From 7b968335642498c0fcaf9571b6950ba10bdb308d Mon Sep 17 00:00:00 2001 From: Peter van Dijk Date: Wed, 2 Dec 2020 15:33:02 +0100 Subject: [PATCH] dockerfiles: do not claim equivs-dummy is sourced from pdns .. because otherwise at least two security scanners will dig up every CVE since PowerDNS 1.0 and claim the image is vulnerable to it --- Dockerfile-auth | 2 +- Dockerfile-dnsdist | 2 +- Dockerfile-recursor | 2 +- 3 files changed, 3 insertions(+), 3 deletions(-) diff --git a/Dockerfile-auth b/Dockerfile-auth index 5a2a431017..3716a185e5 100644 --- a/Dockerfile-auth +++ b/Dockerfile-auth @@ -55,7 +55,7 @@ RUN mkdir /build && \ make -C pdns install DESTDIR=/build && make -C modules install DESTDIR=/build && make clean && \ strip /build/usr/local/bin/* /build/usr/local/sbin/* /build/usr/local/lib/pdns/*.so RUN cd /tmp && mkdir /build/tmp/ && mkdir debian && \ - echo 'Source: pdns' > debian/control && \ + echo 'Source: docker-deps-for-pdns' > debian/control && \ dpkg-shlibdeps /build/usr/local/bin/* /build/usr/local/sbin/* /build/usr/local/lib/pdns/*.so && \ sed 's/^shlibs:Depends=/Depends: /' debian/substvars >> debian/control && \ equivs-build debian/control && \ diff --git a/Dockerfile-dnsdist b/Dockerfile-dnsdist index ee61975c12..4df8fb80d6 100644 --- a/Dockerfile-dnsdist +++ b/Dockerfile-dnsdist @@ -52,7 +52,7 @@ RUN mkdir /build && \ make $MAKEFLAGS install DESTDIR=/build && make clean && \ strip /build/usr/local/bin/* RUN cd /tmp && mkdir /build/tmp/ && mkdir debian && \ - echo 'Source: pdns' > debian/control && \ + echo 'Source: docker-deps-for-pdns' > debian/control && \ dpkg-shlibdeps /build/usr/local/bin/dnsdist && \ sed 's/^shlibs:Depends=/Depends: /' debian/substvars >> debian/control && \ equivs-build debian/control && \ diff --git a/Dockerfile-recursor b/Dockerfile-recursor index e9ed21faea..ccebb237a8 100644 --- a/Dockerfile-recursor +++ b/Dockerfile-recursor @@ -57,7 +57,7 @@ RUN mkdir /build && \ make $MAKEFLAGS install DESTDIR=/build && make clean && \ strip /build/usr/local/bin/* /build/usr/local/sbin/* RUN cd /tmp && mkdir /build/tmp/ && mkdir debian && \ - echo 'Source: pdns' > debian/control && \ + echo 'Source: docker-deps-for-pdns' > debian/control && \ dpkg-shlibdeps /build/usr/local/bin/rec_control /build/usr/local/sbin/pdns_recursor && \ sed 's/^shlibs:Depends=/Depends: /' debian/substvars >> debian/control && \ equivs-build debian/control && \ -- 2.47.2