From 84a52df2e09924c748904d5027a38266f4ccdd02 Mon Sep 17 00:00:00 2001 From: Manish Jangid Date: Mon, 4 Aug 2025 15:26:08 -0500 Subject: [PATCH] Update to version v2.4.2 --- CHANGELOG.md | 6 ++++++ deployment/ecr/clo-s3-list-objects/Dockerfile | 4 ++-- source/constructs/package.json | 2 +- 3 files changed, 9 insertions(+), 3 deletions(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index ab23e6b7..e1605664 100755 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -5,6 +5,12 @@ All notable changes to this project will be documented in this file. The format is based on [Keep a Changelog](https://keepachangelog.com/en/1.0.0/), and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0.html). +## [2.4.2] - 2025-08-04 + +### Security + +- Updated AWS Lambda container base image to address libxml2 vulnerability [CVE-2025-49795](https://avd.aquasec.com/nvd/2025/cve-2025-49795/) + ## [2.4.1] - 2025-07-29 ### Security diff --git a/deployment/ecr/clo-s3-list-objects/Dockerfile b/deployment/ecr/clo-s3-list-objects/Dockerfile index 7eec23dc..0099ed0e 100644 --- a/deployment/ecr/clo-s3-list-objects/Dockerfile +++ b/deployment/ecr/clo-s3-list-objects/Dockerfile @@ -1,4 +1,4 @@ -FROM public.ecr.aws/lambda/python:3.12.2025.07.27.11 AS builder +FROM public.ecr.aws/lambda/python:3.12.2025.08.04.12 AS builder WORKDIR /build @@ -14,7 +14,7 @@ RUN python -m venv .venv && \ cd common-lib && \ poetry build -FROM public.ecr.aws/lambda/python:3.12.2025.07.27.11 +FROM public.ecr.aws/lambda/python:3.12.2025.08.04.12 WORKDIR /ws diff --git a/source/constructs/package.json b/source/constructs/package.json index 0c8a858e..23a0a7d4 100644 --- a/source/constructs/package.json +++ b/source/constructs/package.json @@ -1,7 +1,7 @@ { "name": "centralized-logging-with-opensearch", "description": "Centralized logging with opensearch (SO8025)", - "version": "2.4.1", + "version": "2.4.2", "license": "Apache-2.0", "author": { "name": "Amazon Web Services",