Skip to content

snyk vuln scan findings #8639

Jan 22, 2025 · 1 comments · 5 replies
Discussion options

You must be logged in to vote

This is my snyk result. There are only two low sev.

Per ubuntu https://ubuntu.com/security/CVE-2024-41996 do not apply to 22.04 used as base images in velero.
Per ubuntu https://ubuntu.com/security/CVE-2016-20013 for glibc 22.04 do not have a fix yet.

❯ snyk container test velero/velero:main 

Testing velero/velero:main...

✗ Low severity vulnerability found in openssl/libssl3
  Description: CVE-2024-41996
  Info: https://security.snyk.io/vuln/SNYK-UBUNTU2204-OPENSSL-7838287
  Introduced through: openssl/libssl3@3.0.2-0ubuntu1.18, ca-certificates@20240203~22.04.1, openssl@3.0.2-0ubuntu1.18
  From: openssl/libssl3@3.0.2-0ubuntu1.18
  From: ca-certificates@20240203~22.04.1 > openssl@3.0.2-0…

Replies: 1 comment 5 replies

Comment options

You must be logged in to vote
5 replies
@kaovilai
Comment options

Answer selected by derrick-roach
@derrick-roach
Comment options

@kaovilai
Comment options

@kaovilai
Comment options

@derrick-roach
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
2 participants