security: fix CVE-2022-1271 (#425)
Signed-off-by: Anish Ramasekar <anish.ramasekar@gmail.com>
This commit is contained in:
Родитель
49c78ed1d2
Коммит
be2823f4d4
|
@ -1,7 +1,8 @@
|
|||
FROM --platform=${TARGETPLATFORM:-linux/amd64} k8s.gcr.io/build-image/debian-iptables:bullseye-v1.3.0
|
||||
|
||||
# upgrading zlib1g due to CVE-2018-25032
|
||||
RUN clean-install ca-certificates zlib1g
|
||||
# upgrading gzip and liblzma5 due to CVE-2022-1271
|
||||
RUN clean-install ca-certificates zlib1g gzip liblzma5
|
||||
COPY ./init/init-iptables.sh /bin/
|
||||
RUN chmod +x /bin/init-iptables.sh
|
||||
# Kubernetes runAsNonRoot requires USER to be numeric
|
||||
|
|
Загрузка…
Ссылка в новой задаче