Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump yara-x from 0.11.1 to 0.12.0 in /requirements #1163

Open
wants to merge 1 commit into
base: new
Choose a base branch
from

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Dec 18, 2024

Bumps yara-x from 0.11.1 to 0.12.0.

Release notes

Sourced from yara-x's releases.

v0.12.0

  • The macho module now parses and exposesLC_LINKER_OPTION commands (#256).
  • Raise warning with some patterns that have too many 2-byte atoms and are potentially slow (#264).
  • Extract more information from the SpcSpOpusInfo structure contained in PE signatures (50180d8).
  • BUGFIX: add missing MEAN_BYTES constant to math module (888c77e).
  • BUGFIX: panic when calling dylib_hash in some corrupted Mach-O files (c014a26).

Contributors: @​latonis

Commits
  • d2b8358 chore: bump version to 0.12.0
  • fc028e0 docs: change the webpage description and Twitter account.
  • c146b6f chore(py): upgrade pyo3 to version 0.23.3
  • f89ad23 chore: allow using maturin>=1.0 (#265)
  • 4a87b68 fix: bug introduced in 895a614.
  • c0e58a4 chore: go back to wasmtime version 26.0.1.
  • 245350f chore: upgrade wasmtimet to version 27.0.0.
  • d6d1b13 chore: upgrade array-bytes crate to latest version.
  • 895a614 feat: raise warning with some patterns that have many 2-byte atoms. (#264)
  • 888c77e fix: add MEAN_BYTES constant to math module.
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [yara-x](https://github.com/VirusTotal/yara-x) from 0.11.1 to 0.12.0.
- [Release notes](https://github.com/VirusTotal/yara-x/releases)
- [Commits](VirusTotal/yara-x@v0.11.1...v0.12.0)

---
updated-dependencies:
- dependency-name: yara-x
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Dec 18, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants