diff --git a/bitnami/mariadb-galera/10.6/debian-11/Dockerfile b/bitnami/mariadb-galera/10.6/debian-11/Dockerfile index d6916b365501..5e6f58856dbb 100644 --- a/bitnami/mariadb-galera/10.6/debian-11/Dockerfile +++ b/bitnami/mariadb-galera/10.6/debian-11/Dockerfile @@ -3,10 +3,10 @@ FROM docker.io/bitnami/minideb:bullseye ARG TARGETARCH LABEL org.opencontainers.image.base.name="docker.io/bitnami/minideb:bullseye" \ - org.opencontainers.image.created="2023-04-16T21:02:51Z" \ + org.opencontainers.image.created="2023-04-19T22:08:06Z" \ org.opencontainers.image.description="Application packaged by VMware, Inc" \ org.opencontainers.image.licenses="Apache-2.0" \ - org.opencontainers.image.ref.name="10.6.12-debian-11-r21" \ + org.opencontainers.image.ref.name="10.6.12-debian-11-r22" \ org.opencontainers.image.title="mariadb-galera" \ org.opencontainers.image.vendor="VMware, Inc." \ org.opencontainers.image.version="10.6.12" @@ -22,9 +22,8 @@ SHELL ["/bin/bash", "-o", "pipefail", "-c"] RUN install_packages ca-certificates curl iproute2 ldap-utils libaio1 libaudit1 libcap-ng0 libcrypt1 libgcc-s1 libicu67 libldap-common liblzma5 libncurses6 libpam-ldapd libpam0g libssl1.1 libstdc++6 libtinfo6 libxml2 nslcd procps psmisc rsync socat zlib1g RUN mkdir -p /tmp/bitnami/pkg/cache/ && cd /tmp/bitnami/pkg/cache/ && \ COMPONENTS=( \ - "ini-file-1.4.5-4-linux-${OS_ARCH}-debian-11" \ + "ini-file-1.4.5-5-linux-${OS_ARCH}-debian-11" \ "mariadb-galera-10.6.12-5-linux-${OS_ARCH}-debian-11" \ - "gosu-1.16.0-5-linux-${OS_ARCH}-debian-11" \ ) && \ for COMPONENT in "${COMPONENTS[@]}"; do \ if [ ! -f "${COMPONENT}.tar.gz" ]; then \ diff --git a/bitnami/mariadb-galera/10.6/debian-11/prebuildfs/opt/bitnami/.bitnami_components.json b/bitnami/mariadb-galera/10.6/debian-11/prebuildfs/opt/bitnami/.bitnami_components.json index 7190e6884120..75e9e59785e8 100644 --- a/bitnami/mariadb-galera/10.6/debian-11/prebuildfs/opt/bitnami/.bitnami_components.json +++ b/bitnami/mariadb-galera/10.6/debian-11/prebuildfs/opt/bitnami/.bitnami_components.json @@ -1,15 +1,9 @@ { - "gosu": { - "arch": "amd64", - "distro": "debian-11", - "type": "NAMI", - "version": "1.16.0-5" - }, "ini-file": { "arch": "amd64", "distro": "debian-11", "type": "NAMI", - "version": "1.4.5-4" + "version": "1.4.5-5" }, "mariadb-galera": { "arch": "amd64", diff --git a/bitnami/mariadb-galera/10.6/debian-11/prebuildfs/opt/bitnami/scripts/libos.sh b/bitnami/mariadb-galera/10.6/debian-11/prebuildfs/opt/bitnami/scripts/libos.sh index 5e141d4ce3f1..e573899abacb 100644 --- a/bitnami/mariadb-galera/10.6/debian-11/prebuildfs/opt/bitnami/scripts/libos.sh +++ b/bitnami/mariadb-galera/10.6/debian-11/prebuildfs/opt/bitnami/scripts/libos.sh @@ -553,3 +553,98 @@ get_root_disk_device_id() { get_root_disk_size() { fdisk -l "$(get_root_disk_device_id)" | grep 'Disk.*bytes' | sed -E 's/.*, ([0-9]+) bytes,.*/\1/' || true } + +######################## +# Run command as a specific user and group (optional) +# Arguments: +# $1 - USER(:GROUP) to switch to +# $2..$n - command to execute +# Returns: +# Exit code of the specified command +######################### +run_as_user() { + run_chroot "$@" +} + +######################## +# Execute command as a specific user and group (optional), +# replacing the current process image +# Arguments: +# $1 - USER(:GROUP) to switch to +# $2..$n - command to execute +# Returns: +# Exit code of the specified command +######################### +exec_as_user() { + run_chroot --replace-process "$@" +} + +######################## +# Run a command using chroot +# Arguments: +# $1 - USER(:GROUP) to switch to +# $2..