Skip to content

chore(ci): update distroless base to Debian 13 (release-5.8)#7992

Closed
buger wants to merge 1 commit intorelease-5.8from
feat/debian13-update
Closed

chore(ci): update distroless base to Debian 13 (release-5.8)#7992
buger wants to merge 1 commit intorelease-5.8from
feat/debian13-update

Conversation

@buger
Copy link
Copy Markdown
Member

@buger buger commented Apr 10, 2026

Summary

  • Update distroless base from Debian 12 to Debian 13 (eliminates glibc CVE-2026-0861)

No workflow, FIPS, or goreleaser changes. Minimal patch for release-5.8.

🤖 Generated with Claude Code

@buger buger requested a review from a team as a code owner April 10, 2026 15:45
@github-actions
Copy link
Copy Markdown
Contributor

🚨 Jira Linter Failed

Commit: 21e3005
Failed at: 2026-04-10 15:46:03 UTC

The Jira linter failed to validate your PR. Please check the error details below:

🔍 Click to view error details
failed to validate branch and PR title rules: branch name 'feat/debian13-update' must contain a valid Jira ticket ID (e.g., ABC-123)

Next Steps

  • Ensure your branch name contains a valid Jira ticket ID (e.g., ABC-123)
  • Verify your PR title matches the branch's Jira ticket ID
  • Check that the Jira ticket exists and is accessible

This comment will be automatically deleted once the linter passes.

@github-actions
Copy link
Copy Markdown
Contributor

Failed to generate code suggestions for PR

@github-actions
Copy link
Copy Markdown
Contributor

API Changes

no api changes detected

Update Dockerfile.distroless base image from debian12 to debian13.
Eliminates glibc CVE-2026-0861 present in debian12.

No workflow or FIPS changes — minimal patch for 5.8.

Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
@buger buger closed this Apr 10, 2026
@buger buger force-pushed the feat/debian13-update branch from 21e3005 to f5ddfc4 Compare April 10, 2026 16:01
@buger buger requested a review from a team as a code owner April 10, 2026 16:01
@sonarqubecloud
Copy link
Copy Markdown

Quality Gate Failed Quality Gate failed

Failed conditions
12 Security Hotspots
D Security Rating on New Code (required ≥ A)

See analysis details on SonarQube Cloud

Catch issues before they fail your Quality Gate with our IDE extension SonarQube for IDE

buger added a commit that referenced this pull request Apr 14, 2026
## Summary
- Update distroless base from Debian 12 to Debian 13 (eliminates glibc
CVE-2026-0861)

No workflow, FIPS, or goreleaser changes. Minimal patch for release-5.8.

Supersedes #7992 (closed due to force-push cleanup).

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-authored-by: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant