dell / csi-baremetal

Bare-metal CSI Driver
Apache License 2.0
71 stars 34 forks source link

csi-baremetal-pre-upgrade-crds CVEs #996

Closed yimingwangdell closed 1 year ago

yimingwangdell commented 1 year ago

Describe the bug csi-baremetal-pre-upgrade-crds uses bitnami/kubectl 1.23 as base image, the frequency of docker registry upgrading it and fix CVEs are too slow. For example, we found the previous image was uploaded 3 months ago:

TAG
1.23   
Last pushed 3 months ago by bitnamibot

So that may cause our csi image cannot introduce latest CVE fixes existing in latest debian version.

Environment (please complete the following information): All

To Reproduce

Expected behavior All fixes are introduced in to csi-baremetal-pre-upgrade-crds. No regression issue. No need to upgrade images anymore.

Screenshots

Additional context