Base Image Update to UBI9
Many of Iron Bank's images are based on UBI from Red Hat. Over the course of time, Red Hat stops updating older versions, perferring to keep the current product up to date.
Recently, since the release of RHEL 9, and thus UBI 9, Red Hat is fixing fewer CVE findings in UBI 8, preferring to add the fixed to newer packages and it's current OS and container base image.
To reduce the number of vulnerability findings and the number of older volunerabilty findings lingering within Iron Bank's images, the Container Hardening Team will begin to roll out updates to the base image of Iron Bank images from UBI 8 to UBI 9. We perceive the impact on downstream users minimal as the base container OS is usually only required for package updates and setting the container up for working environments, such as FIPS (140-3) enabled container hosts.
Only the container images currently based on UBI 8 will be updated to UBI 9, no changes to other container images will occur. Iron Bank still provides a choice to the community with a variety of base images as seen in our Documentation
If you have any concerns please let us know by putting a comment on the repo of the image you are using or emailing us at help@dsop.io.