From 9d2e7a3dd6fc7438a3b88ce29d6a14a90a2a71d8 Mon Sep 17 00:00:00 2001 From: Matteo Merli Date: Wed, 29 Nov 2023 11:28:06 -0800 Subject: [PATCH] Upgrade OpenSSL in Alpine image --- Dockerfile | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/Dockerfile b/Dockerfile index 6eaa154b..ff1cf099 100644 --- a/Dockerfile +++ b/Dockerfile @@ -26,6 +26,10 @@ FROM alpine:3.18.4 RUN apk add --no-cache bash bash-completion +# Fix CVE-2023-5363 by upgrading to OpenSSL 3.1.4-r1 +# We can remove once new Alpine image is released +RUN apk upgrade --no-cache libssl3 libcrypto3 + RUN mkdir /oxia WORKDIR /oxia