fix: CVE-2022-1271 in image build
fix
This commit is contained in:
parent
700097c7e6
commit
2ba9ecc35e
@ -12,7 +12,7 @@
|
|||||||
# See the License for the specific language governing permissions and
|
# See the License for the specific language governing permissions and
|
||||||
# limitations under the License.
|
# limitations under the License.
|
||||||
|
|
||||||
FROM k8s.gcr.io/build-image/debian-base:bullseye-v1.1.0
|
FROM k8s.gcr.io/build-image/debian-base:bullseye-v1.2.0
|
||||||
|
|
||||||
ARG ARCH
|
ARG ARCH
|
||||||
ARG binary=./bin/${ARCH}/nfsplugin
|
ARG binary=./bin/${ARCH}/nfsplugin
|
||||||
@ -21,6 +21,6 @@ COPY ${binary} /nfsplugin
|
|||||||
RUN apt update && apt-mark unhold libcap2
|
RUN apt update && apt-mark unhold libcap2
|
||||||
RUN clean-install ca-certificates mount nfs-common netbase
|
RUN clean-install ca-certificates mount nfs-common netbase
|
||||||
# install updated packages to fix CVE issues
|
# install updated packages to fix CVE issues
|
||||||
RUN clean-install libgmp10 bsdutils libssl1.1 openssl libc6 libc-bin libsystemd0 libudev1 zlib1g
|
RUN clean-install zlib1g gzip liblzma5
|
||||||
|
|
||||||
ENTRYPOINT ["/nfsplugin"]
|
ENTRYPOINT ["/nfsplugin"]
|
||||||
|
|||||||
Loading…
x
Reference in New Issue
Block a user