From c1610ac12e075327ac5a3b9eb291e8f7fb67199b Mon Sep 17 00:00:00 2001 From: Andreas Katzenberger Date: Mon, 13 Apr 2026 21:42:22 +0200 Subject: [PATCH] Update because of security check --- Dockerfile | 8 ++++++-- 1 file changed, 6 insertions(+), 2 deletions(-) diff --git a/Dockerfile b/Dockerfile index df876e4..fc2ee10 100644 --- a/Dockerfile +++ b/Dockerfile @@ -1,5 +1,5 @@ # STAGE 1: Builder -FROM alpine:latest AS builder +FROM alpine:3.23 AS builder # Pakete installieren (gcc & Standardbibliotheken) RUN apk add --no-cache gcc musl-dev @@ -14,11 +14,15 @@ COPY deployment.c . RUN gcc -O2 -o deployment deployment.c # STAGE 2: Runner -FROM alpine:latest +FROM alpine:3.23 # Arbeitsverzeichnis setzen WORKDIR /app +# OPTIMIERUNG: System-Update durchführen, um CVEs zu fixen +# 'apk upgrade' installiert die Version 3.3.7-r0 von OpenSSL +RUN apk update && apk upgrade --no-cache + # Non-Root User anlegen # RUN addgroup -S appgroup # RUN adduser -S appuser -G appgroup