summaryrefslogtreecommitdiffstats
path: root/base_sdc-python/Dockerfile
diff options
context:
space:
mode:
authorGary Wu <gary.i.wu@huawei.com>2018-05-07 17:21:22 -0700
committerMichael Lando <ml636r@att.com>2018-05-09 15:36:18 +0000
commitf2da63dbece0e4b1d7058a9ccc9cbf7934ce2c8c (patch)
treec9b6b866c64bc1949d6aacd301a844f59958a383 /base_sdc-python/Dockerfile
parentd0a8a0d8c712ee968367509101b2530870f54cb1 (diff)
Fix additional library CVEs in sdc-docker-base
Fix CVEs around the following packages: binutils jq libtasn1 libpng curl libcurl Change-Id: Ib9b8419e3f35072a43bdc88a92255ee6f8968943 Issue-ID: SDC-1310 Signed-off-by: Gary Wu <gary.i.wu@huawei.com>
Diffstat (limited to 'base_sdc-python/Dockerfile')
-rw-r--r--base_sdc-python/Dockerfile5
1 files changed, 4 insertions, 1 deletions
diff --git a/base_sdc-python/Dockerfile b/base_sdc-python/Dockerfile
index f572933..7f6a8c4 100644
--- a/base_sdc-python/Dockerfile
+++ b/base_sdc-python/Dockerfile
@@ -11,4 +11,7 @@ ENV PYCURL_SSL_LIBRARY=openssl
RUN pip install 'influxdb==5.0.0' 'pycurl== 7.43.0.1' 'requests==2.18.4' && \
set -ex && \
apk add --no-cache bash=4.3.42-r5 ruby=2.3.7-r0 ruby-dev=2.3.7-r0 libffi-dev=3.2.1-r2 libxml2-dev=2.9.5-r0 && \
- gem install chef:13.8.5 berkshelf:6.3.1 io-console:0.4.6 --no-document
+ gem install chef:13.8.5 berkshelf:6.3.1 io-console:0.4.6 --no-document && \
+ echo "http://nl.alpinelinux.org/alpine/edge/main" >> /etc/apk/repositories && \
+ apk update && \
+ apk add binutils=2.30-r1 jq=1.6_rc1-r1 libpng=1.6.34-r1