From bd4117a422503cb697be9bf9db7e833b11cfa2ea Mon Sep 17 00:00:00 2001 From: Mia Bennett Date: Wed, 5 Nov 2025 12:37:05 +0930 Subject: [PATCH 1/2] build(Dockerfile): [PPT-2278] add /tmp --- Dockerfile | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/Dockerfile b/Dockerfile index 031e274..679675b 100644 --- a/Dockerfile +++ b/Dockerfile @@ -74,6 +74,9 @@ RUN for binary in /app/bin/*; do \ xargs -I % sh -c 'mkdir -p $(dirname deps%); cp % deps%;'; \ done +# Create tmp directory with proper permissions +RUN rm -rf /tmp && mkdir -p /tmp && chmod 1777 /tmp + # Build a minimal docker image FROM scratch WORKDIR / @@ -93,6 +96,9 @@ ENV SSL_CERT_FILE=/etc/ssl/certs/ca-certificates.crt # This is required for Timezone support COPY --from=build /usr/share/zoneinfo/ /usr/share/zoneinfo/ +# Copy tmp directory +COPY --from=build /tmp /tmp + # Copy the app into place COPY --from=build /app/deps / COPY --from=build /app/bin / From 9cc354beb23bc9904a726920d8aa3f08cf5484ae Mon Sep 17 00:00:00 2001 From: Mia Bennett Date: Thu, 6 Nov 2025 13:28:48 +0930 Subject: [PATCH 2/2] build(Dockerfile): [PPT-2278] set permissions on /tmp --- Dockerfile | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/Dockerfile b/Dockerfile index 679675b..ffe4c5a 100644 --- a/Dockerfile +++ b/Dockerfile @@ -99,6 +99,13 @@ COPY --from=build /usr/share/zoneinfo/ /usr/share/zoneinfo/ # Copy tmp directory COPY --from=build /tmp /tmp +# chmod for setting permissions on /tmp +COPY --from=build /bin /bin +COPY --from=build /lib/ld-musl-* /lib/ +RUN chmod -R a+rwX /tmp +# hadolint ignore=SC2114,DL3059 +RUN rm -rf /bin /lib + # Copy the app into place COPY --from=build /app/deps / COPY --from=build /app/bin /