Skip to content

Conversation

@instantlinux
Copy link
Owner

Summary of Changes

Updates for mariadb-galera and three other images.

Why is this change being made?

The trivy vulnerability scanner fell out of date: bumped it to 0.67.2 and finished cleaning out references to a couple of obsolete vulnerable images.

As noted by Dan Black in his response to Server Fault #1174897, the image published by mariadb maintainers includes gosu version 1.18 which contains dozens of vulnerabilities. This image doesn't use the entrypoint or healthcheck scripts from the base image, so goodbye gosu.

How was this tested? How can the reviewer verify your testing?

Local testing and CI.

Completion checklist

  • The pull request is linked to all related issues
  • This change has unit test coverage
  • Documentation has been updated
  • Dependencies have been updated and verified

@instantlinux instantlinux added the dependencies Pull requests that update a dependency file label Nov 6, 2025
@instantlinux instantlinux merged commit 6f44ef9 into main Nov 6, 2025
1 check passed
@instantlinux instantlinux deleted the SYS-664_mariadb_publish branch November 6, 2025 22:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants