[wpt-sync] Sync PR 36421 - Bump taskcluster from 44.21.0 to 44.22.0 in /tools
Categories
(Testing :: web-platform-tests, task, P4)
Tracking
(firefox108 fixed)
Tracking | Status | |
---|---|---|
firefox108 | --- | fixed |
People
(Reporter: wpt-sync, Unassigned)
References
()
Details
(Whiteboard: [wptsync downstream])
Sync web-platform-tests PR 36421 into mozilla-central (this bug is closed when the sync is complete).
PR: https://github.com/web-platform-tests/wpt/pull/36421
Details from upstream follow.
dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> wrote:
Bump taskcluster from 44.21.0 to 44.22.0 in /tools
Bumps taskcluster from 44.21.0 to 44.22.0.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a href="https://github.com/taskcluster/taskcluster/releases">taskcluster's releases</a>.</em></p>
<blockquote>
<h2>v44.22.0</h2>
<h3>GENERAL</h3>
<p>▶ [minor]
Add a docker-worker capability <code>disableSeccomp</code> to disable the seccomp
system call filter.</p>
<p>It allows significant information leakage, and its use should not be
considered secure. This is required to run <code>rr</code> inside a container, as
described here: <a href="https://github.com/mozilla/rr/wiki/Docker">https://github.com/mozilla/rr/wiki/Docker</a></p>
<p>▶ [patch]
Adjust GCP CloudBuild config to cancel other ongoing jobs, so that the latest job is the only one that runs and no race conditions will occur with deploying to dev.</p>
<p>▶ [patch]
Upgrade many deps with the following command:
<code>pmac add 5692 5691 5690 5689 5688 5687</code></p>
<p>▶ [patch]
Upgrades to latest Node version, v16.17.1, which is a security release.</p>
<h3>USERS</h3>
<p>▶ [minor]
Added basic dashboard stats: Worker pools, provisioners, hooks, clients counts.</p>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a href="https://github.com/taskcluster/taskcluster/blob/main/CHANGELOG.md">taskcluster's changelog</a>.</em></p>
<blockquote>
<h2>v44.22.0</h2>
<h3>GENERAL</h3>
<p>▶ [minor]
Add a docker-worker capability <code>disableSeccomp</code> to disable the seccomp
system call filter.</p>
<p>It allows significant information leakage, and its use should not be
considered secure. This is required to run <code>rr</code> inside a container, as
described here: <a href="https://github.com/mozilla/rr/wiki/Docker">https://github.com/mozilla/rr/wiki/Docker</a></p>
<p>▶ [patch]
Adjust GCP CloudBuild config to cancel other ongoing jobs, so that the latest job is the only one that runs and no race conditions will occur with deploying to dev.</p>
<p>▶ [patch]
Upgrade many deps with the following command:
<code>pmac add 5692 5691 5690 5689 5688 5687</code></p>
<p>▶ [patch]
Upgrades to latest Node version, v16.17.1, which is a security release.</p>
<h3>USERS</h3>
<p>▶ [minor]
Added basic dashboard stats: Worker pools, provisioners, hooks, clients counts.</p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a href="https://github.com/taskcluster/taskcluster/commit/6d02ba5032da4da0d0d738fc41a4fc6f772ca57c"><code>6d02ba5</code></a> v44.22.0</li>
<li><a href="https://github.com/taskcluster/taskcluster/commit/8aafbf51c9ca3bf4eb66ad6606978c3064028714"><code>8aafbf5</code></a> Merge pull request <a href="https://github-redirect.dependabot.com/taskcluster/taskcluster/issues/5695">#5695</a> from jschwartzentruber/d-w-seccomp</li>
<li><a href="https://github.com/taskcluster/taskcluster/commit/93a271705f200d292695e8a55e753bce2383fbd9"><code>93a2717</code></a> Merge pull request <a href="https://github-redirect.dependabot.com/taskcluster/taskcluster/issues/5704">#5704</a> from taskcluster/renovate/body-parser-1.x</li>
<li><a href="https://github.com/taskcluster/taskcluster/commit/9d29d8730d85c7a82ca159a7709ed2f30f0b0667"><code>9d29d87</code></a> Update dependency body-parser to v1.20.1</li>
<li><a href="https://github.com/taskcluster/taskcluster/commit/519b7b6156a747f12e9c2b711ee3120b161548b0"><code>519b7b6</code></a> Merge pull request <a href="https://github-redirect.dependabot.com/taskcluster/taskcluster/issues/5671">#5671</a> from taskcluster/feature/ui-dashboard-stats</li>
<li><a href="https://github.com/taskcluster/taskcluster/commit/dbf885f775339027305809fafa2ffbb38934c27e"><code>dbf885f</code></a> Apply suggestions from code review</li>
<li><a href="https://github.com/taskcluster/taskcluster/commit/a922142ac2fdff9622cfb10d4c030ec0bf93b0e2"><code>a922142</code></a> feat(ui): Introduced dashboard stats for nerds</li>
<li><a href="https://github.com/taskcluster/taskcluster/commit/aa600d7be92f197895a55dbb23f566e02f8a39e3"><code>aa600d7</code></a> Merge pull request <a href="https://github-redirect.dependabot.com/taskcluster/taskcluster/issues/5705">#5705</a> from taskcluster/matt-boris/fixTypo</li>
<li><a href="https://github.com/taskcluster/taskcluster/commit/0b0056356539e3043e3bdd5f4af369f1d8567529"><code>0b00563</code></a> fix(docs): installing generic worker bin typo</li>
<li><a href="https://github.com/taskcluster/taskcluster/commit/7ed3e7adb5d8780631265b64abf1fe7bdbdc0e07"><code>7ed3e7a</code></a> Use allowDisableSeccomp in dockerConfig</li>
<li>Additional commits viewable in <a href="https://github.com/taskcluster/taskcluster/compare/v44.21.0...v44.22.0">compare view</a></li>
</ul>
</details>
<br />Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.
<details>
<summary>Dependabot commands and options</summary>
<br />You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)</details>
Assignee | ||
Comment 1•3 years ago
|
||
Assignee | ||
Comment 2•3 years ago
|
||
Assignee | ||
Comment 4•3 years ago
|
||
Comment 5•3 years ago
|
||
bugherder |
Description
•