This is an automated email from the ASF dual-hosted git repository.
sarutak pushed a commit to branch branch-3.5
in repository https://gitbox.apache.org/repos/asf/spark.git
The following commit(s) were added to refs/heads/branch-3.5 by this push:
new 04c41db1d2e7 [SPARK-56724][INFRA][3.5] Make docker/* GitHub Actions
up-to-date
04c41db1d2e7 is described below
commit 04c41db1d2e705cf4822a6fa99fab54a1e9b835c
Author: Dongjoon Hyun <[email protected]>
AuthorDate: Wed Jun 17 12:27:12 2026 +0900
[SPARK-56724][INFRA][3.5] Make docker/* GitHub Actions up-to-date
### What changes were proposed in this pull request?
Update the commit SHAs of the following Docker-related GitHub Actions in
`branch-3.5` to match the ones registered in the Apache organization's GitHub
Actions allowlist:
- `docker/login-action`
- `docker/setup-qemu-action`
- `docker/setup-buildx-action`
- `docker/build-push-action`
### Why are the changes needed?
The `master` branch was already updated to the new SHAs, but `branch-3.5`
still used tag-based references (e.g., v2) which are not in the allowlist.
- #55687
### Does this PR introduce _any_ user-facing change?
No.
### How was this patch tested?
CI should pass with this change.
### Was this patch authored or co-authored using generative AI tooling?
Kiro CLI / Claude
Closes #56532 from sarutak/update-docker-actions-branch-3.5.
Authored-by: Dongjoon Hyun <[email protected]>
Signed-off-by: Kousuke Saruta <[email protected]>
---
.github/workflows/build_and_test.yml | 8 ++++----
.github/workflows/build_infra_images_cache.yml | 8 ++++----
2 files changed, 8 insertions(+), 8 deletions(-)
diff --git a/.github/workflows/build_and_test.yml
b/.github/workflows/build_and_test.yml
index 7fa5bdd72974..173ec217d843 100644
--- a/.github/workflows/build_and_test.yml
+++ b/.github/workflows/build_and_test.yml
@@ -308,7 +308,7 @@ jobs:
packages: write
steps:
- name: Login to GitHub Container Registry
- uses: docker/login-action@v2
+ uses: docker/login-action@4907a6ddec9925e35a0a9e82d7399ccc52663121
with:
registry: ghcr.io
username: ${{ github.actor }}
@@ -328,12 +328,12 @@ jobs:
git -c user.name='Apache Spark Test Account' -c
user.email='[email protected]' merge --no-commit --progress --squash
FETCH_HEAD
git -c user.name='Apache Spark Test Account' -c
user.email='[email protected]' commit -m "Merged commit" --allow-empty
- name: Set up QEMU
- uses: docker/setup-qemu-action@v2
+ uses: docker/setup-qemu-action@ce360397dd3f832beb865e1373c09c0e9f86d70a
- name: Set up Docker Buildx
- uses: docker/setup-buildx-action@v2
+ uses:
docker/setup-buildx-action@4d04d5d9486b7bd6fa91e7baf45bbb4f8b9deedd
- name: Build and push
id: docker_build
- uses: docker/build-push-action@v3
+ uses: docker/build-push-action@bcafcacb16a39f128d818304e6c9c0c18556b85f
with:
context: ./dev/infra/
push: true
diff --git a/.github/workflows/build_infra_images_cache.yml
b/.github/workflows/build_infra_images_cache.yml
index b8aae945599d..b00d6548b5a7 100644
--- a/.github/workflows/build_infra_images_cache.yml
+++ b/.github/workflows/build_infra_images_cache.yml
@@ -40,18 +40,18 @@ jobs:
- name: Checkout Spark repository
uses: actions/checkout@v3
- name: Set up QEMU
- uses: docker/setup-qemu-action@v2
+ uses: docker/setup-qemu-action@ce360397dd3f832beb865e1373c09c0e9f86d70a
- name: Set up Docker Buildx
- uses: docker/setup-buildx-action@v2
+ uses:
docker/setup-buildx-action@4d04d5d9486b7bd6fa91e7baf45bbb4f8b9deedd
- name: Login to DockerHub
- uses: docker/login-action@v2
+ uses: docker/login-action@4907a6ddec9925e35a0a9e82d7399ccc52663121
with:
registry: ghcr.io
username: ${{ github.actor }}
password: ${{ secrets.GITHUB_TOKEN }}
- name: Build and push
id: docker_build
- uses: docker/build-push-action@v3
+ uses: docker/build-push-action@bcafcacb16a39f128d818304e6c9c0c18556b85f
with:
context: ./dev/infra/
push: true
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]