google / cadvisor

Analyzes resource usage and performance characteristics of running containers.
Other
17.25k stars 2.33k forks source link

CVE-2024-41110 in gcr.io/cadvisor/cadvisor-arm:v0.50.0 #3583

Open MFIB00 opened 3 months ago

MFIB00 commented 3 months ago

Hello!

I've found that gcr.io/cadvisor/cadvisor-arm:v0.50.0 image has a critical vulnerability CVE-2024-41110 in usr/bin/cadvisor (gobinary).

Is there any plans to upgrade binary for new versions? Maybe this vulnerability is not affect on product?

Here is scan results from trivy

image