diff --git a/Dockerfile b/Dockerfile index 693a8b0dacc5bbb7a1bc6fd4ee361b71bbc95e1c..83769199d27eaca96668313a39f8a2db3ed0eb8f 100644 --- a/Dockerfile +++ b/Dockerfile @@ -2,7 +2,7 @@ ARG BASE_REGISTRY=registry1.dso.mil ARG BASE_IMAGE=ironbank/redhat/ubi/ubi8 ARG BASE_TAG=8.4 -FROM quay.io/coreos/clair:v4.1.0 as base +FROM quay.io/coreos/clair:v4.1.1 as base FROM ${BASE_REGISTRY}/${BASE_IMAGE}:${BASE_TAG} as build diff --git a/hardening_manifest.yaml b/hardening_manifest.yaml index 5866cf6081263eaa42bc8f958949aa7f29ac1b93..482c7b947e4987f77a2dddc09bda5ba50a1e4801 100644 --- a/hardening_manifest.yaml +++ b/hardening_manifest.yaml @@ -8,7 +8,7 @@ name: "opensource/quay/clair" # The most specific version should be the first tag and will be shown # on ironbank.dsop.io tags: -- "v4.1.0" +- "v4.1.1" - "latest" # Build args passed to Dockerfile ARGs @@ -27,7 +27,7 @@ labels: org.opencontainers.image.url: "https://github.com/quay/clair" # Name of the distributing entity, organization or individual org.opencontainers.image.vendor: "Red Hat" - org.opencontainers.image.version: "v4.1.0" + org.opencontainers.image.version: "v4.1.1" # Keywords to help with search (ex. "cicd,gitops,golang") mil.dso.ironbank.image.keywords: "security,scanning,container" # This value can be "opensource" or "commercial" @@ -37,8 +37,8 @@ labels: # List of resources to make available to the offline build context resources: -- tag: quay.io/coreos/clair:v4.1.0 - url: docker://quay.io/coreos/clair@sha256:d5900e1f7ac487661acfd70f53f6de9d937035553199c182ffdf5bbdd0c88db8 +- tag: quay.io/coreos/clair:v4.1.1 + url: docker://quay.io/coreos/clair@sha256:fe4b5f32b8bbc6f4ba276d441e4aaf57bbf6e55092e5f4497f8767aa65fc7c4a - filename: musl.tar.gz url: https://musl.libc.org/releases/musl-1.2.0.tar.gz validation: