-
Notifications
You must be signed in to change notification settings - Fork 352
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
This image is intended to include the fix for CVE-2023-4911 on debian. See * https://security-tracker.debian.org/tracker/CVE-2023-4911 * https://tracker.debian.org/news/1468062/accepted-glibc-231-13deb11u7-source-into-oldstable-security/ Related: fluent/fluentd-kubernetes-daemonset#1464 Signed-off-by: Kentaro Hayashi <[email protected]>
- Loading branch information
Showing
12 changed files
with
20 additions
and
20 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -3,7 +3,7 @@ | |
|
||
FROM alpine:3.17 | ||
LABEL maintainer "Fluentd developers <[email protected]>" | ||
LABEL Description="Fluentd docker image" Vendor="Fluent Organization" Version="1.16.2" | ||
LABEL Description="Fluentd docker image" Vendor="Fluent Organization" Version="1.16.3" | ||
|
||
# Do not split this into multiple RUN! | ||
# Docker creates a layer for every RUN-Statement | ||
|
@@ -24,7 +24,7 @@ RUN apk update \ | |
&& gem install async-http -v 0.60.2 \ | ||
# CVE-2023-36617 | ||
&& gem install uri -v 0.12.2 \ | ||
&& gem install fluentd -v 1.16.2 \ | ||
&& gem install fluentd -v 1.16.3 \ | ||
&& gem install bigdecimal -v 1.4.4 \ | ||
&& apk del .build-deps \ | ||
&& rm -rf /tmp/* /var/tmp/* /usr/lib/ruby/gems/*/cache/*.gem /usr/lib/ruby/gems/3.*/gems/fluentd-*/test | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -11,7 +11,7 @@ RUN curl -sL -o qemu-6.0.0.balena1-aarch64.tar.gz https://github.com/balena-io/q | |
FROM arm64v8/ruby:3.1-slim-bullseye | ||
COPY --from=builder /go/qemu-aarch64-static /usr/bin/ | ||
LABEL maintainer "Fluentd developers <[email protected]>" | ||
LABEL Description="Fluentd docker image" Vendor="Fluent Organization" Version="1.16.2" | ||
LABEL Description="Fluentd docker image" Vendor="Fluent Organization" Version="1.16.3" | ||
ARG CROSS_BUILD_START="cross-build-start" | ||
ARG CROSS_BUILD_END="cross-build-end" | ||
RUN [ ${CROSS_BUILD_START} ] | ||
|
@@ -36,7 +36,7 @@ RUN apt-get update \ | |
&& gem install async-http -v 0.60.2 \ | ||
# CVE-2023-36617 | ||
&& gem install uri -v 0.12.2 \ | ||
&& gem install fluentd -v 1.16.2 \ | ||
&& gem install fluentd -v 1.16.3 \ | ||
&& dpkgArch="$(dpkg --print-architecture | awk -F- '{ print $NF }')" \ | ||
&& wget -O /usr/local/bin/tini "https://github.com/krallin/tini/releases/download/v$TINI_VERSION/tini-$dpkgArch" \ | ||
&& wget -O /usr/local/bin/tini.asc "https://github.com/krallin/tini/releases/download/v$TINI_VERSION/tini-$dpkgArch.asc" \ | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -11,7 +11,7 @@ RUN curl -sL -o qemu-3.0.0+resin-arm.tar.gz https://github.com/balena-io/qemu/re | |
FROM arm32v7/ruby:3.1-slim-bullseye | ||
COPY --from=builder /go/qemu-arm-static /usr/bin/ | ||
LABEL maintainer "Fluentd developers <[email protected]>" | ||
LABEL Description="Fluentd docker image" Vendor="Fluent Organization" Version="1.16.2" | ||
LABEL Description="Fluentd docker image" Vendor="Fluent Organization" Version="1.16.3" | ||
ARG CROSS_BUILD_START="cross-build-start" | ||
ARG CROSS_BUILD_END="cross-build-end" | ||
RUN [ ${CROSS_BUILD_START} ] | ||
|
@@ -36,7 +36,7 @@ RUN apt-get update \ | |
&& gem install async-http -v 0.60.2 \ | ||
# CVE-2023-36617 | ||
&& gem install uri -v 0.12.2 \ | ||
&& gem install fluentd -v 1.16.2 \ | ||
&& gem install fluentd -v 1.16.3 \ | ||
&& dpkgArch="$(dpkg --print-architecture | awk -F- '{ print $NF }')" \ | ||
&& wget -O /usr/local/bin/tini "https://github.com/krallin/tini/releases/download/v$TINI_VERSION/tini-$dpkgArch" \ | ||
&& wget -O /usr/local/bin/tini.asc "https://github.com/krallin/tini/releases/download/v$TINI_VERSION/tini-$dpkgArch.asc" \ | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -3,7 +3,7 @@ | |
|
||
FROM ruby:3.1-slim-bullseye | ||
LABEL maintainer "Fluentd developers <[email protected]>" | ||
LABEL Description="Fluentd docker image" Vendor="Fluent Organization" Version="1.16.2" | ||
LABEL Description="Fluentd docker image" Vendor="Fluent Organization" Version="1.16.3" | ||
ENV TINI_VERSION=0.18.0 | ||
|
||
# Do not split this into multiple RUN! | ||
|
@@ -25,7 +25,7 @@ RUN apt-get update \ | |
&& gem install async-http -v 0.60.2 \ | ||
# CVE-2023-36617 | ||
&& gem install uri -v 0.12.2 \ | ||
&& gem install fluentd -v 1.16.2 \ | ||
&& gem install fluentd -v 1.16.3 \ | ||
&& dpkgArch="$(dpkg --print-architecture | awk -F- '{ print $NF }')" \ | ||
&& wget -O /usr/local/bin/tini "https://github.com/krallin/tini/releases/download/v$TINI_VERSION/tini-$dpkgArch" \ | ||
&& wget -O /usr/local/bin/tini.asc "https://github.com/krallin/tini/releases/download/v$TINI_VERSION/tini-$dpkgArch.asc" \ | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -3,15 +3,15 @@ | |
|
||
FROM mcr.microsoft.com/dotnet/framework/runtime:4.8-windowsservercore-ltsc2019 | ||
LABEL maintainer "Fluentd developers <[email protected]>" | ||
LABEL Description="Fluentd docker image" Vendor="Fluent Organization" Version="1.16.2" | ||
LABEL Description="Fluentd docker image" Vendor="Fluent Organization" Version="1.16.3" | ||
|
||
# Do not split this into multiple RUN! | ||
# Docker creates a layer for every RUN-Statement | ||
RUN powershell -Command "Set-ExecutionPolicy Bypass -Scope Process -Force; iex ((New-Object System.Net.WebClient).DownloadString('https://chocolatey.org/install.ps1'))" | ||
|
||
# NOTE: For avoiding stalling with docker build on windows, we must use latest version of msys2. | ||
RUN choco install -y ruby --version 3.1.3.1 --params "'/InstallDir:C:\ruby31'" \ | ||
&& choco install -y msys2 --version 20230718.0.0 --params "'/NoPath /NoUpdate /InstallDir:C:\ruby31\msys64'" | ||
&& choco install -y msys2 --version 20231026.0.0 --params "'/NoPath /NoUpdate /InstallDir:C:\ruby31\msys64'" | ||
RUN refreshenv \ | ||
&& ridk install 3 \ | ||
&& echo gem: --no-document >> C:\ProgramData\gemrc \ | ||
|
@@ -20,7 +20,7 @@ RUN refreshenv \ | |
&& gem install rexml -v 3.2.6 \ | ||
# CVE-2023-36617 | ||
&& gem install uri -v 0.12.2 \ | ||
&& gem install fluentd -v 1.16.2 \ | ||
&& gem install fluentd -v 1.16.3 \ | ||
&& gem install win32-service -v 2.3.2 \ | ||
&& gem install win32-ipc -v 0.7.0 \ | ||
&& gem install win32-event -v 0.6.3 \ | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -3,15 +3,15 @@ | |
|
||
FROM mcr.microsoft.com/dotnet/framework/runtime:4.8-windowsservercore-ltsc2022 | ||
LABEL maintainer "Fluentd developers <[email protected]>" | ||
LABEL Description="Fluentd docker image" Vendor="Fluent Organization" Version="1.16.2" | ||
LABEL Description="Fluentd docker image" Vendor="Fluent Organization" Version="1.16.3" | ||
|
||
# Do not split this into multiple RUN! | ||
# Docker creates a layer for every RUN-Statement | ||
RUN powershell -Command "Set-ExecutionPolicy Bypass -Scope Process -Force; iex ((New-Object System.Net.WebClient).DownloadString('https://chocolatey.org/install.ps1'))" | ||
|
||
# NOTE: For avoiding stalling with docker build on windows, we must use latest version of msys2. | ||
RUN choco install -y ruby --version 3.1.3.1 --params "'/InstallDir:C:\ruby31'" \ | ||
&& choco install -y msys2 --version 20230718.0.0 --params "'/NoPath /NoUpdate /InstallDir:C:\ruby31\msys64'" | ||
&& choco install -y msys2 --version 20231026.0.0 --params "'/NoPath /NoUpdate /InstallDir:C:\ruby31\msys64'" | ||
RUN refreshenv \ | ||
&& ridk install 3 \ | ||
&& echo gem: --no-document >> C:\ProgramData\gemrc \ | ||
|
@@ -20,7 +20,7 @@ RUN refreshenv \ | |
&& gem install rexml -v 3.2.6 \ | ||
# CVE-2023-36617 | ||
&& gem install uri -v 0.12.2 \ | ||
&& gem install fluentd -v 1.16.2 \ | ||
&& gem install fluentd -v 1.16.3 \ | ||
&& gem install win32-service -v 2.3.2 \ | ||
&& gem install win32-ipc -v 0.7.0 \ | ||
&& gem install win32-event -v 0.6.3 \ | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters