From 780a8f8706ab9dd276416c82459796e1338442ca Mon Sep 17 00:00:00 2001 From: Peter van Dijk Date: Wed, 2 Dec 2020 15:33:02 +0100 Subject: [PATCH] dockerfiles: do not claim equivs-dummy is sourced from pdns .. because otherwise at least two security scanners will dig up every CVE since PowerDNS 1.0 and claim the image is vulnerable to it (cherry picked from commit 7b968335642498c0fcaf9571b6950ba10bdb308d) --- Dockerfile-auth | 2 +- Dockerfile-dnsdist | 2 +- Dockerfile-recursor | 2 +- 3 files changed, 3 insertions(+), 3 deletions(-) diff --git a/Dockerfile-auth b/Dockerfile-auth index 5a2a431017..3716a185e5 100644 --- a/Dockerfile-auth +++ b/Dockerfile-auth @@ -55,7 +55,7 @@ RUN mkdir /build && \ make -C pdns install DESTDIR=/build && make -C modules install DESTDIR=/build && make clean && \ strip /build/usr/local/bin/* /build/usr/local/sbin/* /build/usr/local/lib/pdns/*.so RUN cd /tmp && mkdir /build/tmp/ && mkdir debian && \ - echo 'Source: pdns' > debian/control && \ + echo 'Source: docker-deps-for-pdns' > debian/control && \ dpkg-shlibdeps /build/usr/local/bin/* /build/usr/local/sbin/* /build/usr/local/lib/pdns/*.so && \ sed 's/^shlibs:Depends=/Depends: /' debian/substvars >> debian/control && \ equivs-build debian/control && \ diff --git a/Dockerfile-dnsdist b/Dockerfile-dnsdist index ee61975c12..4df8fb80d6 100644 --- a/Dockerfile-dnsdist +++ b/Dockerfile-dnsdist @@ -52,7 +52,7 @@ RUN mkdir /build && \ make $MAKEFLAGS install DESTDIR=/build && make clean && \ strip /build/usr/local/bin/* RUN cd /tmp && mkdir /build/tmp/ && mkdir debian && \ - echo 'Source: pdns' > debian/control && \ + echo 'Source: docker-deps-for-pdns' > debian/control && \ dpkg-shlibdeps /build/usr/local/bin/dnsdist && \ sed 's/^shlibs:Depends=/Depends: /' debian/substvars >> debian/control && \ equivs-build debian/control && \ diff --git a/Dockerfile-recursor b/Dockerfile-recursor index e9ed21faea..ccebb237a8 100644 --- a/Dockerfile-recursor +++ b/Dockerfile-recursor @@ -57,7 +57,7 @@ RUN mkdir /build && \ make $MAKEFLAGS install DESTDIR=/build && make clean && \ strip /build/usr/local/bin/* /build/usr/local/sbin/* RUN cd /tmp && mkdir /build/tmp/ && mkdir debian && \ - echo 'Source: pdns' > debian/control && \ + echo 'Source: docker-deps-for-pdns' > debian/control && \ dpkg-shlibdeps /build/usr/local/bin/rec_control /build/usr/local/sbin/pdns_recursor && \ sed 's/^shlibs:Depends=/Depends: /' debian/substvars >> debian/control && \ equivs-build debian/control && \ -- 2.47.2