a> </p> <details><summary>Options:</summary> <br /> <p>Most of Updatecli configuration is done via <a href="proxy.php?url=https%3A%2F%2Fwww.github.com%2F%3Ca+href%3D"https://www.updatecli.io/docs/prologue/quick-start/">its" rel="nofollow">https://www.updatecli.io/docs/prologue/quick-start/">its manifest(s)</a>.</p> <ul> <li>If you close this pull request, Updatecli will automatically reopen it, the next time it runs.</li> <li>If you close this pull request and delete the base branch, Updatecli will automatically recreate it, erasing all previous commits made.</li> </ul> <p> Feel free to report any issues at <a href="proxy.php?url=https%3A%2F%2Fwww.github.com%2F%3Ca+href%3D"https://github.com/updatecli/updatecli/issues">github.com/updatecli/updatecli</a>.<br">https://github.com/updatecli/updatecli/issues">github.com/updatecli/updatecli</a>.<br /> If you find this tool useful, do not hesitate to star <a href="proxy.php?url=https%3A%2F%2Fwww.github.com%2F%3Ca+href%3D"https://github.com/updatecli/updatecli/stargazers">our">https://github.com/updatecli/updatecli/stargazers">our GitHub repository</a> as a sign of appreciation, and/or to tell us directly on our <a href="proxy.php?url=https%3A%2F%2Fwww.github.com%2F%3Ca+href%3D"https://matrix.to/#/#Updatecli_community:gitter.im">chat</a" rel="nofollow">https://matrix.to/#/#Updatecli_community:gitter.im">chat</a>! </p> </details> </td> </tr> </table>
chore(deps): update module github.com/cloudflare/circl to v1.6.3 (9.3) ( #4068) This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [github.com/cloudflare/circl](https://redirect.github.com/cloudflare/circl) | indirect | patch | `v1.6.1` -> `v1.6.3` | --- > [!WARNING] > Some dependencies could not be looked up. Check the Dependency Dashboard for more information. --- ### Release Notes <details> <summary>cloudflare/circl (github.com/cloudflare/circl)</summary> ### [`v1.6.3`](https://redirect.github.com/cloudflare/circl/releases/tag/v1.6.3): CIRCL v1.6.3 [Compare Source](https://redirect.github.com/cloudflare/circl/compare/v1.6.2...v1.6.3) #### CIRCL v1.6.3 Fix a bug on ecc/p384 scalar multiplication. ##### What's Changed - sign/mldsa: Check opts for nil value by [@​armfazh](https://redirect.github.com/armfazh) in [https://github.com/cloudflare/circl/pull/582](https://redirect.github.com/cloudflare/circl/pull/582) - ecc/p384: Point addition must handle point doubling case. by [@​armfazh](https://redirect.github.com/armfazh) in [https://github.com/cloudflare/circl/pull/583](https://redirect.github.com/cloudflare/circl/pull/583) - Release CIRCL v1.6.3 by [@​armfazh](https://redirect.github.com/armfazh) in [https://github.com/cloudflare/circl/pull/584](https://redirect.github.com/cloudflare/circl/pull/584) **Full Changelog**: cloudflare/circl@v1.6.2...v1.6.3 ### [`v1.6.2`](https://redirect.github.com/cloudflare/circl/releases/tag/v1.6.2): CIRCL v1.6.2 [Compare Source](https://redirect.github.com/cloudflare/circl/compare/v1.6.1...v1.6.2) #### CIRCL v1.6.2 - New SLH-DSA, improvements in ML-DSA for arm64. - Tested compilation on WASM. #### What's Changed - Optimize pairing product computation by moving exponentiations to G1. by [@​dfaranha](https://redirect.github.com/dfaranha) in [https://github.com/cloudflare/circl/pull/547](https://redirect.github.com/cloudflare/circl/pull/547) - sign: Adding SLH-DSA signature by [@​armfazh](https://redirect.github.com/armfazh) in [https://github.com/cloudflare/circl/pull/512](https://redirect.github.com/cloudflare/circl/pull/512) - Update code generators to CIRCL v1.6.1. by [@​armfazh](https://redirect.github.com/armfazh) in [https://github.com/cloudflare/circl/pull/548](https://redirect.github.com/cloudflare/circl/pull/548) - ML-DSA: Add preliminary Wycheproof test vectors by [@​bwesterb](https://redirect.github.com/bwesterb) in [https://github.com/cloudflare/circl/pull/552](https://redirect.github.com/cloudflare/circl/pull/552) - go fmt by [@​bwesterb](https://redirect.github.com/bwesterb) in [https://github.com/cloudflare/circl/pull/554](https://redirect.github.com/cloudflare/circl/pull/554) - gz-compressing test vectors, use of HexBytes and ReadGzip functions. by [@​armfazh](https://redirect.github.com/armfazh) in [https://github.com/cloudflare/circl/pull/555](https://redirect.github.com/cloudflare/circl/pull/555) - group: Removes use of elliptic Marshal and Unmarshal functions. by [@​armfazh](https://redirect.github.com/armfazh) in [https://github.com/cloudflare/circl/pull/556](https://redirect.github.com/cloudflare/circl/pull/556) - Support encoding/decoding ML-DSA private keys (as long as they contain seeds) by [@​bwesterb](https://redirect.github.com/bwesterb) in [https://github.com/cloudflare/circl/pull/559](https://redirect.github.com/cloudflare/circl/pull/559) - Update to golangci-lint v2 by [@​bwesterb](https://redirect.github.com/bwesterb) in [https://github.com/cloudflare/circl/pull/560](https://redirect.github.com/cloudflare/circl/pull/560) - Preparation for ARM64 Implementation of poly operations for dilithium package. by [@​elementrics](https://redirect.github.com/elementrics) in [https://github.com/cloudflare/circl/pull/562](https://redirect.github.com/cloudflare/circl/pull/562) - prepare power2Round for custom implementations in assembly by [@​elementrics](https://redirect.github.com/elementrics) in [https://github.com/cloudflare/circl/pull/564](https://redirect.github.com/cloudflare/circl/pull/564) - ARM64 implementation for poly.PackLe16 by [@​elementrics](https://redirect.github.com/elementrics) in [https://github.com/cloudflare/circl/pull/563](https://redirect.github.com/cloudflare/circl/pull/563) - add arm64 version of polyMulBy2toD by [@​elementrics](https://redirect.github.com/elementrics) in [https://github.com/cloudflare/circl/pull/565](https://redirect.github.com/cloudflare/circl/pull/565) - add arm64 version of polySub by [@​elementrics](https://redirect.github.com/elementrics) in [https://github.com/cloudflare/circl/pull/566](https://redirect.github.com/cloudflare/circl/pull/566) - group: add byteLen method for short groups and RandomScalar uses rand.Int by [@​armfazh](https://redirect.github.com/armfazh) in [https://github.com/cloudflare/circl/pull/568](https://redirect.github.com/cloudflare/circl/pull/568) - add arm64 version of poly.Add/Sub by [@​elementrics](https://redirect.github.com/elementrics) in [https://github.com/cloudflare/circl/pull/572](https://redirect.github.com/cloudflare/circl/pull/572) - group: Adding cryptobyte marshaling to scalars by [@​armfazh](https://redirect.github.com/armfazh) in [https://github.com/cloudflare/circl/pull/569](https://redirect.github.com/cloudflare/circl/pull/569) - Bumping up to Go1.25 by [@​armfazh](https://redirect.github.com/armfazh) in [https://github.com/cloudflare/circl/pull/574](https://redirect.github.com/cloudflare/circl/pull/574) - ci: Including WASM compilation. by [@​armfazh](https://redirect.github.com/armfazh) in [https://github.com/cloudflare/circl/pull/577](https://redirect.github.com/cloudflare/circl/pull/577) - Revert to using package-declared HPKE errors for shortkem instead of standard library errors by [@​harshiniwho](https://redirect.github.com/harshiniwho) in [https://github.com/cloudflare/circl/pull/578](https://redirect.github.com/cloudflare/circl/pull/578) - Release v1.6.2 by [@​armfazh](https://redirect.github.com/armfazh) in [https://github.com/cloudflare/circl/pull/579](https://redirect.github.com/cloudflare/circl/pull/579) #### New Contributors - [@​dfaranha](https://redirect.github.com/dfaranha) made their first contribution in [https://github.com/cloudflare/circl/pull/547](https://redirect.github.com/cloudflare/circl/pull/547) - [@​elementrics](https://redirect.github.com/elementrics) made their first contribution in [https://github.com/cloudflare/circl/pull/562](https://redirect.github.com/cloudflare/circl/pull/562) - [@​harshiniwho](https://redirect.github.com/harshiniwho) made their first contribution in [https://github.com/cloudflare/circl/pull/578](https://redirect.github.com/cloudflare/circl/pull/578) **Full Changelog**: cloudflare/circl@v1.6.1...v1.6.2 </details> --- ### Configuration 📅 **Schedule**: Branch creation - "* 1 * * 1-5" (UTC), Automerge - At any time (no schedule defined). 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR has been generated by [Renovate Bot](https://redirect.github.com/renovatebot/renovate). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiIzOS4xMDcuMCIsInVwZGF0ZWRJblZlciI6IjM5LjEwNy4wIiwidGFyZ2V0QnJhbmNoIjoiOS4zIiwibGFiZWxzIjpbIlRlYW06Q2xvdWQtU2VjdXJpdHktUG9zdHVyZSIsImJhY2twb3J0LXNraXAiLCJkZXBlbmRlbmNpZXMiLCJyZW5vdmF0ZSJdfQ==--> Co-authored-by: elastic-renovate-prod[bot] <174716857+elastic-renovate-prod[bot]@users.noreply.github.com>
fix(deps): update aws-sdk (9.3) (#4047) This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [github.com/aws/aws-sdk-go-v2](https://redirect.github.com/aws/aws-sdk-go-v2) | require | patch | `v1.41.1` -> `v1.41.4` | | [github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v1.7.4` -> `v1.7.7` | | [github.com/aws/aws-sdk-go-v2/config](https://redirect.github.com/aws/aws-sdk-go-v2) | require | patch | `v1.32.7` -> `v1.32.12` | | [github.com/aws/aws-sdk-go-v2/credentials](https://redirect.github.com/aws/aws-sdk-go-v2) | require | patch | `v1.19.7` -> `v1.19.12` | | [github.com/aws/aws-sdk-go-v2/feature/ec2/imds](https://redirect.github.com/aws/aws-sdk-go-v2) | require | patch | `v1.18.17` -> `v1.18.20` | | [github.com/aws/aws-sdk-go-v2/internal/configsources](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v1.4.17` -> `v1.4.20` | | [github.com/aws/aws-sdk-go-v2/internal/endpoints/v2](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v2.7.17` -> `v2.7.20` | | [github.com/aws/aws-sdk-go-v2/internal/ini](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v1.8.4` -> `v1.8.6` | | [github.com/aws/aws-sdk-go-v2/internal/v4a](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v1.4.17` -> `v1.4.21` | | [github.com/aws/aws-sdk-go-v2/service/accessanalyzer](https://redirect.github.com/aws/aws-sdk-go-v2) | require | patch | `v1.45.5` -> `v1.45.11` | | [github.com/aws/aws-sdk-go-v2/service/autoscaling](https://redirect.github.com/aws/aws-sdk-go-v2) | require | minor | `v1.62.2` -> `v1.64.3` | | [github.com/aws/aws-sdk-go-v2/service/cloudformation](https://redirect.github.com/aws/aws-sdk-go-v2) | require | patch | `v1.71.2` -> `v1.71.8` | | [github.com/aws/aws-sdk-go-v2/service/cloudtrail](https://redirect.github.com/aws/aws-sdk-go-v2) | require | patch | `v1.55.2` -> `v1.55.8` | | [github.com/aws/aws-sdk-go-v2/service/cloudwatch](https://redirect.github.com/aws/aws-sdk-go-v2) | require | minor | `v1.52.6` -> `v1.55.2` | | [github.com/aws/aws-sdk-go-v2/service/cloudwatchlogs](https://redirect.github.com/aws/aws-sdk-go-v2) | require | minor | `v1.62.0` -> `v1.64.1` | | [github.com/aws/aws-sdk-go-v2/service/configservice](https://redirect.github.com/aws/aws-sdk-go-v2) | require | minor | `v1.59.7` -> `v1.62.0` | | [github.com/aws/aws-sdk-go-v2/service/dynamodb](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | minor | `v1.53.3` -> `v1.56.2` | | [github.com/aws/aws-sdk-go-v2/service/ebs](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v1.33.7` -> `v1.33.13` | | [github.com/aws/aws-sdk-go-v2/service/ec2](https://redirect.github.com/aws/aws-sdk-go-v2) | require | minor | `v1.279.2` -> `v1.294.1` | | [github.com/aws/aws-sdk-go-v2/service/ecr](https://redirect.github.com/aws/aws-sdk-go-v2) | require | minor | `v1.55.1` -> `v1.56.1` | | [github.com/aws/aws-sdk-go-v2/service/elasticloadbalancing](https://redirect.github.com/aws/aws-sdk-go-v2) | require | patch | `v1.33.16` -> `v1.33.22` | | [github.com/aws/aws-sdk-go-v2/service/elasticloadbalancingv2](https://redirect.github.com/aws/aws-sdk-go-v2) | require | patch | `v1.54.3` -> `v1.54.9` | | [github.com/aws/aws-sdk-go-v2/service/iam](https://redirect.github.com/aws/aws-sdk-go-v2) | require | patch | `v1.53.0` -> `v1.53.6` | | [github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v1.13.4` -> `v1.13.7` | | [github.com/aws/aws-sdk-go-v2/service/internal/checksum](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v1.9.8` -> `v1.9.12` | | [github.com/aws/aws-sdk-go-v2/service/internal/endpoint-discovery](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v1.11.15` -> `v1.11.20` | | [github.com/aws/aws-sdk-go-v2/service/internal/presigned-url](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v1.13.17` -> `v1.13.20` | | [github.com/aws/aws-sdk-go-v2/service/internal/s3shared](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v1.19.17` -> `v1.19.20` | | [github.com/aws/aws-sdk-go-v2/service/kms](https://redirect.github.com/aws/aws-sdk-go-v2) | require | minor | `v1.49.5` -> `v1.50.3` | | [github.com/aws/aws-sdk-go-v2/service/lambda](https://redirect.github.com/aws/aws-sdk-go-v2) | require | minor | `v1.86.0` -> `v1.88.3` | | [github.com/aws/aws-sdk-go-v2/service/organizations](https://redirect.github.com/aws/aws-sdk-go-v2) | require | minor | `v1.49.1` -> `v1.50.5` | | [github.com/aws/aws-sdk-go-v2/service/rds](https://redirect.github.com/aws/aws-sdk-go-v2) | require | minor | `v1.112.0` -> `v1.116.3` | | [github.com/aws/aws-sdk-go-v2/service/s3](https://redirect.github.com/aws/aws-sdk-go-v2) | require | minor | `v1.95.1` -> `v1.97.1` | | [github.com/aws/aws-sdk-go-v2/service/s3control](https://redirect.github.com/aws/aws-sdk-go-v2) | require | minor | `v1.67.0` -> `v1.68.3` | | [github.com/aws/aws-sdk-go-v2/service/securityhub](https://redirect.github.com/aws/aws-sdk-go-v2) | require | minor | `v1.67.0` -> `v1.68.2` | | [github.com/aws/aws-sdk-go-v2/service/signin](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v1.0.5` -> `v1.0.8` | | [github.com/aws/aws-sdk-go-v2/service/sns](https://redirect.github.com/aws/aws-sdk-go-v2) | require | patch | `v1.39.8` -> `v1.39.14` | | [github.com/aws/aws-sdk-go-v2/service/sqs](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v1.42.18` -> `v1.42.24` | | [github.com/aws/aws-sdk-go-v2/service/sso](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v1.30.9` -> `v1.30.13` | | [github.com/aws/aws-sdk-go-v2/service/ssooidc](https://redirect.github.com/aws/aws-sdk-go-v2) | indirect | patch | `v1.35.13` -> `v1.35.17` | | [github.com/aws/aws-sdk-go-v2/service/sts](https://redirect.github.com/aws/aws-sdk-go-v2) | require | patch | `v1.41.6` -> `v1.41.9` | --- > [!WARNING] > Some dependencies could not be looked up. Check the Dependency Dashboard for more information. --- ### Release Notes <details> <summary>aws/aws-sdk-go-v2 (github.com/aws/aws-sdk-go-v2)</summary> ### [`v1.41.4`](https://redirect.github.com/aws/aws-sdk-go-v2/compare/v1.41.3...v1.41.4) [Compare Source](https://redirect.github.com/aws/aws-sdk-go-v2/compare/v1.41.3...v1.41.4) ### [`v1.41.3`](https://redirect.github.com/aws/aws-sdk-go-v2/compare/v1.41.2...v1.41.3) [Compare Source](https://redirect.github.com/aws/aws-sdk-go-v2/compare/v1.41.2...v1.41.3) ### [`v1.41.2`](https://redirect.github.com/aws/aws-sdk-go-v2/compare/v1.41.1...v1.41.2) [Compare Source](https://redirect.github.com/aws/aws-sdk-go-v2/compare/v1.41.1...v1.41.2) </details> --- ### Configuration 📅 **Schedule**: Branch creation - "* 1 * * 1-5" (UTC), Automerge - At any time (no schedule defined). 