Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

awx-ee base image bump #310

Draft
wants to merge 2 commits into
base: 6.x
Choose a base branch
from
Draft

awx-ee base image bump #310

wants to merge 2 commits into from

Conversation

GROwen
Copy link
Contributor

@GROwen GROwen commented Sep 19, 2024

Motivation

  1. Failing scheduled runs
  2. Fix code scanning alerts from the awx-ee image

Changes

  1. Updated GitHub actions context for inputs
  2. Updated awx-ee base image to use major version for more frequent updates

@GROwen GROwen self-assigned this Sep 19, 2024
@nicksantamaria
Copy link
Contributor

/build

@GROwen
Copy link
Contributor Author

GROwen commented Sep 24, 2024

I ran a scan of the resulting image locally. There's an increase in high and medium but not critical. I'll take a look at which packages have seen an increase.

ghcr.io/dpc-sdp/bay/awx-ee:pr-310 (debian 12.7)

Total: 1129 (UNKNOWN: 3, LOW: 530, MEDIUM: 481, HIGH: 103, CRITICAL: 12)

@GROwen GROwen marked this pull request as draft September 24, 2024 23:13
@GROwen GROwen mentioned this pull request Sep 24, 2024
@nicksantamaria
Copy link
Contributor

@GROwen does this one need more work?

@GROwen
Copy link
Contributor Author

GROwen commented Oct 9, 2024

Yes it does, I haven't actioned anything since my last comment. The base image bump doesn't change the underlying OS which is where the majority of CVEs are, I think.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants