chore(deps): update python:3.10-slim-bookworm docker digest to cb15039#1766
chore(deps): update python:3.10-slim-bookworm docker digest to cb15039#1766oep-renovate[bot] wants to merge 1 commit into
Conversation
JiwaniZakir
left a comment
There was a problem hiding this comment.
The digest update in dev_tools/builder_images/python-builder/Dockerfile moves from sha256:6e343dac... to sha256:a02d127a... for python:3.10-slim-bookworm, which is the correct way to pin a base image to a specific immutable layer rather than relying on a mutable tag. It's worth confirming what changed in this new digest — whether it contains OS-level security patches or library updates — since silent regressions in base image updates (e.g., updated glibc or openssl versions) can occasionally break native extension builds. If there's a CI pipeline that builds and tests this image, verifying those results before merging is important. Additionally, since python:3.10 reached end-of-life in October 2024, it may be worth tracking a migration path to 3.11 or 3.12 to avoid accumulating security debt that upstream patches can no longer address.
1b589ef to
027b2f8
Compare
027b2f8 to
4f1ab84
Compare
Edited/Blocked NotificationRenovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR. You can manually request rebase by checking the rebase/retry box above. |
4f1ab84 to
8ebcee0
Compare
8ebcee0 to
dd3f478
Compare
dd3f478 to
9b6900e
Compare
Signed-off-by: oep-renovate[bot] <212772560+oep-renovate[bot]@users.noreply.github.com>
9b6900e to
a7d7777
Compare
This PR contains the following updates:
6e343da→cb15039Configuration
📅 Schedule: (UTC)
* * 1 * *)🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate.