Build(dockerfile): pin golang base image to 1.24.4 for stability and CVE reduction #103
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Summary:
This PR pins the Go base image to golang:1.24.4 in the piraeus-ha-controller Dockerfile.
The change reduces the exposure to CVEs.
Testing:
Rebuilt the image locally using golang:1.24.4
Deployed it in a cluster with a working Linstor setup.
Verified the ha-controller pod starts correctly and behaves as expected. Pod logs are as below
The CVE scans report 0 critical CVE's and 9 high CVE's.
The high cve's can be ignored i beleive. Pasted below are the same
@WanzenBug @js185692