Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Oct 26, 2022

Bumps phpseclib/phpseclib from 2.0.38 to 3.0.17.

Release notes

Sourced from phpseclib/phpseclib's releases.

3.0.17

  • X509: make it so CRLs, CSRs and SPKACs can support PSS keys (#1837)
  • X509: make it so PKCS1 X509 certs can create PSS sigs (#1837)
  • SFTP: fix deprecated implicit float to int on 32-bit PHP 8.1 (#1841)
  • SFTP: restore orig behavior when deleting non-existant folder (#1847)
  • Random: fix fallback on PHP 8.1+

3.0.16

  • SSH2: fix type hinting for keyboard_interactive_process (#1836)

3.0.15

  • PublicKeyLoader: add support for OpenSSH encrypted keys (#1737, #1733, #1531, #1490)
  • PublicKeyLoader: add support for JSON Web Keys (#1817)
  • SSH2: make login method return false under rare situation (#1790)
  • SSH2: fix possibly undefined variable error (#1802)
  • SFTP: fix enableDatePreservation bug w.r.t. mtime (#1670)
  • SFTP: try to delete dir even if it can't be opened (#1791)
  • SFTP: try without path canonicalization if initial realpath() fails (#1796)
  • SFTP: detect if stream metadata has wrapper_type set for put() method (#1792)
  • BigInteger: tweak to the phpinfo checks (#1726)
  • BigInteger: fix behavior on 32-bit PHP installs (#1820)
  • EC/PKCS8: OpenSSL didn't like phpseclib formed Ed25519 public keys (#1819)
  • don't use dynamic properties, which are deprecated in PHP 8.2 (#1808, #1822)
  • fix deprecated implicit float to int on 32-bit PHP 8.1

3.0.14

  • PublicKeyLoader: add support for loading PuTTY v3 keys
  • Crypt/Base: fix CTR mode with continuous buffer with non-eval PHP
  • Crypt/Base: use sodium_increment in _increment_str for speed purposes
  • Crypt/Base: fix deprecation notice (#1770)
  • SSH2/Agent: rm unused parameter (#1757)
  • BigInteger: add precision to __debugInfo
  • BigInteger: fix random engine issues
  • call useBestEngine() when getEngine() is called

3.0.13

  • SSH2: make login() return false if no valid auth methods are found (#1744)
  • SSH2: show a more helpful error message when logging in with pubkey (#1718)
  • SSH2: rsa-sha2-256 and rsa-sha2-512 sigs weren't verifying (#1743)
  • SFTP: fix chgrp() for version < 4 (#1730)
  • phpseclib/mcrypt_compat#33
  • Crypt/Salsa20: fix PHP 5.6 error (#1717)
  • RSA & BigInteger: check phpinfo() available before using it (#1726)
  • Fixed psalm level 6 errors in phpseclib/Net/ (#1746)

3.0.12

  • SSH2: add "smart multi factor" login mode (enabled by default) (#1648)
  • SSH2: error out when no data is received from the server (#1647)
  • SFTP: don't attempt to parse unsupported attributes (#1708)
  • SFTP: getSupportedVersions() call didn't work

... (truncated)

Changelog

Sourced from phpseclib/phpseclib's changelog.

3.0.17 - 2022-10-24

  • X509: make it so CRLs, CSRs and SPKACs can support PSS keys (#1837)
  • X509: make it so PKCS1 X509 certs can create PSS sigs (#1837)
  • SFTP: fix deprecated implicit float to int on 32-bit PHP 8.1 (#1841)
  • SFTP: restore orig behavior when deleting non-existant folder (#1847)
  • Random: fix fallback on PHP 8.1+

3.0.16 - 2022-09-05

  • SSH2: fix type hinting for keyboard_interactive_process (#1836)

