Fix additional library CVEs 49/54649/2 beijing
authorMichael Lando <ml636r@att.com>
Sun, 3 Jun 2018 15:06:57 +0000 (18:06 +0300)
committerMichael Lando <ml636r@att.com>
Thu, 14 Jun 2018 08:58:58 +0000 (11:58 +0300)
Change-Id: I44f9ca73c487eee8fb4bf19de4b4eaab6061a3c1
Issue-ID: SDC-1424
Signed-off-by: Michael Lando <ml636r@att.com>
base_sdc-cassandra/Dockerfile
base_sdc-elasticsearch/Dockerfile
base_sdc-kibana/Dockerfile
base_sdc-python/Dockerfile

index e73d066..1ec1169 100644 (file)
@@ -64,9 +64,9 @@ RUN echo "deb http://deb.debian.org/debian stretch main" >> /etc/apt/sources.lis
       libx11-6=2:1.6.5-1 libx11-data=2:1.6.5-1 libx11-xcb1=2:1.6.5-1 \
       libxml2=2.9.4+dfsg1-7 \
       libxtst6=2:1.2.3-1 \
-      perl=5.26.2-5 \
-      python=2.7.15~rc1-1 \
-      libsqlite3-0=3.23.1-1 \
+      perl=5.26.2-6 \
+      python=2.7.15-3 \
+      libsqlite3-0=3.24.0-1 \
       libdb5.3=5.3.28-13.1+b1 \
       libcairo2=1.15.10-3 libcairo-gobject2=1.15.10-3 \
       libc-bin=2.27-3 libc6=2.27-3 multiarch-support=2.27-3 \
index cb7382b..249d87e 100644 (file)
@@ -4,7 +4,7 @@ RUN mkdir -p /var/chef/nodes
 
 # Install Chef
 RUN set -ex && \
-    apk add --no-cache curl vim bash=4.4.12-r2 build-base=0.5-r0 ruby=2.4.4-r0 ruby-dev=2.4.4-r0 libffi-dev=3.2.1-r4 libxml2-dev=2.9.7-r0 && \
+    apk add --no-cache curl vim bash=4.4.19-r1 build-base=0.5-r0 ruby=2.4.4-r0 ruby-dev=2.4.4-r0 libffi-dev=3.2.1-r4 libxml2-dev=2.9.7-r0 && \
     gem install chef:13.8.5 berkshelf:6.3.1 io-console:0.4.6 --no-document && \
     echo "http://nl.alpinelinux.org/alpine/edge/main" >> /etc/apk/repositories && \
     apk update && \
index 7151cc0..be6c77e 100644 (file)
@@ -43,11 +43,11 @@ RUN echo "deb http://deb.debian.org/debian stretch main" >> /etc/apt/sources.lis
     apt-get -y update && \
     apt-get -y --no-install-recommends install \
       vim=2:7.4.488-7+deb8u3 vim-common=2:7.4.488-7+deb8u3 vim-runtime=2:7.4.488-7+deb8u3 \
-      bash=4.4.18-2+b1 \
+      bash=4.4.18-3 \
       curl=7.60.0-2 libcurl4=7.60.0-2 \
       krb5-locales=1.16-2 libgssapi-krb5-2=1.16-2 libkrb5-3=1.16-2 libkrb5support0=1.16-2 \
       openssl=1.1.0h-4 \
-      perl-base=5.26.2-5 \
+      perl-base=5.26.2-6 \
       systemd=238-5 \
       wget=1.19.5-1 \
       libdb5.3=5.3.28-13.1+b1 \
index 443fd7b..c774655 100644 (file)
@@ -1,17 +1,17 @@
 FROM python:2.7-alpine
 
 # Install packages only needed for building
-RUN  apk add --no-cache libcurl=7.59.0-r0 curl=7.59.0-r0 jq=1.5-r2 && \
-     apk add --no-cache --virtual .build-dependencies build-base=0.4-r1 curl-dev=7.59.0-r0
+RUN  apk add --no-cache libcurl=7.60.0-r1 curl=7.60.0-r1 jq=1.5-r5 libressl-dev=2.6.4-r2 && \
+     apk add --no-cache --virtual .build-dependencies build-base=0.5-r0 curl-dev=7.60.0-r1
 
 # Needed for pycurl
 ENV PYCURL_SSL_LIBRARY=openssl
 
 # Install Chef
-RUN pip install 'influxdb==5.0.0' 'pycurl== 7.43.0.1' 'requests==2.18.4' &&  \
+RUN pip install 'influxdb==5.0.0' 'pycurl==7.43.0.1' 'requests==2.18.4' &&  \
     set -ex && \
-    apk add --no-cache bash=4.3.42-r5 ruby=2.3.7-r0 ruby-dev=2.3.7-r0 libffi-dev=3.2.1-r2 libxml2-dev=2.9.5-r0 && \
+    apk add --no-cache bash=4.4.19-r1 ruby=2.4.4-r0 ruby-dev=2.4.4-r0 libffi-dev=3.2.1-r4 libxml2-dev=2.9.7-r0 && \
     gem install chef:13.8.5 berkshelf:6.3.1 io-console:0.4.6 --no-document && \
     echo "http://nl.alpinelinux.org/alpine/edge/main" >> /etc/apk/repositories && \
     apk update && \
-    apk add binutils=2.26-r1 jq=1.6_rc1-r1 libpng=1.6.34-r1
+    apk add binutils=2.30-r1 jq=1.6_rc1-r1 libpng=1.6.34-r1