$n - command to execute +# Flags: +# -r | --replace-process - Replace the current process image (optional) +# Returns: +# Exit code of the specified command +######################### +run_chroot() { + local userspec + local user + local homedir + local replace=false + local -r cwd="$(pwd)" + + # Parse and validate flags + while [[ "$#" -gt 0 ]]; do + case "$1" in + -r | --replace-process) + replace=true + ;; + --) + shift + break + ;; + -*) + stderr_print "unrecognized flag $1" + return 1 + ;; + *) + break + ;; + esac + shift + done + + # Parse and validate arguments + if [[ "$#" -lt 2 ]]; then + echo "expected at least 2 arguments" + return 1 + else + userspec=$1 + shift + + # userspec can optionally include the group, so we parse the user + user=$(echo "$userspec" | cut -d':' -f1) + fi + + if ! am_i_root; then + error "Could not switch to '${userspec}': Operation not permitted" + return 1 + fi + + # Get the HOME directory for the user to switch, as chroot does + # not properly update this env and some scripts rely on it + homedir=$(eval echo "~${user}") + if [[ ! -d $homedir ]]; then + homedir="${HOME:-/}" + fi + + # Obtaining value for "$@" indirectly in order to properly support shell parameter expansion + if [[ "$replace" = true ]]; then + exec chroot --userspec="$userspec" / bash -c "cd ${cwd}; export HOME=${homedir}; exec \"\$@\"" -- "$@" + else + chroot --userspec="$userspec" / bash -c "cd ${cwd}; export HOME=${homedir}; exec \"\$@\"" -- "$@" + fi +} \ No newline at end of file diff --git a/bitnami/mariadb-galera/10.6/debian-11/rootfs/opt/bitnami/scripts/libmariadbgalera.sh b/bitnami/mariadb-galera/10.6/debian-11/rootfs/opt/bitnami/scripts/libmariadbgalera.sh index 7287719fe746..5146f7c12b31 100644 --- a/bitnami/mariadb-galera/10.6/debian-11/rootfs/opt/bitnami/scripts/libmariadbgalera.sh +++ b/bitnami/mariadb-galera/10.6/debian-11/rootfs/opt/bitnami/scripts/libmariadbgalera.sh @@ -1104,7 +1104,7 @@ mysql_stop() { mysql_install_db() { local command="${DB_BIN_DIR}/mysql_install_db" local -a args=("--defaults-file=${DB_CONF_FILE}" "--basedir=${DB_BASE_DIR}" "--datadir=${DB_DATA_DIR}") - + # Add flags specified via the 'DB_EXTRA_FLAGS' environment variable read -r -a db_extra_flags <<< "$(mysql_extra_flags)" [[ "${#db_extra_flags[@]}" -gt 0 ]] && args+=("${db_extra_flags[@]}") @@ -1243,9 +1243,9 @@ mysql_ensure_user_exists() { auth_string="identified via pam using '$DB_FLAVOR'" elif [[ -n "$password" ]]; then if [[ -n "$auth_plugin" ]]; then - auth_string="identified with $auth_plugin by \"$password\"" + auth_string="identified with $auth_plugin by '$password'" else - auth_string="identified by \"$password\"" + auth_string="identified by '$password'" fi fi debug "creating database user \'$user\'" diff --git a/bitnami/mariadb-galera/10.6/debian-11/rootfs/opt/bitnami/scripts/mariadb-galera/run.sh b/bitnami/mariadb-galera/10.6/debian-11/rootfs/opt/bitnami/scripts/mariadb-galera/run.sh index 643d545e4a0b..99c534abaa6b 100755 --- a/bitnami/mariadb-galera/10.6/debian-11/rootfs/opt/bitnami/scripts/mariadb-galera/run.sh +++ b/bitnami/mariadb-galera/10.6/debian-11/rootfs/opt/bitnami/scripts/mariadb-galera/run.sh @@ -42,7 +42,7 @@ info "** Starting MariaDB **" set_previous_boot if am_i_root; then - exec gosu "$DB_DAEMON_USER" "$EXEC" "${flags[@]}" + exec_as_user "$DB_DAEMON_USER" "$EXEC" "${flags[@]}" else exec "$EXEC" "${flags[@]}" fi