docker-library / postgres

Docker Official Image packaging for Postgres
http://www.postgresql.org
MIT License
2.2k stars 1.14k forks source link

CVE-2023-24538 CVE-2023-24540 #1247

Closed fguiet closed 5 months ago

fguiet commented 5 months ago

Hello,

Our security scanner reveals two critical issues : CVE-2023-24538 CVE-2023-24540 using Docker Image PostgreSQL 16.3

image

Can you fix this ?

Thank you

LaurentGoderre commented 5 months ago

I believe this is a duplicate of #1223

tianon commented 5 months ago

See also https://github.com/tianon/gosu/blob/a094511005799318adac840b6974852075a81153/SECURITY.md and https://github.com/docker-library/faq#why-does-my-security-scanner-show-that-an-image-has-cves