From d93b4a01df9c218a36dd2fccfb1c2c1f96b181fe Mon Sep 17 00:00:00 2001 From: alizademhdi Date: Fri, 15 Mar 2024 14:22:15 +0330 Subject: [PATCH 1/2] Reduce vulnerabilities in alpine The following vulnerabilities are fixed with an upgrade alpine from 3.18.2.to 3.18.5: - https://snyk.io/vuln/SNYK-ALPINE318-BUSYBOX-5890990 - https://snyk.io/vuln/SNYK-ALPINE318-BUSYBOX-5890990 - https://snyk.io/vuln/SNYK-ALPINE318-BUSYBOX-5890990 - https://snyk.io/vuln/SNYK-ALPINE318-OPENSSL-6032386 - https://snyk.io/vuln/SNYK-ALPINE318-OPENSSL-6032386 --- Dockerfile | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/Dockerfile b/Dockerfile index 61caa5a717..1f0623ed07 100644 --- a/Dockerfile +++ b/Dockerfile @@ -8,7 +8,7 @@ RUN go mod download RUN go build ./cmd/nuclei # Release -FROM alpine:3.18.2 +FROM alpine:3.18.5 RUN apk -U upgrade --no-cache \ && apk add --no-cache bind-tools chromium ca-certificates COPY --from=build-env /app/nuclei /usr/local/bin/ From fcd5c6b111ddcb746525f88b7d0bf4b4abbc2529 Mon Sep 17 00:00:00 2001 From: alizademhdi Date: Fri, 15 Mar 2024 16:01:27 +0330 Subject: [PATCH 2/2] Upgrade alpine to 3.18.6 for security fixes --- Dockerfile | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/Dockerfile b/Dockerfile index 1f0623ed07..9dde3d7e27 100644 --- a/Dockerfile +++ b/Dockerfile @@ -8,7 +8,7 @@ RUN go mod download RUN go build ./cmd/nuclei # Release -FROM alpine:3.18.5 +FROM alpine:3.18.6 RUN apk -U upgrade --no-cache \ && apk add --no-cache bind-tools chromium ca-certificates COPY --from=build-env /app/nuclei /usr/local/bin/