[GH-ISSUE #2730] [security] Alpine version old , leading to Security vulnerabilities #2180

Closed
opened 2026-05-05 13:24:12 -06:00 by gitea-mirror · 1 comment
Owner

Originally created by @nitinSophos on GitHub (Jan 3, 2022).
Original GitHub issue: https://github.com/fatedier/frp/issues/2730

Bug Description

We are using Old Alpine Image 3.12.0 , latest is 3.15.0
Old alpin image has multiple vulnerabilities including Libssl 1.1.1k , and LibreSSL. (This is not an exhaustive list)

Fix: Update alpine base image in both frpc and frps docker image.

frpc Version

0.38.0

frps Version

0.38.0

System Architecture

linux/amd64

Configurations

N/A

Logs

N/A

Steps to reproduce

No response

Affected area

  • Docs
  • Installation
  • Performance and Scalability
  • Security
  • User Experience
  • Test and Release
  • Developer Infrastructure
  • Client Plugin
  • Server Plugin
  • Extensions
  • Others
Originally created by @nitinSophos on GitHub (Jan 3, 2022). Original GitHub issue: https://github.com/fatedier/frp/issues/2730 ### Bug Description We are using Old Alpine Image 3.12.0 , latest is 3.15.0 Old alpin image has multiple vulnerabilities including Libssl 1.1.1k , and LibreSSL. (This is not an exhaustive list) Fix: Update alpine base image in both frpc and frps docker image. ### frpc Version 0.38.0 ### frps Version 0.38.0 ### System Architecture linux/amd64 ### Configurations N/A ### Logs N/A ### Steps to reproduce _No response_ ### Affected area - [ ] Docs - [ ] Installation - [ ] Performance and Scalability - [X] Security - [ ] User Experience - [ ] Test and Release - [ ] Developer Infrastructure - [ ] Client Plugin - [ ] Server Plugin - [ ] Extensions - [ ] Others
Author
Owner

@nitinSophos commented on GitHub (Jan 3, 2022):

Raised PR: https://github.com/fatedier/frp/pull/2731

<!-- gh-comment-id:1004034313 --> @nitinSophos commented on GitHub (Jan 3, 2022): Raised PR: https://github.com/fatedier/frp/pull/2731
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference: github-starred/frp#2180
No description provided.