portworx / helm

Repository for Portworx Helm assets
Apache License 2.0
48 stars 65 forks source link

PB-7913: Update mongodb to fix CVEs #632

Closed ss-px closed 3 months ago

ss-px commented 3 months ago

What this PR does / why we need it: https://aetos.pwx.purestorage.com/security/PX-Backup/2-7-3/2024-08-28-11-05-03-382736 As per this report, the current 2.7.3 mongodb image 7.0.11-debian-12-r0 has 5 criticals.

Scan on the latest mongodb image (7.0.14-debian-12-r0) available on bitnami has 2 criticals (0 fixable): https://aetos.pwx.purestorage.com/security/PX-Backup/ss-test/2024-08-30-10-12-35-076210

Which issue(s) this PR fixes (optional) Closes #PB-7913

Special notes for your reviewer: Pipeline runs with the updated version-

  1. https://jenkins.pwx.dev.purestorage.com/blue/organizations/jenkins/portworx-backup%2Fintegration-tests%2Frefactored-px-backup-integration-test/detail/refactored-px-backup-integration-test/1427/pipeline/375/
  2. https://jenkins.pwx.dev.purestorage.com/blue/organizations/jenkins/portworx-backup%2Fintegration-tests%2Frefactored-px-backup-integration-test/detail/refactored-px-backup-integration-test/1428/pipeline/375/