ehough / docker-nfs-server

A lightweight, robust, flexible, and containerized NFS server.
https://hub.docker.com/r/erichough/nfs-server/
GNU General Public License v3.0
669 stars 221 forks source link

Vulnerabilities in Docker image erichough/nfs-server:2.2.1 #71

Open ngosang opened 2 years ago

ngosang commented 2 years ago

Docker image erichough/nfs-server:2.2.1 https://github.com/anchore/grype

grype erichough/nfs-server:2.2.1
 ✔ Vulnerability DB        [no update available]
 ✔ Pulled image            
 ✔ Loaded image            
 ✔ Parsed image            
 ✔ Cataloged packages      [34 packages]
 ✔ Scanned image           [55 vulnerabilities]

NAME          INSTALLED  FIXED-IN    VULNERABILITY   SEVERITY 
apk-tools     2.10.4-r3  2.10.6-r0   CVE-2021-30139  High      
apk-tools     2.10.4-r3  2.10.7-r0   CVE-2021-36159  Critical  
busybox       1.31.1-r9  1.31.1-r10  CVE-2021-28831  High      
busybox       1.31.1-r9  1.31.1-r11  CVE-2021-42374  Medium    
busybox       1.31.1-r9  1.31.1-r11  CVE-2021-42378  High      
busybox       1.31.1-r9  1.31.1-r11  CVE-2021-42379  High      
busybox       1.31.1-r9  1.31.1-r11  CVE-2021-42380  High      
busybox       1.31.1-r9  1.31.1-r11  CVE-2021-42381  High      
busybox       1.31.1-r9  1.31.1-r11  CVE-2021-42382  High      
busybox       1.31.1-r9  1.31.1-r11  CVE-2021-42383  High      
busybox       1.31.1-r9  1.31.1-r11  CVE-2021-42384  High      
busybox       1.31.1-r9  1.31.1-r11  CVE-2021-42385  High      
busybox       1.31.1-r9  1.31.1-r11  CVE-2021-42386  High      
krb5-libs     1.17.1-r0  1.17.2-r0   CVE-2020-28196  High      
libcrypto1.1  1.1.1d-r3  1.1.1g-r0   CVE-2020-1967   High      
libcrypto1.1  1.1.1d-r3  1.1.1i-r0   CVE-2020-1971   Medium    
libcrypto1.1  1.1.1d-r3  1.1.1j-r0   CVE-2021-23841  Medium    
libcrypto1.1  1.1.1d-r3  1.1.1j-r0   CVE-2021-23840  High      
libcrypto1.1  1.1.1d-r3  1.1.1j-r0   CVE-2021-23839  Low       
libcrypto1.1  1.1.1d-r3  1.1.1k-r0   CVE-2021-3449   Medium    
libcrypto1.1  1.1.1d-r3  1.1.1k-r0   CVE-2021-3450   High      
libcrypto1.1  1.1.1d-r3  1.1.1l-r0   CVE-2021-3711   Critical  
libcrypto1.1  1.1.1d-r3  1.1.1l-r0   CVE-2021-3712   High      
libssl1.1     1.1.1d-r3  1.1.1g-r0   CVE-2020-1967   High      
libssl1.1     1.1.1d-r3  1.1.1i-r0   CVE-2020-1971   Medium    
libssl1.1     1.1.1d-r3  1.1.1j-r0   CVE-2021-23841  Medium    
libssl1.1     1.1.1d-r3  1.1.1j-r0   CVE-2021-23840  High      
libssl1.1     1.1.1d-r3  1.1.1j-r0   CVE-2021-23839  Low       
libssl1.1     1.1.1d-r3  1.1.1k-r0   CVE-2021-3449   Medium    
libssl1.1     1.1.1d-r3  1.1.1k-r0   CVE-2021-3450   High      
libssl1.1     1.1.1d-r3  1.1.1l-r0   CVE-2021-3711   Critical  
libssl1.1     1.1.1d-r3  1.1.1l-r0   CVE-2021-3712   High      
musl          1.1.24-r0  1.1.24-r3   CVE-2020-28928  Medium    
musl-utils    1.1.24-r0  1.1.24-r3   CVE-2020-28928  Medium    
sqlite-libs   3.30.1-r1  3.30.1-r2   CVE-2020-11655  High      
sqlite-libs   3.30.1-r1              CVE-2020-13632  Medium    
sqlite-libs   3.30.1-r1              CVE-2020-11656  Critical  
sqlite-libs   3.30.1-r1              CVE-2020-13435  Medium    
sqlite-libs   3.30.1-r1              CVE-2020-13631  Medium    
sqlite-libs   3.30.1-r1              CVE-2019-19646  Critical  
sqlite-libs   3.30.1-r1              CVE-2020-13434  Medium    
sqlite-libs   3.30.1-r1              CVE-2020-13630  High      
sqlite-libs   3.30.1-r1              CVE-2019-19645  Medium    
sqlite-libs   3.30.1-r1              CVE-2020-15358  Medium    
ssl_client    1.31.1-r9  1.31.1-r10  CVE-2021-28831  High      
ssl_client    1.31.1-r9  1.31.1-r11  CVE-2021-42374  Medium    
ssl_client    1.31.1-r9  1.31.1-r11  CVE-2021-42378  High      
ssl_client    1.31.1-r9  1.31.1-r11  CVE-2021-42379  High      
ssl_client    1.31.1-r9  1.31.1-r11  CVE-2021-42380  High      
ssl_client    1.31.1-r9  1.31.1-r11  CVE-2021-42381  High      
ssl_client    1.31.1-r9  1.31.1-r11  CVE-2021-42382  High      
ssl_client    1.31.1-r9  1.31.1-r11  CVE-2021-42383  High      
ssl_client    1.31.1-r9  1.31.1-r11  CVE-2021-42384  High      
ssl_client    1.31.1-r9  1.31.1-r11  CVE-2021-42385  High      
ssl_client    1.31.1-r9  1.31.1-r11  CVE-2021-42386  High