From 2b87d05defe2a3ebd431c0e6a7399b0ccf9c50e4 Mon Sep 17 00:00:00 2001 From: Ettore Di Giacinto Date: Fri, 10 Mar 2023 10:21:32 +0100 Subject: [PATCH] robot: Pin trivy version (#1090) Fixes: #1087 Signed-off-by: mudler --- Earthfile | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/Earthfile b/Earthfile index 7d2b454..ecc9a3d 100644 --- a/Earthfile +++ b/Earthfile @@ -8,7 +8,8 @@ ARG ISO_NAME=kairos-${VARIANT}-${FLAVOR} ARG LUET_VERSION=0.34.0 ARG OS_ID=kairos ARG REPOSITORIES_FILE=framework-profile.yaml - +# renovate: datasource=docker depName=aquasec/trivy +ARG TRIVY_VERSION=0.37.3 ARG COSIGN_SKIP=".*quay.io/kairos/.*" IF [ "$FLAVOR" = "ubuntu" ] @@ -522,7 +523,8 @@ datasource-iso: ### Security target scan ### trivy: - FROM aquasec/trivy + ARG TRIVY_VERSION + FROM aquasec/trivy:$TRIVY_VERSION SAVE ARTIFACT /contrib contrib SAVE ARTIFACT /usr/local/bin/trivy /trivy