← Back to team overview

ubuntu-docker-images team mailing list archive

Re: apache2 contains outdated Ubuntu packages

 

On Thursday, July 29 2021, security-team-toolbox-bot@xxxxxxxxxxxxx wrote:

> A scan of this rock shows that it was built with packages from the Ubuntu
> archive that have since received security updates. The following lists new
> USNs for affected binary packages in each rock revision:
>
> Revision r388b0743444d (s390x; channels: edge, 2.4-21.04_edge, latest, 2.4-21.04_beta)
>  * apache2: 4994-1
>  * apache2-bin: 4994-1
>  * apache2-data: 4994-1
>  * apache2-utils: 4994-1
>
> Revision r6669d3c48faa (ppc64le; channels: edge, 2.4-21.04_edge, latest, 2.4-21.04_beta)
>  * apache2: 4994-1
>  * apache2-bin: 4994-1
>  * apache2-data: 4994-1
>  * apache2-utils: 4994-1
>
> Revision r9d79ffc6b174 (arm64; channels: edge, 2.4-21.04_edge, latest, 2.4-21.04_beta)
>  * apache2: 4994-1
>  * apache2-bin: 4994-1
>  * apache2-data: 4994-1
>  * apache2-utils: 4994-1
>
> Revision rc1f013825bd1 (amd64; channels: edge, 2.4-21.04_edge, latest, 2.4-21.04_beta)
>  * apache2: 4994-1
>  * apache2-bin: 4994-1
>  * apache2-data: 4994-1
>  * apache2-utils: 4994-1
>
> Simply rebuilding the rock will pull in the new security updates and
> resolve this. If your rock also contains vendored code, now might be a
> good time to review it for any needed updates.

I'm taking care of this one.

-- 
Sergio
GPG key ID: E92F D0B3 6B14 F1F4 D8E0  EB2F 106D A1C8 C3CB BF14


Follow ups