← Back to team overview

ubuntu-docker-images team mailing list archive

Re: postgres contains outdated Ubuntu packages

 

On Wednesday, August 25 2021, security-team-toolbox-bot@xxxxxxxxxxxxx wrote:

> A scan of this rock shows that it was built with packages from the Ubuntu
> archive that have since received security updates. The following lists new
> USNs for affected binary packages in each rock revision:
>
> Revision r0e320b8fa6fe (amd64; channels: 12-20.04_beta, 12-20.04_edge)
>  * openssl: 5051-1
>
> Revision r2f365a9b8ea2 (arm64; channels: 13-21.04_edge, latest, edge, 13-21.04_beta)
>  * openssl: 5051-1
>
> Revision r3f80c005d523 (s390x; channels: 12-20.04_beta, 12-20.04_edge)
>  * openssl: 5051-1
>
> Revision r4f1ccc80ab4d (ppc64le; channels: 12-20.04_beta, 12-20.04_edge)
>  * openssl: 5051-1
>
> Revision r9b233b22446d (amd64; channels: 13-21.04_edge, latest, edge, 13-21.04_beta)
>  * openssl: 5051-1
>
> Revision raf998dce2818 (ppc64le; channels: 13-21.04_edge, latest, edge, 13-21.04_beta)
>  * openssl: 5051-1
>
> Revision rd144067f5e86 (arm64; channels: 12-20.04_beta, 12-20.04_edge)
>  * openssl: 5051-1
>
> Revision red1b342b5e84 (s390x; channels: 13-21.04_edge, latest, edge, 13-21.04_beta)
>  * openssl: 5051-1

This is the notification I got for the postgres OCI image.  I'm
rebuilding and will retag it soon.

Thanks,

-- 
Sergio
GPG key ID: E92F D0B3 6B14 F1F4 D8E0  EB2F 106D A1C8 C3CB BF14