kburtch / SparForte

Bourne shell, template engine, scripting language reliable, scalable projects. Based a ISO standard proven effective for large, mission-critical projects, SparForte is designed for fast development while, at the same time, providing easier designing, maintenance and bug removal. About 130.000 lines of code.
https://www.sparforte.com
GNU General Public License v2.0
50 stars 6 forks source link

[Snyk] Security upgrade ubuntu from latest to 22.04 #22

Closed kburtch closed 2 years ago

kburtch commented 2 years ago

This PR was automatically created by Snyk using the credentials of a real user.


Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image. #### Changes included in this PR - docker/Dockerfile.ubuntu We recommend upgrading to `ubuntu:22.04`, as this image has only 11 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected. Some of the most important vulnerabilities in your base image include: | Severity | Issue | Exploit Maturity | | :------: | :---- | :--------------- | | ![medium severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png "medium severity") | Out-of-bounds Read
[SNYK-UBUNTU2204-E2FSPROGS-2801319](https://snyk.io/vuln/SNYK-UBUNTU2204-E2FSPROGS-2801319) | No Known Exploit | | ![medium severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png "medium severity") | CVE-2021-46828
[SNYK-UBUNTU2204-LIBTIRPC-2956571](https://snyk.io/vuln/SNYK-UBUNTU2204-LIBTIRPC-2956571) | No Known Exploit | | ![medium severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png "medium severity") | CVE-2021-46828
[SNYK-UBUNTU2204-LIBTIRPC-2956571](https://snyk.io/vuln/SNYK-UBUNTU2204-LIBTIRPC-2956571) | No Known Exploit | | ![medium severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png "medium severity") | Inadequate Encryption Strength
[SNYK-UBUNTU2204-OPENSSL-2941376](https://snyk.io/vuln/SNYK-UBUNTU2204-OPENSSL-2941376) | No Known Exploit | | ![medium severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png "medium severity") | Improper Verification of Cryptographic Signature
[SNYK-UBUNTU2204-PERL-2789081](https://snyk.io/vuln/SNYK-UBUNTU2204-PERL-2789081) | No Known Exploit | --- **Note:** _You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs._ For more information: 🧐 [View latest project report](https://app.snyk.io/org/kburtch/project/7a4c6357-9491-4b60-b88b-a2875a38dd1f?utm_source=github&utm_medium=referral&page=fix-pr) 🛠 [Adjust project settings](https://app.snyk.io/org/kburtch/project/7a4c6357-9491-4b60-b88b-a2875a38dd1f?utm_source=github&utm_medium=referral&page=fix-pr/settings) [//]: # 'snyk:metadata:{"prId":"98ab051d-8b95-46d6-b52d-8c54e26fd454","prPublicId":"98ab051d-8b95-46d6-b52d-8c54e26fd454","dependencies":[{"name":"ubuntu","from":"latest","to":"22.04"}],"packageManager":"dockerfile","projectPublicId":"7a4c6357-9491-4b60-b88b-a2875a38dd1f","projectUrl":"https://app.snyk.io/org/kburtch/project/7a4c6357-9491-4b60-b88b-a2875a38dd1f?utm_source=github&utm_medium=referral&page=fix-pr","type":"auto","patch":[],"vulns":["SNYK-UBUNTU2204-E2FSPROGS-2801319","SNYK-UBUNTU2204-LIBTIRPC-2956571","SNYK-UBUNTU2204-PERL-2789081","SNYK-UBUNTU2204-OPENSSL-2941376"],"upgrade":["SNYK-UBUNTU2204-E2FSPROGS-2801319","SNYK-UBUNTU2204-LIBTIRPC-2956571","SNYK-UBUNTU2204-LIBTIRPC-2956571","SNYK-UBUNTU2204-OPENSSL-2941376","SNYK-UBUNTU2204-PERL-2789081"],"isBreakingChange":false,"env":"prod","prType":"fix","templateVariants":["updated-fix-title"],"priorityScoreList":[null,null,300,null]}' --- **Learn how to fix vulnerabilities with free interactive lessons:** 🦉 [Learn about vulnerability in an interactive lesson of Snyk Learn.](https://learn.snyk.io?loc=fix-pr)