atomist-skills / skill-base

Apache License 2.0
0 stars 0 forks source link

Vulnerability update in atomist/skill (branch main) #55

Closed atomist[bot] closed 2 years ago

atomist[bot] commented 2 years ago
Vulnerabilities

Following vulnerability changes detected in image atomist/skill from branch main:

New vulnerabilities
CVESeverityCVSSPackagesFixLine
Base image ubuntu:rolling
CVE-2021-36222high7.5krb5-locales 1.18.3-4
libgssapi-krb5-2 1.18.3-4
libk5crypto3 1.18.3-4
libkrb5-3 1.18.3-4
libkrb5support0 1.18.3-4
1
CVE-2019-20838high7.5libpcre3 2:8.39-13build31
CVE-2019-9923high7.5tar 1.34+dfsg-1build11
CVE-2018-5709high7.5krb5-locales 1.18.3-4
libgssapi-krb5-2 1.18.3-4
libk5crypto3 1.18.3-4
libkrb5-3 1.18.3-4
libkrb5support0 1.18.3-4
1
CVE-2017-11164high7.5libpcre3 2:8.39-13build31
Image atomist/skill
CVE-2021-41720critical9.8lodash 4.17.2134
CVE-2021-29940critical9.8through 2.3.815
CVE-2021-42008high7.8linux-libc-dev 5.11.0-37.41 > 5.11.0-38.42x15
CVE-2021-41864high7.8linux-libc-dev 5.11.0-37.4115
CVE-2021-41617high7openssh-client 1:8.4p1-5ubuntu1.1
openssh-client 1:8.4p1-5ubuntu1.1
15
6
CVE-2021-40490high7linux-libc-dev 5.11.0-37.41 > 5.11.0-38.42x15
CVE-2021-38166high7.8linux-libc-dev 5.11.0-37.41 > 5.11.0-38.42x15
CVE-2021-36222high7.5krb5-locales 1.18.3-4
libgssapi-krb5-2 1.18.3-4
libk5crypto3 1.18.3-4
libkrb5-3 1.18.3-4
libkrb5support0 1.18.3-4
15
CVE-2021-32078high7.1linux-libc-dev 5.11.0-37.4115
CVE-2021-26934high7.8linux-libc-dev 5.11.0-37.4115
CVE-2021-3807high7.5ansi-regex 3.0.0 > 5.0.1
ansi-regex 4.1.0 > 5.0.1
x15
CVE-2021-3530high7.5binutils 2.36.1-6ubuntu1
binutils-common 2.36.1-6ubuntu1
binutils-x86-64-linux-gnu 2.36.1-6ubuntu1
libbinutils 2.36.1-6ubuntu1
libctf-nobfd0 2.36.1-6ubuntu1
libctf0 2.36.1-6ubuntu1
15
CVE-2020-11725high7.8linux-libc-dev 5.11.0-37.4115
CVE-2020-9991high7.5libsqlite3-0 3.34.1-3
libsqlite3-0 3.34.1-3
15
6
CVE-2020-9794high8.1libsqlite3-0 3.34.1-3
libsqlite3-0 3.34.1-3
15
6
CVE-2020-8116high7.3dot-prop 4.2.115
CVE-2019-20838high7.5libpcre3 2:8.39-13build315
CVE-2019-19814high7.8linux-libc-dev 5.11.0-37.4115
CVE-2019-19378high7.8linux-libc-dev 5.11.0-37.4115
CVE-2019-14899high7.4linux-libc-dev 5.11.0-37.4115
CVE-2019-9923high7.5tar 1.34+dfsg-1build115
CVE-2018-1000021high8.8git 1:2.30.2-1ubuntu1
git 1:2.30.2-1ubuntu1
git-man 1:2.30.2-1ubuntu1
git-man 1:2.30.2-1ubuntu1
15
6
15
6
CVE-2018-20657high7.5binutils 2.36.1-6ubuntu1
binutils-common 2.36.1-6ubuntu1
binutils-x86-64-linux-gnu 2.36.1-6ubuntu1
libbinutils 2.36.1-6ubuntu1
libctf-nobfd0 2.36.1-6ubuntu1
libctf0 2.36.1-6ubuntu1
15
CVE-2018-12931high7.8linux-libc-dev 5.11.0-37.4115
CVE-2018-12930high7.8linux-libc-dev 5.11.0-37.4115
CVE-2018-6952high7.5patch 2.7.6-7
patch 2.7.6-7
15
6
CVE-2018-5709high7.5krb5-locales 1.18.3-4
libgssapi-krb5-2 1.18.3-4
libk5crypto3 1.18.3-4
libkrb5-3 1.18.3-4
libkrb5support0 1.18.3-4
15
CVE-2017-13165high7.8linux-libc-dev 5.11.0-37.4115
CVE-2017-11164high7.5libpcre3 2:8.39-13build315
CVE-2015-0903high7.5editor 1.0.015
CVE-2014-1936high7.5rc 1.2.834
CVE-2013-7445high7.8linux-libc-dev 5.11.0-37.4115
Details Commit 105fe401f63634e6a749d55e716a097bd0f0e5ed
Image atomist/skill
Tag node14
Digest sha256:2c98a06ec9cc2504c1d93ea519cbe01f2aae30771c37e7fe8fa92e450b03db98
Scanned November 2, 2021, 12:02 AM UTC