docs icon indicating copy to clipboard operation
docs copied to clipboard

New release with updated dependencies and linux base-image

Open bschlapsi4tf opened this issue 1 year ago • 11 comments

When do you plan to release a new release with updated dependencies and updates linux? The different security scanners show a lot of Vulnerabilities for the last release from March 2023

bschlapsi4tf avatar Oct 31 '23 07:10 bschlapsi4tf

I would highly appreciate that as well. LDAPS is missing in V1.11, and broken in the latest docker image (I wonder on what commit this was based on).

Enrice avatar Nov 02 '23 17:11 Enrice

A PR would be appreciated if anyone can spend the time to do this.

jendib avatar Nov 02 '23 17:11 jendib

I would highly appreciate that as well. LDAPS is missing in V1.11, and broken in the latest docker image (I wonder on what commit this was based on).

turned out to be a browser caching problem - sry.

Enrice avatar Nov 03 '23 11:11 Enrice

hi @jendib I have raised a PR -> https://github.com/sismics/docker-ubuntu/pull/1 that will update the ubuntu base image.

The PR shows the before and after reports.

sukalpomitra avatar Jan 23 '24 10:01 sukalpomitra

@sukalpomitra I think it would make more sense to dump the sismics/ubuntu-jetty base image and have a self contained Teedy Dockerfile based on the official Ubuntu 22 image.

jendib avatar Jan 23 '24 19:01 jendib

@jendib sure let me address your comments in my PR and then I can club the ubuntu-jav and uuntu-jetty into one Dockerfile and add it in the docs repo Dockerfile. Did I understand you correctly?

sukalpomitra avatar Jan 24 '24 08:01 sukalpomitra

Exactly

jendib avatar Jan 24 '24 10:01 jendib

@jendib Consider it done boss :P

sukalpomitra avatar Jan 24 '24 10:01 sukalpomitra

@jendib Please check this PR for the self contained Teedy docker image

sukalpomitra avatar Jan 25 '24 14:01 sukalpomitra

@jendib I have achieved 0 vulnerability. Once you merge the self contained docker PR, then I will raise another PR to fix the vulnerabilities

sukalpomitra avatar Jan 30 '24 07:01 sukalpomitra

hi @jendib this PR consists changes that fixes many vulnerabilities and also adds multi arch support

sukalpomitra avatar Jun 07 '24 07:06 sukalpomitra