From 01267d062b9c26affc9083d42dd965e7ee5e9032 Mon Sep 17 00:00:00 2001 From: Daniel Vystrcil <31454345+da6d6i7-bronga@users.noreply.github.com> Date: Wed, 9 Jun 2021 16:59:30 -0700 Subject: [PATCH] Update Dockerfile Alpine 3.15.5 has fixes for CVE-2021-30139, CVE-2021-28831, CVE-2021-23840, and CVE-2021-3450 --- Dockerfile | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/Dockerfile b/Dockerfile index f4b0622e..6ef42cc0 100644 --- a/Dockerfile +++ b/Dockerfile @@ -12,7 +12,7 @@ RUN CGO_ENABLED=0 make local build # Choose alpine as a base image to make this useful for CI, as many # CI tools expect an interactive shell inside the container -FROM alpine:3.12.3 as production +FROM alpine:3.13.5 as production COPY --from=builder /go/src/mikefarah/yq/yq /usr/bin/yq RUN chmod +x /usr/bin/yq