Upgrade Docker base images from Debian Bullseye to Bookworm #966
+14
−14
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Security: Upgrade Docker base images from Debian Bullseye to Bookworm
Problem
I stumbled upon critical CVEs in the Debian Bullseye base images currently used across all Dockerfiles.
Solution
Updated all Docker base images from Debian Bullseye to Bookworm (Debian 12):
rust:1.89.0-bullseye→rust:1.89.0-bookwormdebian:bullseye-slim→debian:bookworm-slimlukemathwalker/cargo-chef:latest-rust-1.89.0-bullseye→latest-rust-1.89.0-bookwormChanges
Testing
✅ Successfully built and tested
komodo-periphery:1.19.5&komodo-core:1.19.5with Bookworm✅ All dependencies compatible with Debian 12
✅ No breaking changes in functionality
Note
This PR addresses security vulnerabilities. Feel free to use it if it fits your release cycle - no pressure!
Risk: Minimal - only OS security updates, no Rust version changes