From bea103ffed9464855631755676b6f5afc4a15c00 Mon Sep 17 00:00:00 2001 From: Luca Comellini Date: Thu, 4 Nov 2021 09:57:48 -0700 Subject: [PATCH] Update packages for CVEs in UBI (#2159) --- build/Dockerfile | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/build/Dockerfile b/build/Dockerfile index bc4746d0f4..1b67947915 100644 --- a/build/Dockerfile +++ b/build/Dockerfile @@ -83,12 +83,18 @@ RUN --mount=type=secret,id=nginx-repo.crt,dst=/etc/ssl/nginx/nginx-repo.crt,mode ############################################# Base image for UBI 8 ############################################# FROM redhat/ubi8-minimal AS ubi-base-8 +# temporary fix for CVE-2021-22946, CVE-2021-22947, CVE-2021-33928, CVE-2021-33929, CVE-2021-33930, CVE-2021-33938 +RUN microdnf upgrade -y curl libsolv + ############################################# Base image for UBI 7 ############################################# FROM registry.access.redhat.com/ubi7/ubi AS ubi-base-7 RUN yum install -y microdnf +# temporary fix for CVE-2021-42574 +RUN yum upgrade -y binutils + ############################################# Base image for UBI ############################################# FROM ubi-base-${UBI_VERSION} AS ubi-base