ubuntu-docker-images team mailing list archive
-
ubuntu-docker-images team
-
Mailing list archive
-
Message #00339
Re: apache2 contains outdated Ubuntu packages
-
To:
rocks@xxxxxxxxxxxxx, balbir.thomas@xxxxxxxxxxxxx, athos.ribeiro@xxxxxxxxxxxxx, paulo.machado@xxxxxxxxxxxxx, jose.masson@xxxxxxxxxxxxx, leon.mintz@xxxxxxxxxxxxx, ryan.barry@xxxxxxxxxxxxx, simon.aronsson@xxxxxxxxxxxxx, ubuntu-docker-images@xxxxxxxxxxxxxxxxxxx
-
From:
Sergio Durigan Junior <sergio.durigan@xxxxxxxxxxxxx>
-
Date:
Thu, 13 Oct 2022 18:02:52 -0400
-
In-reply-to:
<20221013051338.1D2FC40309@security-toolbox.internal> (security-team-toolbox-bot@canonical.com's message of "Thu, 13 Oct 2022 05:13:38 +0000 (UTC)")
-
User-agent:
Gnus/5.13 (Gnus v5.13) Emacs/26.3 (gnu/linux)
On Thursday, October 13 2022, security-team-toolbox-bot@xxxxxxxxxxxxx wrote:
> A scan of this rock shows that it was built with packages from the Ubuntu
> archive that have since received security updates. The following lists new
> USNs for affected binary packages in each rock revision:
>
> Revision rc28e9f99382b (amd64; channels: 2.4-20.04_beta, 2.4-20.04_edge)
> * libgmp10: 5672-1
>
> Revision rc41e992eb27d (ppc64le; channels: 2.4-20.04_beta, 2.4-20.04_edge)
> * libgmp10: 5672-1
>
> Revision rd05f3620a00b (s390x; channels: 2.4-20.04_beta, 2.4-20.04_edge)
> * libgmp10: 5672-1
>
> Revision rf278abc7a1c3 (arm64; channels: 2.4-20.04_beta, 2.4-20.04_edge)
> * libgmp10: 5672-1
>
> Simply rebuilding the rock will pull in the new security updates and
> resolve this. If your rock also contains vendored code, now might be a
> good time to review it for any needed updates.
>
> Thank you for your rock and for attending to this matter.
Rebuilt and retagged.
--
Sergio
GPG key ID: E92F D0B3 6B14 F1F4 D8E0 EB2F 106D A1C8 C3CB BF14
References