New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
docker/distribution v2.8.0 causes security error #977
Comments
Interesting. I experienced it but with the hashes flipped
|
I got the same think today while trying to build a contain...
This is what may docker file looks like:
I am running on a MacBook Pro (2020 Intel CPU) |
#981 might be a way to work around this having this dependency |
Also a notable work around... I found pinning the version to 2.7.1 worked. |
This would work but does not address the dependabot security vulnerability that was triggered with versions < 2.8.0 |
I found my root cause with this thread: distribution/distribution#3590
|
This would also explain the issue on my end. |
Relevant upstream PR distribution/distribution#3596 |
This issue is stale because it has been open 60 days with no activity. Remove stale label or comment or this will be closed in 30 days. |
This issue was closed because it has been marked as stall for 30 days with no activity. |
Describe the bug
go mod tidy
produces a security error after upgradingdocker/distribution
Steps to reproduce
Upgrade docker distribution and run
go mod tidy
What did you expect to see?
No error
What did you see instead?
Error listed above.
Environment
go 1.17
The text was updated successfully, but these errors were encountered: