From 911dd78c595e480779bf72448fc97cbcffe36221 Mon Sep 17 00:00:00 2001 From: andyzhangx Date: Sun, 3 Sep 2023 09:20:50 +0000 Subject: [PATCH] fix: remove unused packages to fix CVEs --- cmd/smbplugin/Dockerfile | 2 ++ 1 file changed, 2 insertions(+) diff --git a/cmd/smbplugin/Dockerfile b/cmd/smbplugin/Dockerfile index 90bddf5892d..181473731e2 100644 --- a/cmd/smbplugin/Dockerfile +++ b/cmd/smbplugin/Dockerfile @@ -15,6 +15,8 @@ FROM registry.k8s.io/build-image/debian-base:bullseye-v1.4.3 RUN apt update && apt upgrade -y && apt-mark unhold libcap2 && clean-install ca-certificates cifs-utils util-linux e2fsprogs mount udev xfsprogs +# remove unused packages which have CVEs +RUN apt remove python3.9-minimal libcap2 libldap-2.4-2 libncursesw6 libsqlite3-0 libpython3.9-minimal libwbclient0 -y LABEL maintainers="andyzhangx" LABEL description="SMB CSI Driver"