juanluisbaptiste / docker-otrs

The unofficial Znuny/OTRS Ticketing System docker image
https://www.juanbaptiste.tech/category/otrs
GNU Lesser General Public License v3.0
175 stars 106 forks source link

Vulnerabilites found running your docker image #89

Closed advapiIT closed 4 years ago

advapiIT commented 4 years ago

Hello, Before using your docker container, I've been asked to check with Anchore if there were high vulnerability rate in your docker image and running it today I've found those: vulns.txt details.txt

Considering this, it's safe to use this docker image in production environment? do you think you can apply some patches? Thanks in advance

juanluisbaptiste commented 4 years ago

Hi,

You are more than welcome to fix them, I don't have the time to do it.

juanluisbaptiste commented 4 years ago

As vulnerabilities come from the base CentOS 7 image which is the officially supported OS for OTRS 6 this will not be fixed because migrating to CentOS 8 is not an easy task and will make this container harder to support upstream.

Until upstream changes this base requirement it will not be changed here neither, closing this as wont fix.