Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Pin Docker base image in docker/images/alpine-tar-zstd/Dockerfile #81

Conversation

atomist[bot]
Copy link
Contributor

@atomist atomist bot commented Sep 20, 2022

This pull request pins the Docker base image alpine:3.16.2 in docker/images/alpine-tar-zstd/Dockerfile to the current digest.

FROM alpine:3.16.2@sha256:bc41182d7ef5ffc53a40b044e725193bc10142a1243f395ee852a8d9730fc2ad

Digest sha256:bc41182d7ef5ffc53a40b044e725193bc10142a1243f395ee852a8d9730fc2ad references a multi-CPU architecture image manifest. This image supports the following architectures:


Pinning FROM lines to digests makes your builds repeatable. Atomist will raise new pull requests whenever the tag moves, so that you know when the base image has been updated. You can follow a new tag at any time. Just replace the digest with the new tag you want to follow. Atomist, will switch to following this new tag.


File changed:

alpine:3.16.2
->
alpine:3.16.2@sha256:bc41182d7ef5ffc53a40b044e725193bc10142a1243f395ee852a8d9730fc2ad

 [atomist:generated]
 [atomist-skill:atomist/docker-base-image-policy]

Signed-off-by: Atomist Bot <bot@atomist.com>
@github-actions
Copy link

Docker image tag(s) pushed:

docker/volumes-backup-extension:pr-81

Labels added to images:

org.opencontainers.image.title=volumes-backup-extension
org.opencontainers.image.description=Back up, clone, restore, and share Docker volumes effortlessly.
org.opencontainers.image.url=https://github.com/docker/volumes-backup-extension
org.opencontainers.image.source=https://github.com/docker/volumes-backup-extension
org.opencontainers.image.version=pr-81
org.opencontainers.image.created=2022-09-20T15:35:42.280Z
org.opencontainers.image.revision=325a600d207cf5ded0168871de49c3fa24661a11
org.opencontainers.image.licenses=Apache-2.0

@atomist
Copy link
Contributor Author

atomist bot commented Sep 20, 2022

docker/volumes-backup-extension

docker/volumes-backup-extension:pr-81

Vulnerabilities
Comparison

🚨 Adds 1 high severity vulnerability compared with target branch main


docker/volumes-backup-extension

docker/volumes-backup-extension:pr-81

Vulnerabilities
Comparison

🚨 Adds 1 high severity vulnerability compared with target branch main


More details are available in the vulnerability report

@gtardif gtardif merged commit 286cb0b into main Sep 21, 2022
@felipecruz91 felipecruz91 deleted the atomist/pin-docker-base-image/docker/images/alpine-tar-zstd/dockerfile branch September 22, 2022 19:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants