-
Notifications
You must be signed in to change notification settings - Fork 90
Open
Description
Is this a BUG REPORT or FEATURE REQUEST?:
Security Vulnerabilities
What happened:
openstorage/stork image found major and moderate security vulnerabilities
What you expected to happen:
Image to not have vulnerabilities
How to reproduce it (as minimally and precisely as possible):
Scanned image openstorage/stork:2.9.0 with aquasec security scanner and found vulnerabilities for:
CVE-2022-1292 (major, OpenSSL)
CVE-2022-27772 (moderate, curl)
Anything else we need to know?:
The most current version of stork (2.11.3) has the same software installed and gets flagged by image scanner.
OpenSSL version 1.1.1k
Curl version: 7.61.1
Environment:
- Kubernetes version (use
kubectl version): 1.22.7 - Cloud provider or hardware configuration: internally hosted
- OS (e.g. from /etc/os-release): Ubuntu 20.04
- Kernel (e.g.
uname -a): 5.4.0.104-generic - Install tools: na
- Others:
Metadata
Metadata
Assignees
Labels
No labels