-
Notifications
You must be signed in to change notification settings - Fork 516
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Update Python image version to 3.9.18 #2456
Update Python image version to 3.9.18 #2456
Conversation
WadeBarnes
commented
Aug 31, 2023
- Reduces the number of vulnerabilities in the image.
- Reduces the number of vulnerabilities in the image. Signed-off-by: Wade Barnes <[email protected]>
Kudos, SonarCloud Quality Gate passed! |
I noticed that Synk is saying this is making “no change detected” — as we are still using Bullseye Slim 3.9.16. Is there a Bullseye Slim 3.9.18 that we should also update to as part of this? |
Slim-bookworm, perhaps? |
The Synk scan for the PR is not scanning the docker file. I'm basing this change off the Synk scan that includes the dockerfiles. |
I recall that breaking things when we tried it, but I could try again. |
I was mostly speculating on why the Snyk scan didn't report any changes. Your other comment explained that 🙂 Would be interesting to see if that change further resolved reported vulnerabilities and what breaks as a result but that doesn't seem like an urgent need right now. |
On the surface building with |
Based on the report here, there's not too much of a difference; https://hub.docker.com/_/python/tags?page=1&name=3.9 |