Upgrade to etcd v3.4.26 to fix vulnerabilities from go runtime #33
Labels
kind/enhancement
Enhancement, improvement, extension
status/closed
Issue is closed (either delivered or triaged)
What would you like to be added:
Hi colleagues, the current etcd image (
eu.gcr.io/gardener-project/gardener/etcd:v3.4.13-bootstrap-10
) maintained by gardener has around140+
vulnerabilities (mainly from go runtime).I check the official etcd v3.4.26 is using the latest go runtime to fix all these vulnerabilities, is it possible to upgrade to this version?
BTW I also saw this issue which slowly upgrade to
v3.6.x
to avoid vulnerabilities from base image, is there any timeline?Why is this needed:
fix vulnerabilities from go runtime for security compliance.
The text was updated successfully, but these errors were encountered: