Open
Description
What would you like to be added:
Are there any plans to automatically patch actionable CVEs in base images, such as debian-base
, and push new versions? Is this a manual process today?
Why is this needed:
It would be ideal if base image versions are automated when an actionable CVE is found so individual projects don't have to maintain OS level patching.
Metadata
Metadata
Assignees
Labels
Issues or PRs related to the Release Engineering subprojectDenotes an issue that needs help from a contributor. Must meet "help wanted" guidelines.Categorizes issue or PR as related to a new feature.Important over the long term, but may not be staffed and/or may need multiple releases to complete.Categorizes an issue or PR as relevant to SIG Release.Categorizes an issue or PR as relevant to SIG Security.