Skip to content

Bump github.com/quic-go/quic-go from 0.39.0 to 0.40.0#108

Merged
Haraade merged 1 commit into
dnscryptfrom
dependabot/go_modules/github.com/quic-go/quic-go-0.40.0
Nov 10, 2023
Merged

Bump github.com/quic-go/quic-go from 0.39.0 to 0.40.0#108
Haraade merged 1 commit into
dnscryptfrom
dependabot/go_modules/github.com/quic-go/quic-go-0.40.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 31, 2023

Copy link
Copy Markdown

Bumps github.com/quic-go/quic-go from 0.39.0 to 0.40.0.

Release notes

Sourced from github.com/quic-go/quic-go's releases.

v0.40.0

API Changes

  • Connection.{Send,Receive}Message was renamed to {Send,Receive}Datagram: #4116
  • Closing a Listener created from a Transport doesn't close already established QUIC connections: #4072
  • http3: the ResponseWriter now automatically discards the response body for HEAD requests: #4115

Other Changes / Fixes

  • When using Dial (not DialEarly) now doesn't perform 0-RTT handshake, even if the session ticket allows 0-RTT: #4125
  • ClientHellos offering TLS versions older than 1.3 are now reject (when using Go 1.20): #4130
  • EPERM sendmsg errors (see golang/go#63322) are now automatically caught: #4111
  • Sending CONNECTION_REFUSED now doesn't spawn a new Go routine: #4091
  • Sending Retry packets now doesn't spawn a new Go routine: #4092

Please support quic-go!

Is your project / company relying on quic-go? Please consider funding the project. Any support is highly appreciated!

Changelog

Full Changelog: quic-go/quic-go@v0.39.0...v0.40.0

v0.39.3

This patch contains two fixes:

  • The tls.Config returned by GetConfigForClient is now cloned before quic-go modifies it: quic-go/quic-go#4133

... (truncated)

Commits
  • a360354 document what happens to established connections on Listener.Close (#4138)
  • 6eb0cac fix race condition in multiplex integration test (#4136)
  • 5311f81 README: link to webtransport-go repo (#4117)
  • dda63b9 don't close established connections on Listener.Close, when using a Transport...
  • ef800d6 handshake: set MinVersion on the Config returned by GetConfigForClient (#4134)
  • d309060 handshake: clone the tls.Config returned by GetConfigForClient (#4133)
  • e2622bf reject ClientHellos that offer TLS versions older than 1.3 (for Go 1.20) (#4130)
  • 746290b never allow 0-RTT when using Dial, even if the session ticket allows it (#4125)
  • 1bcec70 ci: run linter on all supported Go versions (#4126)
  • 30f9c01 use typed atomics in integration tests (#4120)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels Oct 31, 2023
Bumps [github.com/quic-go/quic-go](https://github.com/quic-go/quic-go) from 0.39.0 to 0.40.0.
- [Release notes](https://github.com/quic-go/quic-go/releases)
- [Changelog](https://github.com/quic-go/quic-go/blob/master/Changelog.md)
- [Commits](quic-go/quic-go@v0.39.0...v0.40.0)

---
updated-dependencies:
- dependency-name: github.com/quic-go/quic-go
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/go_modules/github.com/quic-go/quic-go-0.40.0 branch from 253cfa8 to 6460359 Compare November 10, 2023 19:55
@Haraade Haraade merged commit 7a99487 into dnscrypt Nov 10, 2023
@dependabot dependabot Bot deleted the dependabot/go_modules/github.com/quic-go/quic-go-0.40.0 branch November 10, 2023 19:57
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file go Pull requests that update Go code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant