From 59cc83198ee2f957644f224138fc10730e7b192c Mon Sep 17 00:00:00 2001 From: aldousalvarez Date: Fri, 23 Dec 2022 17:33:07 +0800 Subject: [PATCH] fix(security): vulnerabilities found in quorum-multi-party-all-in-one Fixes #2060 Signed-off-by: aldousalvarez Signed-off-by: Peter Somogyvari --- .github/containerscan/allowedlist.yaml | 4 ++-- tools/docker/quorum-multi-party-all-in-one/Dockerfile | 4 ++-- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/.github/containerscan/allowedlist.yaml b/.github/containerscan/allowedlist.yaml index ecb29320e9..27f390b11d 100644 --- a/.github/containerscan/allowedlist.yaml +++ b/.github/containerscan/allowedlist.yaml @@ -1,6 +1,6 @@ general: vulnerabilities: #besu-all-in-one + - CVE-2022-37734 + - CVE-2022-25857 - -CVE-2022-37734 - -CVE-2022-25857 diff --git a/tools/docker/quorum-multi-party-all-in-one/Dockerfile b/tools/docker/quorum-multi-party-all-in-one/Dockerfile index 33358402ad..323cb8a322 100644 --- a/tools/docker/quorum-multi-party-all-in-one/Dockerfile +++ b/tools/docker/quorum-multi-party-all-in-one/Dockerfile @@ -3,9 +3,9 @@ # Setup quorum-dev-quickstart ################################ -FROM node:16 AS quorum-dev-quickstart-setup +FROM node:16.17.0 AS quorum-dev-quickstart-setup -ENV QUORUM_QUICKSTART_VERSION=0.0.53 +ENV QUORUM_QUICKSTART_VERSION=0.0.80 ENV ROOT_DIR=/opt/quorum-dev-quickstart WORKDIR "${ROOT_DIR}"