How to build 0 CVE docker images? Can there be a better solution?

แชร์
ฝัง
  • เผยแพร่เมื่อ 19 ม.ค. 2025

ความคิดเห็น • 5

  • @holiodin1763
    @holiodin1763 8 หลายเดือนก่อน +4

    If the current image has cve ? (Assuming using base img as chainguard )
    There will be vulnerability?

    • @Bhavishya_est
      @Bhavishya_est 8 หลายเดือนก่อน +4

      Using a base image from Chainguard, like Alpine Linux, typically results in fewer vulnerabilities compared to Debian-based images. Chainguard focuses on providing secure base images with minimal vulnerabilities, reducing the risk of CVEs in your environment. Regularly scanning images with tools like Red Hat Advanced Cluster Security for Kubernetes can further enhance security.

    • @chainguard
      @chainguard 7 หลายเดือนก่อน +2

      CVEs are triaged frequently, but they do occur from time to time. Please compare to the upstream (not Chainguard) image. :)

  • @VikasSharma-bu3lh
    @VikasSharma-bu3lh 7 หลายเดือนก่อน +1

    What tool he mentioned near 9:49 mint or mint plus something ca anyone provide official link for the tool ?

    • @kubesimplify
      @kubesimplify  7 หลายเดือนก่อน

      Its mint github.com/mintoolkit/mint