From 2867c65819b53746fc609bf1238690afdffd62eb Mon Sep 17 00:00:00 2001 From: Joe Testa Date: Sun, 3 Sep 2023 18:07:30 -0400 Subject: [PATCH] Perform full Docker image update when building. --- Dockerfile | 3 +++ 1 file changed, 3 insertions(+) diff --git a/Dockerfile b/Dockerfile index c358daa..980fd35 100644 --- a/Dockerfile +++ b/Dockerfile @@ -2,6 +2,9 @@ FROM python:3-slim WORKDIR / +# Update the image to remediate any vulnerabilities. +RUN apt clean && apt update && apt -y dist-upgrade && apt clean + # Remove suid & sgid bits from all files. RUN find / -xdev -perm /6000 -exec chmod ug-s {} \; 2> /dev/null || true