From b8f0b335823d277cb8a3bc1c49e806c05aed5b13 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 16 Sep 2024 12:57:56 +0000 Subject: [PATCH 1/2] chore(deps): bump python from `c24c34b` to `15bad98` Bumps python from `c24c34b` to `15bad98`. --- updated-dependencies: - dependency-name: python dependency-type: direct:production ... Signed-off-by: dependabot[bot] --- Dockerfile | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/Dockerfile b/Dockerfile index 2b7fd17..e752331 100644 --- a/Dockerfile +++ b/Dockerfile @@ -1,6 +1,6 @@ #checkov:skip=CKV_DOCKER_2 #checkov:skip=CKV_DOCKER_3 -FROM python:3.12-slim@sha256:c24c34b502635f1f7c4e99dc09a2cbd85d480b7dcfd077198c6b5af138906390 +FROM python:3.12-slim@sha256:15bad989b293be1dd5eb26a87ecacadaee1559f98e29f02bf6d00c8d86129f39 WORKDIR /action/workspace COPY requirements.txt CONTRIBUTING-template.md open_contrib_pr.py /action/workspace/ From 47951a75942de0b21e09c6299f40ee943b5ba61d Mon Sep 17 00:00:00 2001 From: jmeridth Date: Mon, 16 Sep 2024 13:17:30 -0500 Subject: [PATCH 2/2] fix: docker container image build switched from git-all to just git (pinned) Signed-off-by: jmeridth --- Dockerfile | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/Dockerfile b/Dockerfile index e752331..3a24539 100644 --- a/Dockerfile +++ b/Dockerfile @@ -7,7 +7,7 @@ COPY requirements.txt CONTRIBUTING-template.md open_contrib_pr.py /action/worksp RUN python3 -m pip install --no-cache-dir -r requirements.txt \ && apt-get -y update \ - && apt-get -y install --no-install-recommends git-all=1:2.39.2-1.1 \ + && apt-get -y install --no-install-recommends git=1:2.39.5-0+deb12u1 \ && rm -rf /var/lib/apt/lists/* CMD ["/action/workspace/open_contrib_pr.py"]