From 32806fba3e5bb544d4d787cc1144cb0c83cdb04c Mon Sep 17 00:00:00 2001
From: Quentin Duchemin <quentinduchemin@tuta.io>
Date: Tue, 9 Jun 2020 21:52:39 +0200
Subject: [PATCH] [PicaPlume] Update clair-whitelist

---
 pica-plume/clair-whitelist.yml |  5 +++--
 pica-plume/docker-compose.yml  | 30 +++++++++++++++---------------
 2 files changed, 18 insertions(+), 17 deletions(-)

diff --git a/pica-plume/clair-whitelist.yml b/pica-plume/clair-whitelist.yml
index 9c130d68..072d59f5 100644
--- a/pica-plume/clair-whitelist.yml
+++ b/pica-plume/clair-whitelist.yml
@@ -6,5 +6,6 @@ generalwhitelist:
   CVE-2019-9169: glibc -> Idem
   CVE-2018-1000001: glibc -> Idem
   CVE-2016-2779: util-linux -> Idem
-
-
+  CVE-2019-8457: sqlite3 -> dépendance du client PG utilisé uniquement dans l'entrypoint
+  CVE-2020-8492: python3.5 -> dépendance du client PG utilisé uniquement dans l'entrypoint
+  CVE-2020-13630: sqlite3 -> dépendance du client PG utilisé uniquement dans l'entrypoint
diff --git a/pica-plume/docker-compose.yml b/pica-plume/docker-compose.yml
index e58d4538..a6373f75 100644
--- a/pica-plume/docker-compose.yml
+++ b/pica-plume/docker-compose.yml
@@ -1,20 +1,20 @@
-version: "3"
+version: "3.7"
 
 volumes:
   db:
-    name: "plume_db"
+    name: plume_db
   data:
-    name: "plume_data"
+    name: plume_data
   searchidx:
-    name: "plume_index"
+    name: plume_index
   first-launch:
-    name: "plume_first_launch"
+    name: plume_first_launch
 
 networks:
   docker_default:
     external: true
   plume:
-    name: "plume"
+    name: plume
 
 services:
   plume:
@@ -41,12 +41,12 @@ services:
       - docker_default
     restart: unless-stopped
 
-plumedb:
-  image: postgres:12
-  container_name: plumedb
-  env_file: plume_db.secrets
-  volumes:
-    - "db:/var/lib/postgresql/data"
-  networks:
-   - plume
-  restart: unless-stopped
+  plumedb:
+    image: postgres:12
+    container_name: plumedb
+    env_file: plume_db.secrets
+    volumes:
+      - "db:/var/lib/postgresql/data"
+    networks:
+     - plume
+    restart: unless-stopped
-- 
GitLab