-
Notifications
You must be signed in to change notification settings - Fork 289
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
kaniko/1.23.2-r1: cve remediation #25347
Conversation
Open AI suggestions to solve the build error:
|
Open AI suggestions to solve the build error:
|
Signed-off-by: Mark McCormick <[email protected]>
Open AI suggestions to solve the build error:
|
Open AI suggestions to solve the build error:
|
Open AI suggestions to solve the build error:
|
There has been two attempts at remediating this CVE upstream wit attempted docker upgrades @ GoogleContainerTools/kaniko#3278 and GoogleContainerTools/kaniko#3270. Both attempts failed with failing tests. As such I will create pending-upstream-fix advisory for this CVE. |
Advisory PR created @ wolfi-dev/advisories#7202 This remediation PR can be close once wolfi-dev/advisories#7202 is merged |
wolfi-dev/advisories#7202 has now been approved and merged. Closing this PR |
kaniko/1.23.2-r1: fix GHSA-v23v-6jw2-98fq
Advisory data: https://github.com/wolfi-dev/advisories/blob/main/kaniko.advisories.yaml