Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

patch openSSL CVE #242

Closed
2 tasks
vreynolds opened this issue Mar 16, 2022 · 0 comments · Fixed by #246
Closed
2 tasks

patch openSSL CVE #242

vreynolds opened this issue Mar 16, 2022 · 0 comments · Fixed by #246
Assignees
Labels
type: security Security issues/fixes.

Comments

@vreynolds
Copy link
Contributor

vreynolds commented Mar 16, 2022

https://mta.openssl.org/pipermail/openssl-announce/2022-March/000219.html

  • Dockerfile: docker alpine waiting for update: CVE-2022-0778 libcrypto/libssl alpinelinux/docker-alpine#243
    • use alpine version >= 3.12.11, 3.13.9, 3.15.3 or 3.14.5
  • build artifacts: circleci/golang image is based on golang image which is based on alpine - waiting on the same update
    • use newer circle images cimg/go:1.18.1
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
type: security Security issues/fixes.
Projects
None yet
Development

Successfully merging a pull request may close this issue.

2 participants