atomist-skills / yamllint-skill

Atomist Skill to find problems in your Yaml files
Apache License 2.0
0 stars 0 forks source link

Vulnerability update in gcr.io/atomist-container-skills/yamllint-skill (branch main) #10

Closed atomist[bot] closed 3 years ago

atomist[bot] commented 3 years ago
Vulnerabilities

Following vulnerability changes detected in image gcr.io/atomist-container-skills/yamllint-skill from branch main:

Vulnerability updates
CVE Severity CVSS Packages Fix FROM Line
CVE-2021-38300 _severityunspecified > high n/a > 7.8 linux-libc-dev 5.10.46-4   3
CVE-2020-21598 _severityunspecified > high 8.8 libde265-0 1.0.8-1   3
Details Commit 8bb57876e2058ad703bf0a2632fc0ca4e339ab4a
Image gcr.io/atomist-container-skills/yamllint-skill
Tag 8bb57876e2058ad703bf0a2632fc0ca4e339ab4a
Digest sha256:da7847ea98f31922c50bd420b24042c1c0eb0b753b531ecd58735f853c379399
Scanned September 30, 2021, 12:01 AM UTC
atomist[bot] commented 3 years ago
Vulnerabilities

Following vulnerability changes detected in image gcr.io/atomist-container-skills/yamllint-skill from branch main:

Vulnerability updates
CVE Severity CVSS Packages Fix FROM Line
CVE-2021-38300 _severityunspecified > high n/a > 7.8 linux-libc-dev 5.10.46-4   3
CVE-2020-21598 _severityunspecified > high 8.8 libde265-0 1.0.8-1   3
Details Commit 8bb57876e2058ad703bf0a2632fc0ca4e339ab4a
Image gcr.io/atomist-container-skills/yamllint-skill
Tag 8bb57876e2058ad703bf0a2632fc0ca4e339ab4a
Digest sha256:da7847ea98f31922c50bd420b24042c1c0eb0b753b531ecd58735f853c379399
Scanned September 30, 2021, 12:01 AM UTC
atomist[bot] commented 3 years ago
Vulnerabilities

Following vulnerability changes detected in image gcr.io/atomist-container-skills/yamllint-skill from branch main:

New vulnerability
CVESeverityCVSSPackagesFixLine
Base image python:rc
CVE-2021-20322highn/alinux-libc-dev 5.10.46-5 > 5.10.70-1x1
Vulnerability updates
CVESeverityCVSSPackagesFixLine
Image gcr.io/atomist-container-skills/yamllint-skill
CVE-2019-1010022critical7.5 > 9.8libc-bin 2.31-13
libc-dev-bin 2.31-13
libc6 2.31-13
libc6-dev 2.31-13
3
CVE-2017-17479critical7.5 > 9.8libopenjp2-7 2.4.0-3
libopenjp2-7-dev 2.4.0-3
3
CVE-2017-9117critical7.5 > 9.8libtiff-dev 4.2.0-1
libtiff5 4.2.0-1
libtiffxx5 4.2.0-1
3
CVE-2021-42252severity_unspecified > highn/a > 7.8linux-libc-dev 5.10.46-5 > 5.10.70-1x3
CVE-2019-1010023high6.8 > 8.8libc-bin 2.31-13
libc-dev-bin 2.31-13
libc6 2.31-13
libc6-dev 2.31-13
3
CVE-2019-12456high7.2 > 7.8linux-libc-dev 5.10.46-53
CVE-2019-9192high5 > 7.5libc-bin 2.31-13
libc-dev-bin 2.31-13
libc6 2.31-13
libc6-dev 2.31-13
3
CVE-2018-20796high5 > 7.5libc-bin 2.31-13
libc-dev-bin 2.31-13
libc6 2.31-13
libc6-dev 2.31-13
3
CVE-2018-18483high6.8 > 7.8binutils 2.35.2-2
binutils-common 2.35.2-2
binutils-x86-64-linux-gnu 2.35.2-2
libbinutils 2.35.2-2
libctf-nobfd0 2.35.2-2
libctf0 2.35.2-2
3
CVE-2018-16376high6.8 > 8.8libopenjp2-7 2.4.0-3
libopenjp2-7-dev 2.4.0-3
3
CVE-2018-16375high6.8 > 8.8libopenjp2-7 2.4.0-3
libopenjp2-7-dev 2.4.0-3
3
CVE-2018-12934high5 > 7.5binutils 2.35.2-2
binutils-common 2.35.2-2
binutils-x86-64-linux-gnu 2.35.2-2
libbinutils 2.35.2-2
libctf-nobfd0 2.35.2-2
libctf0 2.35.2-2
3
CVE-2018-6951high5 > 7.5patch 2.7.6-73
CVE-2018-6829high5 > 7.5libgcrypt20 1.8.7-63
CVE-2017-17973high6.8 > 8.8libtiff-dev 4.2.0-1
libtiff5 4.2.0-1
libtiffxx5 4.2.0-1
3
CVE-2017-17740high5 > 7.5libldap-2.4-2 2.4.57+dfsg-33
CVE-2017-16232high5 > 7.5libtiff-dev 4.2.0-1
libtiff5 4.2.0-1
libtiffxx5 4.2.0-1
3
CVE-2017-7246high6.8 > 7.8libpcre16-3 2:8.39-13
libpcre3 2:8.39-13
libpcre3-dev 2:8.39-13
libpcre32-3 2:8.39-13
libpcrecpp0v5 2:8.39-13
3
CVE-2017-7245high6.8 > 7.8libpcre16-3 2:8.39-13
libpcre3 2:8.39-13
libpcre3-dev 2:8.39-13
libpcre32-3 2:8.39-13
libpcrecpp0v5 2:8.39-13
3
CVE-2017-5563high6.8 > 8.8libtiff-dev 4.2.0-1
libtiff5 4.2.0-1
libtiffxx5 4.2.0-1
3
CVE-2016-9918high5 > 7.5libbluetooth-dev 5.55-3.1
libbluetooth3 5.55-3.1
3
CVE-2016-9581high6.8 > 8.8libopenjp2-7 2.4.0-3
libopenjp2-7-dev 2.4.0-3
3
CVE-2016-9580high6.8 > 8.8libopenjp2-7 2.4.0-3
libopenjp2-7-dev 2.4.0-3
3
CVE-2016-9114high5 > 7.5libopenjp2-7 2.4.0-3
libopenjp2-7-dev 2.4.0-3
3
CVE-2016-9113high5 > 7.5libopenjp2-7 2.4.0-3
libopenjp2-7-dev 2.4.0-3
3
Details Commit 0a216df93cde9f24888dcbc6a2d8c910e2baad95
Image gcr.io/atomist-container-skills/yamllint-skill
Tag 0a216df93cde9f24888dcbc6a2d8c910e2baad95
Digest sha256:2da395323eb2ba056aec14c43e1e73ac11b11703633b876734da61abc40ef0b2
Scanned October 20, 2021, 12:01 AM UTC