From 0fac816bdc7d749b5b4b4223161969420f7e912e Mon Sep 17 00:00:00 2001 From: rancher-security-bot <119513217+rancher-security-bot@users.noreply.github.com> Date: Fri, 28 Feb 2025 06:11:52 +0000 Subject: [PATCH] Update 2025-02-28 --- docs/csv/report-harvester-master-cves.csv | 6 - docs/csv/report-harvester-master-stats.csv | 4 +- docs/csv/report-k3s-v1.29.13-cves.csv | 27 - docs/csv/report-k3s-v1.29.13-stats.csv | 10 - docs/csv/report-k3s-v1.29.14-cves.csv | 22 + docs/csv/report-k3s-v1.29.14-stats.csv | 10 + docs/csv/report-k3s-v1.30.10-cves.csv | 22 + docs/csv/report-k3s-v1.30.10-stats.csv | 10 + docs/csv/report-k3s-v1.30.9-cves.csv | 27 - docs/csv/report-k3s-v1.30.9-stats.csv | 10 - docs/csv/report-k3s-v1.31.5-cves.csv | 26 - docs/csv/report-k3s-v1.31.5-stats.csv | 10 - docs/csv/report-k3s-v1.31.6-cves.csv | 21 + docs/csv/report-k3s-v1.31.6-stats.csv | 10 + docs/csv/report-k3s-v1.32.1-cves.csv | 26 - docs/csv/report-k3s-v1.32.1-stats.csv | 10 - docs/csv/report-k3s-v1.32.2-cves.csv | 23 + docs/csv/report-k3s-v1.32.2-stats.csv | 10 + docs/csv/report-rancher-v2.10-head-cves.csv | 170 +-- docs/csv/report-rancher-v2.10-head-stats.csv | 32 +- docs/csv/report-rancher-v2.10.2-cves.csv | 87 +- docs/csv/report-rancher-v2.10.2-stats.csv | 26 +- docs/csv/report-rancher-v2.8-head-cves.csv | 108 +- docs/csv/report-rancher-v2.8-head-stats.csv | 28 +- docs/csv/report-rancher-v2.8.12-cves.csv | 108 +- docs/csv/report-rancher-v2.8.12-stats.csv | 28 +- docs/csv/report-rancher-v2.9-head-cves.csv | 144 +- docs/csv/report-rancher-v2.9-head-stats.csv | 30 +- docs/csv/report-rancher-v2.9.6-cves.csv | 87 +- docs/csv/report-rancher-v2.9.6-stats.csv | 26 +- docs/harvester-master.html | 72 - docs/index.html | 24 +- docs/{k3s-v1.32.1.html => k3s-v1.29.14.html} | 160 +-- docs/{k3s-v1.30.9.html => k3s-v1.30.10.html} | 148 +- docs/{k3s-v1.29.13.html => k3s-v1.31.6.html} | 164 +-- docs/{k3s-v1.31.5.html => k3s-v1.32.2.html} | 132 +- docs/rancher-v2.10-head.html | 1282 +----------------- docs/rancher-v2.10.2.html | 940 +------------ docs/rancher-v2.8-head.html | 1232 ++--------------- docs/rancher-v2.8.12.html | 1232 ++--------------- docs/rancher-v2.9-head.html | 1228 +---------------- docs/rancher-v2.9.6.html | 940 +------------ 42 files changed, 833 insertions(+), 7879 deletions(-) delete mode 100644 docs/csv/report-k3s-v1.29.13-cves.csv delete mode 100644 docs/csv/report-k3s-v1.29.13-stats.csv create mode 100644 docs/csv/report-k3s-v1.29.14-cves.csv create mode 100644 docs/csv/report-k3s-v1.29.14-stats.csv create mode 100644 docs/csv/report-k3s-v1.30.10-cves.csv create mode 100644 docs/csv/report-k3s-v1.30.10-stats.csv delete mode 100644 docs/csv/report-k3s-v1.30.9-cves.csv delete mode 100644 docs/csv/report-k3s-v1.30.9-stats.csv delete mode 100644 docs/csv/report-k3s-v1.31.5-cves.csv delete mode 100644 docs/csv/report-k3s-v1.31.5-stats.csv create mode 100644 docs/csv/report-k3s-v1.31.6-cves.csv create mode 100644 docs/csv/report-k3s-v1.31.6-stats.csv delete mode 100644 docs/csv/report-k3s-v1.32.1-cves.csv delete mode 100644 docs/csv/report-k3s-v1.32.1-stats.csv create mode 100644 docs/csv/report-k3s-v1.32.2-cves.csv create mode 100644 docs/csv/report-k3s-v1.32.2-stats.csv rename docs/{k3s-v1.32.1.html => k3s-v1.29.14.html} (81%) rename docs/{k3s-v1.30.9.html => k3s-v1.30.10.html} (81%) rename docs/{k3s-v1.29.13.html => k3s-v1.31.6.html} (78%) rename docs/{k3s-v1.31.5.html => k3s-v1.32.2.html} (83%) diff --git a/docs/csv/report-harvester-master-cves.csv b/docs/csv/report-harvester-master-cves.csv index f4e1839..3b5201c 100644 --- a/docs/csv/report-harvester-master-cves.csv +++ b/docs/csv/report-harvester-master-cves.csv @@ -158,14 +158,8 @@ rancher/harvester-node-disk-manager-webhook:master-head,harvester/master,libxml2 rancher/harvester-node-disk-manager:master-head,harvester/master,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-node-disk-manager:master-head (sles 15.6),4.13-150000.4.11.1,false,affected, rancher/harvester-node-disk-manager:master-head,harvester/master,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-node-disk-manager:master-head (sles 15.6),4.13-150000.4.11.1,false,affected, rancher/harvester-node-disk-manager:master-head,harvester/master,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/harvester-node-disk-manager:master-head (sles 15.6),2.10.3-150500.5.20.1,false,affected, -rancher/harvester-node-manager-webhook:master-head,harvester/master,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-node-manager-webhook:master-head (sles 15.6),4.13-150000.4.11.1,false,affected, -rancher/harvester-node-manager-webhook:master-head,harvester/master,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-node-manager-webhook:master-head (sles 15.6),4.13-150000.4.11.1,false,affected, -rancher/harvester-node-manager-webhook:master-head,harvester/master,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/harvester-node-manager-webhook:master-head (sles 15.6),2.10.3-150500.5.20.1,false,affected, rancher/harvester-node-manager-webhook:master-head,harvester/master,golang.org/x/crypto,v0.22.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/harvester-node-manager-webhook,0.31.0,false,not_affected,vulnerable_code_not_present rancher/harvester-node-manager-webhook:master-head,harvester/master,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/harvester-node-manager-webhook,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/harvester-node-manager:master-head,harvester/master,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-node-manager:master-head (sles 15.6),4.13-150000.4.11.1,false,affected, -rancher/harvester-node-manager:master-head,harvester/master,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-node-manager:master-head (sles 15.6),4.13-150000.4.11.1,false,affected, -rancher/harvester-node-manager:master-head,harvester/master,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/harvester-node-manager:master-head (sles 15.6),2.10.3-150500.5.20.1,false,affected, rancher/harvester-node-manager:master-head,harvester/master,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/harvester-node-manager,0.33.0,false,not_affected,vulnerable_code_not_present rancher/harvester-pcidevices:v1.5.0-dev.0,harvester/master,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-pcidevices:v1.5.0-dev.0 (sles 15.6),4.13-150000.4.11.1,false,affected, rancher/harvester-pcidevices:v1.5.0-dev.0,harvester/master,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-pcidevices:v1.5.0-dev.0 (sles 15.6),4.13-150000.4.11.1,false,affected, diff --git a/docs/csv/report-harvester-master-stats.csv b/docs/csv/report-harvester-master-stats.csv index e6beb9a..1ec4a39 100644 --- a/docs/csv/report-harvester-master-stats.csv +++ b/docs/csv/report-harvester-master-stats.csv @@ -39,8 +39,8 @@ rancher/harvester-network-webhook:master-head,0,4,4 rancher/harvester-networkfs-manager:main-head,0,3,3 rancher/harvester-node-disk-manager-webhook:master-head,0,3,3 rancher/harvester-node-disk-manager:master-head,0,3,3 -rancher/harvester-node-manager-webhook:master-head,0,3,3 -rancher/harvester-node-manager:master-head,0,3,3 +rancher/harvester-node-manager-webhook:master-head,0,0,0 +rancher/harvester-node-manager:master-head,0,0,0 rancher/harvester-pcidevices:v1.5.0-dev.0,0,2,2 rancher/harvester-seeder:v1.5.0-dev.0,0,3,3 rancher/harvester-upgrade:master-head,0,0,0 diff --git a/docs/csv/report-k3s-v1.29.13-cves.csv b/docs/csv/report-k3s-v1.29.13-cves.csv deleted file mode 100644 index 731980a..0000000 --- a/docs/csv/report-k3s-v1.29.13-cves.csv +++ /dev/null @@ -1,27 +0,0 @@ -image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification -rancher/k3s:v1.29.13-k3s1,k3s/v1.29.13,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.29.13-k3s1,k3s/v1.29.13,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.45.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,bin/k3s,0.46.0,false,affected, -rancher/k3s:v1.29.13-k3s1,k3s/v1.29.13,golang.org/x/crypto,v0.17.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.29.13-k3s1,k3s/v1.29.13,golang.org/x/net,v0.17.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/k3s:v1.29.13-k3s1,k3s/v1.29.13,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/helm,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-lb:v0.4.9,k3s/v1.29.13,libcrypto3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-lb:v0.4.9,k3s/v1.29.13,libssl3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.29.13,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.29.13,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.29.13,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/local-path-provisioner,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/local-path-provisioner:v0.0.30,k3s/v1.29.13,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/local-path-provisioner,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.29.13,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.29.13,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-library-traefik:2.11.18,k3s/v1.29.13,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-library-traefik:2.11.18,k3s/v1.29.13,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.29.13,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.29.13,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.29.13,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.29.13-stats.csv b/docs/csv/report-k3s-v1.29.13-stats.csv deleted file mode 100644 index 4292f01..0000000 --- a/docs/csv/report-k3s-v1.29.13-stats.csv +++ /dev/null @@ -1,10 +0,0 @@ -image,critical,high,total -rancher/k3s:v1.29.13-k3s1,0,1,1 -rancher/klipper-helm:v0.9.3-build20241008,0,0,0 -rancher/klipper-lb:v0.4.9,0,0,0 -rancher/local-path-provisioner:v0.0.30,0,0,0 -rancher/mirrored-coredns-coredns:1.12.0,0,0,0 -rancher/mirrored-library-busybox:1.36.1,0,0,0 -rancher/mirrored-library-traefik:2.11.18,0,2,2 -rancher/mirrored-metrics-server:v0.7.2,0,0,0 -rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-k3s-v1.29.14-cves.csv b/docs/csv/report-k3s-v1.29.14-cves.csv new file mode 100644 index 0000000..b7edacb --- /dev/null +++ b/docs/csv/report-k3s-v1.29.14-cves.csv @@ -0,0 +1,22 @@ +image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification +rancher/k3s:v1.29.14-k3s1,k3s/v1.29.14,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_present +rancher/k3s:v1.29.14-k3s1,k3s/v1.29.14,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.45.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,bin/k3s,0.46.0,false,affected, +rancher/k3s:v1.29.14-k3s1,k3s/v1.29.14,golang.org/x/crypto,v0.17.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/k3s:v1.29.14-k3s1,k3s/v1.29.14,golang.org/x/net,v0.17.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/k3s:v1.29.14-k3s1,k3s/v1.29.14,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.29.14,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.29.14,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.29.14,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.29.14,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.29.14,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.29.14,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.29.14,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-lb:v0.4.10,k3s/v1.29.14,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-lb:v0.4.10,k3s/v1.29.14,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.29.14,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.29.14,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.29.14,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.29.14,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.29.14,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.29.14,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.29.14,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.29.14-stats.csv b/docs/csv/report-k3s-v1.29.14-stats.csv new file mode 100644 index 0000000..e90723c --- /dev/null +++ b/docs/csv/report-k3s-v1.29.14-stats.csv @@ -0,0 +1,10 @@ +image,critical,high,total +rancher/k3s:v1.29.14-k3s1,0,1,1 +rancher/klipper-helm:v0.9.4-build20250113,0,0,0 +rancher/klipper-lb:v0.4.10,0,0,0 +rancher/local-path-provisioner:v0.0.31,0,0,0 +rancher/mirrored-coredns-coredns:1.12.0,0,0,0 +rancher/mirrored-library-busybox:1.36.1,0,0,0 +rancher/mirrored-library-traefik:2.11.20,0,0,0 +rancher/mirrored-metrics-server:v0.7.2,0,0,0 +rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-k3s-v1.30.10-cves.csv b/docs/csv/report-k3s-v1.30.10-cves.csv new file mode 100644 index 0000000..b9de295 --- /dev/null +++ b/docs/csv/report-k3s-v1.30.10-cves.csv @@ -0,0 +1,22 @@ +image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification +rancher/k3s:v1.30.10-k3s1,k3s/v1.30.10,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_present +rancher/k3s:v1.30.10-k3s1,k3s/v1.30.10,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.45.