3.0.15 - 2022-09-02

  • PublicKeyLoader: add support for OpenSSH encrypted keys (#1737, #1733, #1531, #1490)
  • PublicKeyLoader: add support for JSON Web Keys (#1817)
  • SSH2: make login method return false under rare situation (#1790)
  • SSH2: fix possibly undefined variable error (#1802)
  • SFTP: fix enableDatePreservation bug w.r.t. mtime (#1670)
  • SFTP: try to delete dir even if it can't be opened (#1791)
  • SFTP: try without path canonicalization if initial realpath() fails (#1796)
  • SFTP: detect if stream metadata has wrapper_type set for put() method (#1792)
  • BigInteger: tweak to the phpinfo checks (#1726)
  • BigInteger: fix behavior on 32-bit PHP installs (#1820)
  • EC/PKCS8: OpenSSL didn't like phpseclib formed Ed25519 public keys (#1819)
  • don't use dynamic properties, which are deprecated in PHP 8.2 (#1808, #1822)
  • fix deprecated implicit float to int on 32-bit PHP 8.1

3.0.14 - 2022-04-04

  • RSA: add support for loading PuTTY v3 keys
  • Crypt/Base: fix CTR mode with continuous buffer with non-eval PHP
  • Crypt/Base: use sodium_increment in _increment_str
  • Crypt/Base: fix deprecation notice (#1770)
  • SSH2/Agent: rm unused parameter (#1757)
  • BigInteger: add precision to __debugInfo
  • BigInteger: fix random engine issues
  • call useBestEngine() when getEngine() is called

3.0.13 - 2022-01-30

  • SSH2: make login() return false if no valid auth methods are found (#1744)
  • SSH2: show a more helpful error message when logging in with pubkey (#1718)
  • SSH2: rsa-sha2-256 and rsa-sha2-512 sigs weren't verifying (#1743)
  • SFTP: fix chgrp() for version < 4 (#1730)
  • phpseclib/mcrypt_compat#33
  • Crypt/Salsa20: fix PHP 5.6 error (#1717)
  • RSA & BigInteger: check phpinfo() available before using it (#1726)
  • Fixed psalm level 6 errors in phpseclib/Net/ (#1746)

... (truncated)

Commits
  • dbc2307 Merge branch '1.0' into 3.0
  • f3a0e2b CHANGELOG: add 2.0.39 release
  • a10a3b8 Merge branch '2.0' into 3.0
  • 2ed7453 Merge branch '1.0' into 2.0
  • 24845cc delete of non-existent folder returns true when it used to ret
  • 4f53331 SSH2: rm if condition that can't ever be true in 3.0+
  • f0a146e X509: make it so PKCS1 X509 certs can create PSS sigs
  • df21050 Tests/X509: add test for PSS signed CRL signed by PKCS1 X509
  • 9158033 CS adjustment
  • b54eeb8 X509: make it so CRLs, CSRs and SPKACs can support PSS keys
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Oct 26, 2022

The following labels could not be found: main.

@kesselb kesselb added the main label Oct 26, 2022
@dependabot dependabot bot force-pushed the dependabot/composer/phpseclib/phpseclib-3.0.17 branch 2 times, most recently from 5a51408 to 4e486f0 Compare November 7, 2022 10:59
@dependabot dependabot bot force-pushed the dependabot/composer/phpseclib/phpseclib-3.0.17 branch from 4e486f0 to d687540 Compare November 10, 2022 16:19
@dependabot dependabot bot force-pushed the dependabot/composer/phpseclib/phpseclib-3.0.17 branch 2 times, most recently from c365aa1 to 065c0de Compare November 28, 2022 13:33
Bumps [phpseclib/phpseclib](https://github.com/phpseclib/phpseclib) from 2.0.38 to 3.0.17.
- [Release notes](https://github.com/phpseclib/phpseclib/releases)
- [Changelog](https://github.com/phpseclib/phpseclib/blob/master/CHANGELOG.md)
- [Commits](phpseclib/phpseclib@2.0.38...3.0.17)

---
updated-dependencies:
- dependency-name: phpseclib/phpseclib
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot force-pushed the dependabot/composer/phpseclib/phpseclib-3.0.17 branch from 065c0de to 741fa5f Compare November 29, 2022 10:35
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Dec 19, 2022

Superseded by #1261.

@dependabot dependabot bot closed this Dec 19, 2022
@dependabot dependabot bot deleted the dependabot/composer/phpseclib/phpseclib-3.0.17 branch December 19, 2022 13:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants