rust-lang / docker-rust

The official Docker images for Rust
430 stars 89 forks source link

Openssl 3.0.0 - 3.0.6 - Alpine 3.15 vulnerable #119

Closed agustik closed 1 year ago

agustik commented 1 year ago

What is the status of the rust:1.64-alpine3.15 regarding to the Openssl 3.0.0 - 3.0.6 vulnerabillity?

New version of alpine 3.15.1 was released. https://alpinelinux.org/posts/Alpine-3.15.1-released.html

https://www.openssl.org/news/secadv/20221101.txt

sfackler commented 1 year ago

I believe the docker-library/official-images infrastructure is responsible for rebuilding images.

tyranron commented 1 year ago

I guess https://github.com/rust-lang/docker-rust/pull/124 fixes this, as drops support of Alpine 3.15.

kpcyrd commented 1 year ago

I also think this can be closed by now.