Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CASMINST-4145 - update alpine base image for CVE remediation. #26

Merged
merged 2 commits into from
Mar 3, 2022

Conversation

dlaine-hpe
Copy link

Summary and Scope

Update the alpine base image to version to 3.15 to resolve CVE vulnerbilities.

Issues and Related PRs

Testing

Tested on:

  • Drax
  • Local development environment

Test description:

Local snyk scan shows the new image to be free of vulnerabilities. We upgraded drax to use the new version and verified that is worked correctly.

  • Were the install/upgrade-based validation checks/tests run (goss tests/install-validation doc)? N
  • Were continuous integration tests run? If not, why? N
  • Was upgrade tested? If not, why? Y
  • Was downgrade tested? If not, why? Y
  • Were new tests (or test issues/Jiras) created for this change? Y

Risks and Mitigations

This is a low risk change just changing a base image version.

Pull Request Checklist

  • Target branch correct
  • Testing is appropriate and complete, if applicable

@dlaine-hpe dlaine-hpe requested a review from a team as a code owner March 3, 2022 21:53
@sonarcloud
Copy link

sonarcloud bot commented Mar 3, 2022

Kudos, SonarCloud Quality Gate passed!    Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
No Duplication information No Duplication information

@rkleinman-hpe rkleinman-hpe merged commit 8b79370 into develop Mar 3, 2022
@rkleinman-hpe rkleinman-hpe deleted the feature/CASMINST-4145 branch March 3, 2022 22:01
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants