From 0aa6d7832ca8ba7b3da78eff4eae7d201687c756 Mon Sep 17 00:00:00 2001
From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com>
Date: Mon, 31 Jul 2023 08:40:43 -0700
Subject: [PATCH] Bump sha2 from 0.10.6 to 0.10.7 in /packer (#4843)
Summary:
Bumps [sha2](https://github.com/RustCrypto/hashes) from 0.10.6 to 0.10.7.
Commits
[](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
You can trigger a rebase of this PR by commenting `dependabot rebase`.
[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)
---
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- `dependabot rebase` will rebase this PR
- `dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `dependabot merge` will merge this PR after your CI passes on it
- `dependabot squash and merge` will squash and merge this PR after your CI passes on it
- `dependabot cancel merge` will cancel a previously requested merge and block automerging
- `dependabot reopen` will reopen this PR if it is closed
- `dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
- `dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
- `dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
- `dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
> **Note**
> Automatic rebases have been disabled on this pull request as it has been open for over 30 days.
Pull Request resolved: https://github.com/facebook/flipper/pull/4843
Reviewed By: lblasa
Differential Revision: D47916706
Pulled By: passy
fbshipit-source-id: 40742c77fedb4d83bda6ca698b10b04d75681864
---
packer/Cargo.lock | 8 ++++----
packer/Cargo.toml | 2 +-
2 files changed, 5 insertions(+), 5 deletions(-)
diff --git a/packer/Cargo.lock b/packer/Cargo.lock
index 6aad79de9..5e152961e 100644
--- a/packer/Cargo.lock
+++ b/packer/Cargo.lock
@@ -197,9 +197,9 @@ checksum = "c2e66c9d817f1720209181c316d28635c050fa304f9c79e47a520882661b7308"
[[package]]
name = "digest"
-version = "0.10.5"
+version = "0.10.7"
source = "registry+https://github.com/rust-lang/crates.io-index"
-checksum = "adfbc57365a37acbd2ebf2b64d7e69bb766e2fea813521ed536f5d0520dcf86c"
+checksum = "9ed9a281f7bc9b7576e61468ba615a66a5c8cfdff42420a70aa82701a3b1e292"
dependencies = [
"block-buffer",
"crypto-common",
@@ -714,9 +714,9 @@ dependencies = [
[[package]]
name = "sha2"
-version = "0.10.6"
+version = "0.10.7"
source = "registry+https://github.com/rust-lang/crates.io-index"
-checksum = "82e6b795fe2e3b1e845bafcb27aa35405c4d47cdfc92af5fc8d3002f76cebdc0"
+checksum = "479fb9d862239e610720565ca91403019f2f00410f1864c5aa7479b950a76ed8"
dependencies = [
"cfg-if",
"cpufeatures",
diff --git a/packer/Cargo.toml b/packer/Cargo.toml
index 20c7a50ca..b7682e86c 100644
--- a/packer/Cargo.toml
+++ b/packer/Cargo.toml
@@ -16,7 +16,7 @@ tar = "0.4.39"
serde = { version = "^1", features = ["derive"] }
serde_yaml = "0.9.25"
anyhow = "^1"
-sha2 = "0.10.6"
+sha2 = "0.10.7"
data-encoding = "^2"
serde_json = "^1"
rayon = "^1.7"