Skip to content
This repository was archived by the owner on Jul 18, 2025. It is now read-only.

Conversation

atomist[bot]
Copy link
Contributor

@atomist atomist bot commented Mar 9, 2022

This pull request re-pins the Docker base image gcr.io/atomist-container-skills/clojure-base:openjdk11 in docker/Dockerfile to the current digest.

https://github.com/atomist-skills/lein-m2-deploy-skill/blob/5a9976236ebbd92ae0387adb3b95662b4f6d6338/docker/Dockerfile#L1-L1

Changelog for gcr.io/atomist-container-skills/clojure-base:openjdk11

Comparison

Comparing Docker image gcr.io/atomist-container-skills/clojure-base:openjdk11 at digests

Current sha256:16573fd54bd6cd7d6a5776e95fb81f35e39e1d51cdd35198d592a91bc6425701 and
Proposed sha256:bc3d3822b9e05b62d260bb0b1daf6a950b04fb9f14e89e63ee73df3e5ead2c03 :

Packages

No package differences detected

Files

The following file modifications were detected:

Name Current Proposed Diff
/usr/lib/python3.7/__pycache__/_markupbase.cpython-37.pyc 7.6kb 7.6kb 0b
/usr/lib/python3.7/__pycache__/_pyio.cpython-37.pyc 71kb 71kb 0b
/usr/lib/python3.7/__pycache__/difflib.cpython-37.pyc 58kb 58kb 0b
/usr/lib/python3.7/__pycache__/ftplib.cpython-37.pyc 27kb 27kb 0b
/usr/lib/python3.7/__pycache__/hashlib.cpython-37.pyc 6.4kb 6.4kb 0b
/usr/lib/python3.7/__pycache__/netrc.cpython-37.pyc 3.7kb 3.7kb 0b
/usr/lib/python3.7/__pycache__/pathlib.cpython-37.pyc 41kb 41kb 0b
/usr/lib/python3.7/__pycache__/pydoc.cpython-37.pyc 83kb 83kb 0b
/usr/lib/python3.7/__pycache__/rlcompleter.cpython-37.pyc 5.6kb 5.6kb 0b
/usr/lib/python3.7/__pycache__/zipfile.cpython-37.pyc 49kb 49kb 0b
/usr/lib/python3.7/json/__pycache__/decoder.cpython-37.pyc 9.6kb 9.6kb 0b
/usr/lib/python3.7/unittest/__pycache__/mock.cpython-37.pyc 62kb 62kb 0b
/var/cache/ldconfig/aux-cache 8.7kb 8.7kb 0b
/var/log/alternatives.log 2.7kb 2.7kb 0b
/var/log/apt/history.log 8.1kb 8.1kb 0b
/var/log/apt/term.log 40kb 40kb 0b
/var/log/dpkg.log 82kb 82kb 0b

History

No differences in docker history detected

Ports

No different exposed ports detected

Environment Variables

No different environment variables detected


Pinning FROM lines to digests makes your builds repeatable. Atomist will raise new pull requests whenever the tag moves, so that you know when the base image has been updated. You can follow a new tag at any time. Just replace the digest with the new tag you want to follow. Atomist, will switch to following this new tag.


File changed:

gcr.io/atomist-container-skills/clojure-base:openjdk11@sha256:16573fd54bd6cd7d6a5776e95fb81f35e39e1d51cdd35198d592a91bc6425701
->
gcr.io/atomist-container-skills/clojure-base:openjdk11@sha256:bc3d3822b9e05b62d260bb0b1daf6a950b04fb9f14e89e63ee73df3e5ead2c03

[atomist:generated]
[atomist-skill:atomist/docker-base-image-policy]

Signed-off-by: Atomist Bot <[email protected]>
@atomist atomist bot added auto-merge:on-check-success Auto-merge on passed checks auto-branch-delete:on-close Delete branch when pull request gets closed auto-merge-method:merge Auto-merge with merge commit auto-merge:on-approve Auto-merge on review approvals labels Mar 9, 2022
@atomist
Copy link
Contributor Author

atomist bot commented Mar 9, 2022

Vulnerabilities
Comparison

🚨 Adds 3 high severity vulnerabilities compared with target branch main
⚡ Also fixes 13 critical and 26 high severity vulnerabilities compared with target branch main
🚨 Adds 3 high severity vulnerabilities compared with unstable
⚡ Also fixes 13 critical and 26 high severity vulnerabilities compared with unstable

💡 Rebase branch atomist/pin-docker-base-image/docker/dockerfile to include latest changes from branch main to increase accuracy of vulnerability report


More details are available in the vulnerability report

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

auto-branch-delete:on-close Delete branch when pull request gets closed auto-merge:on-approve Auto-merge on review approvals auto-merge:on-check-success Auto-merge on passed checks auto-merge-method:merge Auto-merge with merge commit

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant