ubuntu-docker-images team mailing list archive
-
ubuntu-docker-images team
-
Mailing list archive
-
Message #00323
Re: postgres contains outdated Ubuntu packages
Images were rebuilt and re-tagged!
On Fri, Sep 23, 2022 at 2:13 AM <security-team-toolbox-bot@xxxxxxxxxxxxx>
wrote:
> A scan of this rock shows that it was built with packages from the Ubuntu
> archive that have since received security updates. The following lists new
> USNs for affected binary packages in each rock revision:
>
> Revision r776fef42565c (amd64; channels: edge, latest, 14-22.04_edge,
> 14-22.04_beta)
> * libpcre2-8-0: 5627-1
>
> Revision r8b378e93300d (amd64; channels: 12-20.04_edge, 12-20.04_beta)
> * libpcre2-8-0: 5627-1
>
> Revision rc467535ebb74 (arm64; channels: 12-20.04_edge, 12-20.04_beta)
> * libpcre2-8-0: 5627-1
>
> Revision rc7f769a66144 (s390x; channels: 12-20.04_edge, 12-20.04_beta)
> * libpcre2-8-0: 5627-1
>
> Revision rd8d855a75283 (ppc64le; channels: edge, latest, 14-22.04_edge,
> 14-22.04_beta)
> * libpcre2-8-0: 5627-1
>
> Revision rdb5b813d90c8 (ppc64le; channels: 12-20.04_edge, 12-20.04_beta)
> * libpcre2-8-0: 5627-1
>
> Revision re7ebf228ff15 (arm64; channels: edge, latest, 14-22.04_edge,
> 14-22.04_beta)
> * libpcre2-8-0: 5627-1
>
> Revision rf628677532de (s390x; channels: edge, latest, 14-22.04_edge,
> 14-22.04_beta)
> * libpcre2-8-0: 5627-1
>
> Simply rebuilding the rock will pull in the new security updates and
> resolve this. If your rock also contains vendored code, now might be a
> good time to review it for any needed updates.
>
> Thank you for your rock and for attending to this matter.
>
> References:
> * https://ubuntu.com/security/notices/USN-5627-1/
>
References