docker-library / mysql

Docker Official Image packaging for MySQL Community Server
https://dev.mysql.com/
GNU General Public License v2.0
2.46k stars 2.19k forks source link

mysql:8.0.35-debian : Xray major vulnerabilities reported #1086

Closed RishiDixit1 closed 2 weeks ago

RishiDixit1 commented 2 weeks ago

Hi Team,

We are using docker image of mysql:8.0.35-debian version when we do a xray scan on this image, we have found major vulnerabilities. Due to infra restriction we can't upgrade to the latest version of mysql 8.0.39, we are requesting you to fix the attached vulnerabilities in 8.0.35 version. please provide an ETA on this.

images : mysql:8.0.35-debian-11-r3 mysqld-exporter:0.15.1-debian-11-r1

mysql-8.0.35-debian-xray-vulns.xlsx

tianon commented 2 weeks ago

I'm sorry, but the 8.0.35 image is EOL, has not been updated since January, and we have no plans to update it at this time. Updating to the latest release of MySQL or building your own image are your most effective solutions for recourse.