Using a base image from Chainguard, like Alpine Linux, typically results in fewer vulnerabilities compared to Debian-based images. Chainguard focuses on providing secure base images with minimal vulnerabilities, reducing the risk of CVEs in your environment. Regularly scanning images with tools like Red Hat Advanced Cluster Security for Kubernetes can further enhance security.
If the current image has cve ? (Assuming using base img as chainguard )
There will be vulnerability?
Using a base image from Chainguard, like Alpine Linux, typically results in fewer vulnerabilities compared to Debian-based images. Chainguard focuses on providing secure base images with minimal vulnerabilities, reducing the risk of CVEs in your environment. Regularly scanning images with tools like Red Hat Advanced Cluster Security for Kubernetes can further enhance security.
CVEs are triaged frequently, but they do occur from time to time. Please compare to the upstream (not Chainguard) image. :)
What tool he mentioned near 9:49 mint or mint plus something ca anyone provide official link for the tool ?
Its mint github.com/mintoolkit/mint