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,bin/k3s,0.46.0,false,affected, +rancher/k3s:v1.30.10-k3s1,k3s/v1.30.10,golang.org/x/crypto,v0.17.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/k3s:v1.30.10-k3s1,k3s/v1.30.10,golang.org/x/net,v0.17.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/k3s:v1.30.10-k3s1,k3s/v1.30.10,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.30.10,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.30.10,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.30.10,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.30.10,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.30.10,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.30.10,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.30.10,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-lb:v0.4.10,k3s/v1.30.10,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-lb:v0.4.10,k3s/v1.30.10,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.30.10,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.30.10,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.30.10,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.30.10,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.30.10,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.30.10,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.30.10,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.30.10-stats.csv b/docs/csv/report-k3s-v1.30.10-stats.csv new file mode 100644 index 0000000..b07a474 --- /dev/null +++ b/docs/csv/report-k3s-v1.30.10-stats.csv @@ -0,0 +1,10 @@ +image,critical,high,total +rancher/k3s:v1.30.10-k3s1,0,1,1 +rancher/klipper-helm:v0.9.4-build20250113,0,0,0 +rancher/klipper-lb:v0.4.10,0,0,0 +rancher/local-path-provisioner:v0.0.31,0,0,0 +rancher/mirrored-coredns-coredns:1.12.0,0,0,0 +rancher/mirrored-library-busybox:1.36.1,0,0,0 +rancher/mirrored-library-traefik:2.11.20,0,0,0 +rancher/mirrored-metrics-server:v0.7.2,0,0,0 +rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-k3s-v1.30.9-cves.csv b/docs/csv/report-k3s-v1.30.9-cves.csv deleted file mode 100644 index 039c244..0000000 --- a/docs/csv/report-k3s-v1.30.9-cves.csv +++ /dev/null @@ -1,27 +0,0 @@ -image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification -rancher/k3s:v1.30.9-k3s1,k3s/v1.30.9,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.30.9-k3s1,k3s/v1.30.9,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.45.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,bin/k3s,0.46.0,false,affected, -rancher/k3s:v1.30.9-k3s1,k3s/v1.30.9,golang.org/x/crypto,v0.17.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.30.9-k3s1,k3s/v1.30.9,golang.org/x/net,v0.17.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/k3s:v1.30.9-k3s1,k3s/v1.30.9,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/helm,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-lb:v0.4.9,k3s/v1.30.9,libcrypto3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-lb:v0.4.9,k3s/v1.30.9,libssl3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.30.9,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.30.9,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.30.9,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/local-path-provisioner,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/local-path-provisioner:v0.0.30,k3s/v1.30.9,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/local-path-provisioner,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.30.9,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.30.9,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-library-traefik:2.11.18,k3s/v1.30.9,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-library-traefik:2.11.18,k3s/v1.30.9,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.30.9,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.30.9,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.30.9,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.30.9-stats.csv b/docs/csv/report-k3s-v1.30.9-stats.csv deleted file mode 100644 index d084ef6..0000000 --- a/docs/csv/report-k3s-v1.30.9-stats.csv +++ /dev/null @@ -1,10 +0,0 @@ -image,critical,high,total -rancher/k3s:v1.30.9-k3s1,0,1,1 -rancher/klipper-helm:v0.9.3-build20241008,0,0,0 -rancher/klipper-lb:v0.4.9,0,0,0 -rancher/local-path-provisioner:v0.0.30,0,0,0 -rancher/mirrored-coredns-coredns:1.12.0,0,0,0 -rancher/mirrored-library-busybox:1.36.1,0,0,0 -rancher/mirrored-library-traefik:2.11.18,0,2,2 -rancher/mirrored-metrics-server:v0.7.2,0,0,0 -rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-k3s-v1.31.5-cves.csv b/docs/csv/report-k3s-v1.31.5-cves.csv deleted file mode 100644 index 1ca5134..0000000 --- a/docs/csv/report-k3s-v1.31.5-cves.csv +++ /dev/null @@ -1,26 +0,0 @@ -image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification -rancher/k3s:v1.31.5-k3s1,k3s/v1.31.5,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.31.5-k3s1,k3s/v1.31.5,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.31.5-k3s1,k3s/v1.31.5,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/k3s:v1.31.5-k3s1,k3s/v1.31.5,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/helm,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-lb:v0.4.9,k3s/v1.31.5,libcrypto3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-lb:v0.4.9,k3s/v1.31.5,libssl3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.31.5,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.31.5,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.31.5,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/local-path-provisioner,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/local-path-provisioner:v0.0.30,k3s/v1.31.5,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/local-path-provisioner,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.31.5,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.31.5,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-library-traefik:2.11.18,k3s/v1.31.5,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-library-traefik:2.11.18,k3s/v1.31.5,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.31.5,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.31.5,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.31.5,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.31.5-stats.csv b/docs/csv/report-k3s-v1.31.5-stats.csv deleted file mode 100644 index aad6a04..0000000 --- a/docs/csv/report-k3s-v1.31.5-stats.csv +++ /dev/null @@ -1,10 +0,0 @@ -image,critical,high,total -rancher/k3s:v1.31.5-k3s1,0,0,0 -rancher/klipper-helm:v0.9.3-build20241008,0,0,0 -rancher/klipper-lb:v0.4.9,0,0,0 -rancher/local-path-provisioner:v0.0.30,0,0,0 -rancher/mirrored-coredns-coredns:1.12.0,0,0,0 -rancher/mirrored-library-busybox:1.36.1,0,0,0 -rancher/mirrored-library-traefik:2.11.18,0,2,2 -rancher/mirrored-metrics-server:v0.7.2,0,0,0 -rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-k3s-v1.31.6-cves.csv b/docs/csv/report-k3s-v1.31.6-cves.csv new file mode 100644 index 0000000..18cf92a --- /dev/null +++ b/docs/csv/report-k3s-v1.31.6-cves.csv @@ -0,0 +1,21 @@ +image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification +rancher/k3s:v1.31.6-k3s1,k3s/v1.31.6,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/k3s:v1.31.6-k3s1,k3s/v1.31.6,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/k3s:v1.31.6-k3s1,k3s/v1.31.6,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/k3s:v1.31.6-k3s1,k3s/v1.31.6,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.31.6,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.31.6,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.31.6,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.31.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.31.6,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.31.6,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.31.6,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-lb:v0.4.10,k3s/v1.31.6,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-lb:v0.4.10,k3s/v1.31.6,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.31.6,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.31.6,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.31.6,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.31.6,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.31.6,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.31.6,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.31.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.31.6-stats.csv b/docs/csv/report-k3s-v1.31.6-stats.csv new file mode 100644 index 0000000..8382897 --- /dev/null +++ b/docs/csv/report-k3s-v1.31.6-stats.csv @@ -0,0 +1,10 @@ +image,critical,high,total +rancher/k3s:v1.31.6-k3s1,0,0,0 +rancher/klipper-helm:v0.9.4-build20250113,0,0,0 +rancher/klipper-lb:v0.4.10,0,0,0 +rancher/local-path-provisioner:v0.0.31,0,0,0 +rancher/mirrored-coredns-coredns:1.12.0,0,0,0 +rancher/mirrored-library-busybox:1.36.1,0,0,0 +rancher/mirrored-library-traefik:2.11.20,0,0,0 +rancher/mirrored-metrics-server:v0.7.2,0,0,0 +rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-k3s-v1.32.1-cves.csv b/docs/csv/report-k3s-v1.32.1-cves.csv deleted file mode 100644 index b3f4a40..0000000 --- a/docs/csv/report-k3s-v1.32.1-cves.csv +++ /dev/null @@ -1,26 +0,0 @@ -image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification -rancher/k3s:v1.32.1-k3s1,k3s/v1.32.1,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.32.1-k3s1,k3s/v1.32.1,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.32.1-k3s1,k3s/v1.32.1,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/k3s:v1.32.1-k3s1,k3s/v1.32.1,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/helm,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-lb:v0.4.9,k3s/v1.32.1,libcrypto3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-lb:v0.4.9,k3s/v1.32.1,libssl3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.32.1,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.32.1,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.32.1,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/local-path-provisioner,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/local-path-provisioner:v0.0.30,k3s/v1.32.1,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/local-path-provisioner,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.32.1,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.32.1,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-library-traefik:2.11.18,k3s/v1.32.1,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-library-traefik:2.11.18,k3s/v1.32.1,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.32.1,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.32.1,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.32.1,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.32.1-stats.csv b/docs/csv/report-k3s-v1.32.1-stats.csv deleted file mode 100644 index 4f78c08..0000000 --- a/docs/csv/report-k3s-v1.32.1-stats.csv +++ /dev/null @@ -1,10 +0,0 @@ -image,critical,high,total -rancher/k3s:v1.32.1-k3s1,0,0,0 -rancher/klipper-helm:v0.9.3-build20241008,0,0,0 -rancher/klipper-lb:v0.4.9,0,0,0 -rancher/local-path-provisioner:v0.0.30,0,0,0 -rancher/mirrored-coredns-coredns:1.12.0,0,0,0 -rancher/mirrored-library-busybox:1.36.1,0,0,0 -rancher/mirrored-library-traefik:2.11.18,0,2,2 -rancher/mirrored-metrics-server:v0.7.2,0,0,0 -rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-k3s-v1.32.2-cves.csv b/docs/csv/report-k3s-v1.32.2-cves.csv new file mode 100644 index 0000000..6cb895c --- /dev/null +++ b/docs/csv/report-k3s-v1.32.2-cves.csv @@ -0,0 +1,23 @@ +image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification +rancher/k3s:v1.32.2-k3s1,k3s/v1.32.2,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/k3s:v1.32.2-k3s1,k3s/v1.32.2,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/k3s:v1.32.2-k3s1,k3s/v1.32.2,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/k3s:v1.32.2-k3s1,k3s/v1.32.2,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.32.2,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.32.2,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.32.2,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.32.