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 👻 **Immortal**: This PR will be recreated if closed unmerged. Get [config help](https://redirect.github.com/renovatebot/renovate/discussions) if that's undesired. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR has been generated by [Renovate Bot](https://redirect.github.com/renovatebot/renovate). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiIzOS4xMDcuMCIsInVwZGF0ZWRJblZlciI6IjM5LjEwNy4wIiwidGFyZ2V0QnJhbmNoIjoiOS4zIiwibGFiZWxzIjpbIlRlYW06Q2xvdWQtU2VjdXJpdHktUG9zdHVyZSIsImJhY2twb3J0LXNraXAiLCJkZXBlbmRlbmNpZXMiLCJyZW5vdmF0ZSJdfQ==--> Co-authored-by: elastic-renovate-prod[bot] <174716857+elastic-renovate-prod[bot]@users.noreply.github.com>
[Release] Update version to 8.19.13 (#3981) Updates references to the new release 8.19.13. Merge after the release 8.19.12. Co-authored-by: elasticmachine <[email protected]> Co-authored-by: Oleg Sucharevich <[email protected]>
fix: bump go-viper/mapstructure/v2 to v2.4.0 for CVE-2025-11065 (#3960) Fix CVE elastic/security#8377 for 8.19
[9.3](backport #3885) CNVM Severity UNKNOWN Fix (#3892) ### Summary of your changes Following an SDH: - https://github.com/elastic/sdh-beats/issues/6815 Investigated the root cause and suspected this PR: - aquasecurity/trivy#8269 As mentioned in comment: - https://github.com/elastic/sdh-beats/issues/6815#issuecomment-3751878496 Suspected the Trivy upgrade. Introduced code to resolve this problem. You can see two examples prior and after code changes of scanning an EBS volume: ``` 🐚 Evgbs-MBP:cloudbeat evgb$ cd /Users/evgb/Documents/GitHub/cloudbeat && go build -o ebs-vuln-scanner-old ./cmd/ebs-vuln-scanner/ && ./ebs-vuln-scanner-old --snapshot snap-ID --region us-east-2 --profile csp --verbose Starting vulnerability scan for EBS snapshot: snap-ID in region: us-east-2 Scanning EBS snapshot (this may take several minutes)... === EBS Snapshot Vulnerability Scan Results === Snapshot: snap-ID Region: us-east-2 Scan Time: 2026-01-22T14:27:28-06:00 Duration: 19m16.221003125s Vulnerability Summary: CRITICAL: 0 HIGH: 0 MEDIUM: 0 LOW: 0 UNKNOWN: 44 ───────────── TOTAL: 44 🐚 Evgbs-MBP:cloudbeat evgb$ cd /Users/evgb/Documents/GitHub/cloudbeat && go build -o ebs-vuln-scanner ./cmd/ebs-vuln-scanner/ && ./ebs-vuln-scanner --snapshot snap-ID --region us-east-2 --profile csp --verbose Starting vulnerability scan for EBS snapshot: snap-ID in region: us-east-2 Scanning EBS snapshot (this may take several minutes)... === EBS Snapshot Vulnerability Scan Results === Snapshot: snap-ID Region: us-east-2 Scan Time: 2026-01-22T14:52:53-06:00 Duration: 1.080233708s Vulnerability Summary: CRITICAL: 0 HIGH: 16 MEDIUM: 24 LOW: 4 UNKNOWN: 0 ───────────── TOTAL: 44 ``` As you can see prior to changes we get UNKNOWN and after we get the correct severities. ### Screenshot/Data ### Related Issues - Fixes: elastic/kibana#226881 - Fixes: https://github.com/elastic/sdh-beats/issues/6815 - Fixes: #3532 ### Checklist - [ ] I have added tests that prove my fix is effective or that my feature works - [ ] I have added the necessary README/documentation (if appropriate) #### Introducing a new rule? - [ ] Generate rule metadata using [this script](https://github.com/elastic/cloudbeat/tree/main/security-policies/dev#generate-rules-metadata) - [ ] Add relevant unit tests - [ ] Generate relevant rule templates using [this script](https://github.com/elastic/cloudbeat/tree/main/security-policies/dev#generate-rule-templates), and open a PR in [elastic/packages/cloud_security_posture](https://github.com/elastic/integrations/tree/main/packages/cloud_security_posture) <hr>This is an automatic backport of pull request #3885 done by [Mergify](https://mergify.com). Co-authored-by: Evgeniy Belyi <[email protected]>
PreviousNext