Skip to content

Conversation

gcp-cherry-pick-bot[bot]
Copy link

Cherry-picked chore: update alpine 3.21.2 => 3.21.3 (#17773)

Resolves 3 CVEs in base container (1 High, 2 Medium)

CVE ID CVSS Score Package / Version
CVE-2025-26519 8.1 High apk / alpine/musl / 1.2.5-r8
CVE-2024-12797 6.3 Medium apk / alpine/openssl / 3.3.2-r4
CVE-2024-13176 4.1 Medium apk / alpine/openssl / 3.3.2-r4

Resolves 3 CVEs in base container (1 High, 2 Medium)

| CVE ID         | CVSS Score | Package / Version               |
| -------------- | ---------- | ------------------------------  |
| CVE-2025-26519 | 8.1 High   | apk / alpine/musl / 1.2.5-r8    |
| CVE-2024-12797 | 6.3 Medium | apk / alpine/openssl / 3.3.2-r4 |
| CVE-2024-13176 | 4.1 Medium | apk / alpine/openssl / 3.3.2-r4 |
@matifali matifali requested a review from stirby May 13, 2025 16:39
@matifali matifali merged commit 2e96160 into release/2.22 May 14, 2025
29 checks passed
@matifali matifali deleted the cherry-pick-8cd4d8-release/2.22 branch May 14, 2025 08:01
@github-actions github-actions bot locked and limited conversation to collaborators May 14, 2025
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants