From 64623751d024a83912b1aa924070613adb6440cb Mon Sep 17 00:00:00 2001 From: Anish Ramasekar Date: Tue, 4 Jan 2022 13:40:18 -0800 Subject: [PATCH] security: fix CVE-2021-43618 Signed-off-by: Anish Ramasekar --- docker/Dockerfile | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/docker/Dockerfile b/docker/Dockerfile index 55a3ae566..9beb7f4e7 100644 --- a/docker/Dockerfile +++ b/docker/Dockerfile @@ -28,7 +28,8 @@ RUN export GOOS=$TARGETOS && \ FROM $BASEIMAGE COPY --from=builder /go/src/sigs.k8s.io/secrets-store-csi-driver/_output/secrets-store-csi /secrets-store-csi -RUN clean-install ca-certificates mount +# upgrading libgmp10 due to CVE-2021-43618 +RUN clean-install ca-certificates mount libgmp10 LABEL maintainers="ritazh" LABEL description="Secrets Store CSI Driver"