Sourced from github.com/cometbft/cometbft's releases.
v0.38.12
See the CHANGELOG for this release.
v0.38.11
v0.38.10
See the CHANGELOG for this release.
v0.38.9
See the CHANGELOG for this release.
Sourced from github.com/cometbft/cometbft's changelog.
v0.38.12
September 3, 2024
This release includes a security fix for the light client and is recommended for all users.
BUG FIXES
[light]
Cross-check proposer priorities in retrieved validator sets (#ASA-2024-009)[privval]
Ignore duplicate privval listen when already connected (#3828DEPENDENCIES
[crypto/secp256k1]
Adjust to breaking interface changes inbtcec/v2
latest release, while avoiding breaking changes to local CometBFT functions (#3728)IMPROVEMENTS
[types]
Check that proposer is one of the validators inValidateBasic
(#ASA-2024-009)[e2e]
Addlog_level
option to manifest file (#3819).[e2e]
Addlog_format
option to manifest file (#3836).v0.38.11
August 12, 2024
This release fixes a panic in consensus where CometBFT would previously panic if there's no extension signature in non-nil Precommit EVEN IF vote extensions themselves are disabled.
It also includes a few other bug fixes and performance improvements.
BUG FIXES
[types]
Only check IFF vote is a non-nil Precommit if extensionsEnabled types (#3565)IMPROVEMENTS
[indexer]
Fixed ineffective select break statements; they now point to their enclosing for loop label to exit (#3544)
... (truncated)
9722b6d
v0.38.12 (#3982)52c00a5
Merge commit from forkf2ae0f4
build(deps): Bump github.com/cosmos/gogoproto from 1.4.11 to 1.7.0 (#3912)cbedf6d
build(deps): Bump github.com/BurntSushi/toml from 1.2.1 to 1.4.0 (#3908)1013c80
test(mempool): Add two Update
benchmarks (backport #3873)
(#3892)2fb0cdd
build(deps): Bump github.com/rs/cors from 1.8.3 to 1.11.1 (#3907)dcbf359
build(deps): Bump github.com/Masterminds/semver/v3 from 3.2.0 to 3.3.0
(#3906)8de81d5
build(deps): Bump golang.org/x/net from 0.26.0 to 0.28.0 (#3905)221c744
fix(privval): CV ignore duplicate privval listen when connected
(backport #38...969c8d1
mempool: Fix the benchmarks (backport #934)
(#3893)Sourced from github.com/docker/docker's releases.
v25.0.6
25.0.6
For a full list of pull requests and changes in this release, refer to the relevant GitHub milestones:
- docker/cli, 25.0.6 milestone
- moby/moby, 25.0.6 milestone
- Deprecated and removed features, see Deprecated Features.
- Changes to the Engine API, see API version history.
Security
This release contains a fix for CVE-2024-41110 / GHSA-v23v-6jw2-98fq that impacted setups using authorization plugins (AuthZ) for access control.
Bug fixes and enhancements
- [25.0] remove erroneous
platform
from imageconfig
OCI descriptor indocker save
output. moby/moby#47695- [25.0 backport] Fix a nil dereference when getting image history for images having layers without the
Created
value set. moby/moby#47759- [25.0 backport] apparmor: Allow confined runc to kill containers. moby/moby#47830
- [25.0 backport] Fix an issue where rapidly promoting a Swarm node after another node was demoted could cause the promoted node to fail its promotion. moby/moby#47869
- [25.0 backport] don't depend on containerd platform.Parse to return a typed error. moby/moby#47890
- [25.0 backport] builder/mobyexporter: Add missing nil check moby/moby#47987
Packaging updates
- Update AWS SDK Go v2 to v1.24.1 for AWS CloudWatch logging driver. moby/moby#47724
- Update Go runtime to 1.21.12, which contains security fixes for CVE-2024-24791 moby/moby#48146
- Update Containerd (static binaries only) to v1.7.20. moby/moby#48199
Full Changelog: https://github.com/moby/moby/compare/v25.0.5...v25.0.6
v25.0.5
25.0.5
For a full list of pull requests and changes in this release, refer to the relevant GitHub milestones:
- docker/cli, 25.0.5 milestone
- moby/moby, 25.0.5 milestone
- Deprecated and removed features, see Deprecated Features.
- Changes to the Engine API, see API version history.
Security
This release contains a security fix for CVE-2024-29018, a potential data exfiltration from 'internal' networks via authoritative DNS servers.
Bug fixes and enhancements
CVE-2024-29018: Do not forward requests to external DNS servers for a container that is only connected to an 'internal' network. Previously, requests were forwarded if the host's DNS server was running on a loopback address, like systemd's 127.0.0.53. moby/moby#47589
plugin: fix mounting /etc/hosts when running in UserNS. moby/moby#47588
rootless: fix
open /etc/docker/plugins: permission denied
. moby/moby#47587Fix multiple parallel
docker build
runs leaking disk space. moby/moby#47527
... (truncated)
b08a51f
Merge pull request #48231
from austinvazquez/backport-vendor-otel-v0.46.1-to-...d151b0f
vendor: OTEL v0.46.1 / v1.21.0c6ba9a5
Merge pull request #48225
from austinvazquez/backport-workflow-artifact-reten...4673a3c
Merge pull request #48227
from austinvazquez/backport-backport-branch-check-t...30f8908
github/ci: Check if backport is opened against the expected branch7454d6a
ci: update workflow artifacts retention65cc597
Merge commit from forkb722836
Merge pull request #48199
from austinvazquez/update-containerd-binary-to-1.7.20e8ecb9c
update containerd binary to v1.7.20e6cae1f
update containerd binary to v1.7.19a814d79
Re-add support for multiple Access-Control-Request-Headers field (fixes
#184)...1562b17
Removed redundant log nil checks (#178)3d336ea
Update all dependencies to latest in examples (#175)85fc0ca
Make Gin wrapper's status configurable and use 204 as default (fixes #145)
(#...4c32059
Normalize allowed request headers and store them in a sorted set (fixes
#170)...8d33ca4
Complete documentation; deprecate AllowOriginRequestFunc in favour of
AllowOr...af821ae
Merge branch 'jub0bs-master'0bcf73f
Update benchmarkeacc8e8
Fix skewed middleware benchmarks (#165)9297f15
Respect the documented precedence of options (#163)