Skip to content

Conversation

@jmthomas
Copy link
Contributor

@jmthomas jmthomas commented Jan 27, 2023

I believe this addresses a number of CVEs that are related to the old version of gosu. See https://github.com/tianon/gosu/releases.

@tianon tianon mentioned this pull request Jan 30, 2023
@tianon
Copy link
Contributor

tianon commented Jan 30, 2023

Looks good, thanks!

I'll also quote #328 (comment) here to be explict/clear:

There are no CVEs actually fixed by upgrading gosu to 1.16, but it does allow govulncheck to scan the binary correctly so that CVEs can be reported more correctly in the future.

@tianon tianon merged commit 66ae35c into redis:master Jan 30, 2023
docker-library-bot added a commit to docker-library-bot/official-images that referenced this pull request Jan 30, 2023
Changes:

- redis/docker-library-redis@66ae35c: Merge pull request redis/docker-library-redis#341 from jmthomas/bump_gosu
- redis/docker-library-redis@d5c6f47: Bump gosu to 1.16
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants