Skip to content

Conversation

angrycub
Copy link
Contributor

Resolves 3 CVEs in base container (1 High, 2 Medium)

CVE ID CVSS Score Package / Version
CVE-2025-26519 8.1 High apk / alpine/musl / 1.2.5-r8
CVE-2024-12797 6.3 Medium apk / alpine/openssl / 3.3.2-r4
CVE-2024-13176 4.1 Medium apk / alpine/openssl / 3.3.2-r4

Resolves 3 CVEs caused by container (1 High, 2 Medium)

| CVE ID         | CVSS Score | Package / Version               |
| -------------- | ---------- | ------------------------------  |
| CVE-2025-26519 | 8.1 High   | apk / alpine/musl / 1.2.5-r8    |
| CVE-2024-12797 | 6.3 Medium | apk / alpine/openssl / 3.3.2-r4 |
| CVE-2024-13176 | 4.1 Medium | apk / alpine/openssl / 3.3.2-r4 |
@angrycub angrycub requested review from matifali and stirby May 12, 2025 16:14
@angrycub angrycub added the dependencies Pull requests that update a dependency file label May 12, 2025
@matifali matifali changed the title fix: update alpine 3.21.2 => 3.21.3 chore: update alpine 3.21.2 => 3.21.3 May 12, 2025
@matifali matifali requested a review from sreya May 12, 2025 17:08
@sreya sreya merged commit 8f64d49 into main May 13, 2025
33 checks passed
@sreya sreya deleted the build_rev_base_container branch May 13, 2025 15:49
@github-actions github-actions bot locked and limited conversation to collaborators May 13, 2025
@matifali
Copy link
Member

/cherry-pick release/2.22

@matifali
Copy link
Member

/cherry-pick release/2.21

@matifali
Copy link
Member

/cherry-pick release/2.20

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants