docker-library / postgres

Docker Official Image packaging for Postgres
http://www.postgresql.org
MIT License
2.17k stars 1.13k forks source link

CVE-2023-24538 CVE-2023-24540 #1247

Closed fguiet closed 4 months ago

fguiet commented 4 months ago

Hello,

Our security scanner reveals two critical issues : CVE-2023-24538 CVE-2023-24540 using Docker Image PostgreSQL 16.3

image

Can you fix this ?

Thank you

LaurentGoderre commented 4 months ago

I believe this is a duplicate of #1223

tianon commented 4 months ago

See also https://github.com/tianon/gosu/blob/a094511005799318adac840b6974852075a81153/SECURITY.md and https://github.com/docker-library/faq#why-does-my-security-scanner-show-that-an-image-has-cves