[ 
https://issues.apache.org/jira/browse/SPARK-28938?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16946062#comment-16946062
 ] 

Dongjoon Hyun commented on SPARK-28938:
---------------------------------------

[~AceHack]. That's the reason why I think this is not critical.
> No I mean the base image has several CVEs in twistlock.

BTW, although this is minor improvement issue, of course, we will upgrade it in 
branch-2.4, too.


> Kubernetes using unsupported docker image
> -----------------------------------------
>
>                 Key: SPARK-28938
>                 URL: https://issues.apache.org/jira/browse/SPARK-28938
>             Project: Spark
>          Issue Type: Improvement
>          Components: Kubernetes
>    Affects Versions: 3.0.0
>         Environment: Kubernetes
>            Reporter: Rodney Aaron Stainback
>            Assignee: L. C. Hsieh
>            Priority: Minor
>             Fix For: 3.0.0
>
>         Attachments: cve-spark-py.txt, cve-spark-r.txt, cve-spark.txt, 
> twistlock.txt
>
>
> The current docker image used by Kubernetes
> {code:java}
> openjdk:8-alpine{code}
> is not supported 
> [https://github.com/docker-library/docs/blob/master/openjdk/README.md#supported-tags-and-respective-dockerfile-links]
> It was removed with this commit
> [https://github.com/docker-library/openjdk/commit/3eb0351b208d739fac35345c85e3c6237c2114ec#diff-f95ffa3d1377774732c33f7b8368e099]
> Quote from commit "4. no more OpenJDK 8 Alpine images (Alpine/musl is not 
> officially supported by the OpenJDK project, so this reflects that -- see 
> "Project Portola" for the Alpine porting efforts which I understand are still 
> in need of help)"
>  
> Please move to a supported image for Kubernetes



--
This message was sent by Atlassian Jira
(v8.3.4#803005)

---------------------------------------------------------------------
To unsubscribe, e-mail: issues-unsubscr...@spark.apache.org
For additional commands, e-mail: issues-h...@spark.apache.org

Reply via email to