From c1d15b5799192c0b845fd335bee175a45d864b92 Mon Sep 17 00:00:00 2001 From: Asif Bacchus Date: Tue, 7 Sep 2021 04:14:49 -0600 Subject: [PATCH] fix(dockerfile): update alpine base files - resolve CVE-2021-3711, CVE-2021-3712 --- Dockerfile | 11 ++++++----- 1 file changed, 6 insertions(+), 5 deletions(-) diff --git a/Dockerfile b/Dockerfile index fce15d6..99c81ef 100644 --- a/Dockerfile +++ b/Dockerfile @@ -16,11 +16,12 @@ LABEL org.opencontainer.image.url="https://git.asifbacchus.dev/ab-docker/ab-mari LABEL org.opencontainer.image.vendor="Asif Bacchus " # install mariadb and turn on TCP connection in default config -RUN apk --no-cache --repository=http://dl-cdn.alpinelinux.org/alpine/edge/main add \ - tzdata \ - mariadb \ - mariadb-client \ - mariadb-server-utils \ +RUN apk --update --no-cache upgrade \ + && apk --update --no-cache --repository=http://dl-cdn.alpinelinux.org/alpine/edge/main add \ + tzdata \ + mariadb \ + mariadb-client \ + mariadb-server-utils \ && rm -f /var/cache/apk/* \ && sed -i 's/skip-networking/skip-networking=0/' /etc/my.cnf.d/mariadb-server.cnf