hwameistor / hwameistor-operator

Operator that manages HwameiStor
Apache License 2.0
8 stars 10 forks source link

[hwameistor-operator] index.docker.io/rclone/rclone:1.53.2 had CRITICAL vulnerabilities #284

Open FloatXD opened 2 months ago

FloatXD commented 2 months ago

10.5.14.30/index.docker.io/rclone/rclone:1.53.2 (alpine 3.12.1)
===============================================================
Total: 1 (CRITICAL: 1)

┌───────────┬────────────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────────┐
│  Library  │ Vulnerability  │ Severity │ Installed Version │ Fixed Version │                            Title                             │
├───────────┼────────────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────────┤
│ apk-tools │ CVE-2021-36159 │ CRITICAL │ 2.10.5-r1         │ 2.10.7-r0     │ libfetch: an out of boundary read while libfetch uses strtol │
│           │                │          │                   │               │ to parse...                                                  │
│           │                │          │                   │               │ https://avd.aquasec.com/nvd/cve-2021-36159                   │
└───────────┴────────────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────────┘