diff --git a/.changelog/17719.txt b/.changelog/17719.txt new file mode 100644 index 0000000000..f45370b3f7 --- /dev/null +++ b/.changelog/17719.txt @@ -0,0 +1,3 @@ +```release-note:security +Bump Dockerfile base image to `alpine:3.18`. + ``` diff --git a/Dockerfile b/Dockerfile index 065156752e..7599ec7b35 100644 --- a/Dockerfile +++ b/Dockerfile @@ -16,7 +16,7 @@ # Official docker image that includes binaries from releases.hashicorp.com. This # downloads the release from releases.hashicorp.com and therefore requires that # the release is published before building the Docker image. -FROM docker.mirror.hashicorp.services/alpine:3.17 as official +FROM docker.mirror.hashicorp.services/alpine:3.18 as official # This is the release of Consul to pull in. ARG VERSION @@ -112,7 +112,7 @@ CMD ["agent", "-dev", "-client", "0.0.0.0"] # Production docker image that uses CI built binaries. # Remember, this image cannot be built locally. -FROM docker.mirror.hashicorp.services/alpine:3.17 as default +FROM docker.mirror.hashicorp.services/alpine:3.18 as default ARG PRODUCT_VERSION ARG BIN_NAME