-
Notifications
You must be signed in to change notification settings - Fork 60
Update registry.access.redhat.com/ubi9/go-toolset Docker tag to v1.26.5-1784638038 (main) #3368
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. Weβll occasionally send you account related emails.
Already on GitHub? Sign in to your account
base: main
Are you sure you want to change the base?
Changes from all commits
File filter
Filter by extension
Conversations
Jump to
Diff view
Diff view
There are no files selected for viewing
| Original file line number | Diff line number | Diff line change |
|---|---|---|
|
|
@@ -16,7 +16,7 @@ | |
|
|
||
| ## Build | ||
|
|
||
| FROM registry.access.redhat.com/ubi9/go-toolset:1.26.3@sha256:17c888d75753f128f6cbdc5587932c3abd2632ca8e0931aa27b9a60c7a75ac62 AS build | ||
| FROM registry.access.redhat.com/ubi9/go-toolset:1.26.5-1784638038@sha256:981cd8d53cc230b928db75a697586f915da5d3ed6731eddb246ce8865e0b1400 AS build | ||
|
There was a problem hiding this comment. Choose a reason for hiding this commentThe reason will be displayed to describe this comment to others. Learn more. [high] protected-path This PR modifies Dockerfile.dist, which matches the Dockerfile protected path. The PR has no linked issue providing explicit authorization for the change. While the PR is authored by the configured Renovate bot (red-hat-konflux[bot]) and renovate.json exists in the repository authorizing automated dependency updates, human approval is always required for protected-path changes. No correctness or security concerns were identified with the Docker tag update itself (go-toolset:1.26.3 to 1.26.5-1784638038, with pinned SHA256 digest). Suggested fix: A human reviewer should verify and approve this Docker base image update. |
||
|
|
||
| ARG TARGETOS | ||
| ARG TARGETARCH | ||
|
|
||
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
[high] protected-path
This file matches the
Dockerfileprotected path pattern. The PR modifies an infrastructure file that requires human approval. No linked issue authorizes these changes. The repository'srenovate.jsonconfiguration and therenovatelabel indicate this is an automated dependency management update (go-toolset 1.26.3 β 1.26.5-1784638038 with pinned digest), but human review is always required for protected-path changes.Suggested fix: Ensure a human reviewer approves changes to protected infrastructure files (Dockerfiles). Consider linking a tracking issue or configuring automated authorization for routine Renovate Docker tag updates.