docker-library / rabbitmq

Docker Official Image packaging for RabbitMQ
http://www.rabbitmq.com/
MIT License
785 stars 417 forks source link

Latest Rabbitmq version 4.0.2 has a critical Vulnerability #732

Closed pranjalthakur98 closed 1 month ago

pranjalthakur98 commented 1 month ago

We are using Rabbitmq as a base image to develop application on the top of it but we are tagged with a critical vulnerability of Go (golang) [CVE-2024-24790⁠]. This is stopping us from using it. Can this vulnerability could be fixed ? We could see this is only with 4.* version of rabbitmq image with ubuntu OS.

michaelklishin commented 1 month ago

@pranjalthakur98 this image does not ship a Go binary.