-
Bug
-
Resolution: Done
-
Major
-
None
-
None
We do not run "yum update" (or "dnf update") in our container builds.
As a result we do not pick up fixed base packages via this route. We get
fixed packages for CVEs of severity important or higher via Freshmaker
rebuilds. But lower severity fixes may not get picked up, e.g.
https://errata.devel.redhat.com/advisory/45473
- is blocked by
-
OPENJDK-462 Ship OpenJDK containers v1.10 [RHEL-8]
- Closed
-
OPENJDK-463 Ship OpenJDK containers v1.10 [RHEL-7]
- Closed