intel / trusted-certificate-issuer

Trusted Certificate Service (TCS) is a K8s service to protect signing keys using Intel's SGX technology. K8s CSR and cert-manager CR APIs are both supported. TCS also contains integration samples for Istio service mesh and Key Management Reference Application (KMRA).
Apache License 2.0
29 stars 15 forks source link

[Snyk] Security upgrade ubuntu from jammy to kinetic #87

Closed snyk-bot closed 1 year ago

snyk-bot commented 1 year ago

Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image.

Changes included in this PR

We recommend upgrading to ubuntu:kinetic, as this image has only 7 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected.

Some of the most important vulnerabilities in your base image include:

Severity Priority Score / 1000 Issue Exploit Maturity
low severity 150 Out-of-bounds Read
SNYK-UBUNTU2204-NCURSES-2801048
No Known Exploit
low severity 221 Improper Certificate Validation
SNYK-UBUNTU2204-OPENSSL-5296052
No Known Exploit
low severity 221 Improper Certificate Validation
SNYK-UBUNTU2204-OPENSSL-5296082
No Known Exploit
low severity 221 CVE-2023-29383
SNYK-UBUNTU2204-SHADOW-5425688
No Known Exploit
low severity 221 CVE-2023-29383
SNYK-UBUNTU2204-SHADOW-5425688
No Known Exploit

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.