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.32.2,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.32.2,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.32.2,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-lb:v0.4.10,k3s/v1.32.2,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-lb:v0.4.10,k3s/v1.32.2,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.32.2,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.32.2,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.32.2,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.32.2,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-library-traefik:3.3.2,k3s/v1.32.2,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:3.3.2 (alpine 3.21.2),3.3.3-r0,true,affected, +rancher/mirrored-library-traefik:3.3.2,k3s/v1.32.2,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:3.3.2 (alpine 3.21.2),3.3.3-r0,true,affected, +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.32.2,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.32.2,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.32.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.32.2-stats.csv b/docs/csv/report-k3s-v1.32.2-stats.csv new file mode 100644 index 0000000..cc25351 --- /dev/null +++ b/docs/csv/report-k3s-v1.32.2-stats.csv @@ -0,0 +1,10 @@ +image,critical,high,total +rancher/k3s:v1.32.2-k3s1,0,0,0 +rancher/klipper-helm:v0.9.4-build20250113,0,0,0 +rancher/klipper-lb:v0.4.10,0,0,0 +rancher/local-path-provisioner:v0.0.31,0,0,0 +rancher/mirrored-coredns-coredns:1.12.0,0,0,0 +rancher/mirrored-library-busybox:1.36.1,0,0,0 +rancher/mirrored-library-traefik:3.3.2,0,2,2 +rancher/mirrored-metrics-server:v0.7.2,0,0,0 +rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-rancher-v2.10-head-cves.csv b/docs/csv/report-rancher-v2.10-head-cves.csv index 144e502..26600e0 100644 --- a/docs/csv/report-rancher-v2.10-head-cves.csv +++ b/docs/csv/report-rancher-v2.10-head-cves.csv @@ -599,58 +599,37 @@ rancher/hyperkube:v1.28.15-rancher1,rancher/v2.10-head,go.opentelemetry.io/contr rancher/hyperkube:v1.28.15-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp,v0.35.1,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_in_execute_path rancher/hyperkube:v1.28.15-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path rancher/hyperkube:v1.28.15-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-apiserver,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,github.com/opencontainers/runc,v1.1.10,gobinary,CVE-2024-21626,HIGH,https://avd.aquasec.com/nvd/cve-2024-21626,usr/local/bin/kube-controller-manager,1.1.12,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-controller-manager,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,github.com/opencontainers/runc,v1.1.10,gobinary,CVE-2024-21626,HIGH,https://avd.aquasec.com/nvd/cve-2024-21626,usr/local/bin/kube-proxy,1.1.12,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-proxy,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-scheduler,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,github.com/docker/docker,v20.10.24+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,github.com/opencontainers/runc,v1.1.10,gobinary,CVE-2024-21626,HIGH,https://avd.aquasec.com/nvd/cve-2024-21626,usr/local/bin/kubelet,1.1.12,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kubelet,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-apiserver,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-controller-manager,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-proxy,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-scheduler,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,github.com/docker/docker,v20.10.27+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kubelet,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,github.com/docker/docker,v20.10.27+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-apiserver,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-controller-manager,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-proxy,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-scheduler,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,github.com/docker/docker,v20.10.27+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kubelet,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,github.com/docker/docker,v20.10.27+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path rancher/istio-installer:1.19.6-rancher1,rancher/v2.10-head,glibc,2.31-150300.63.1,sles,SUSE-SU-2024:1375-1,HIGH,,rancher/istio-installer:1.19.6-rancher1 (sles 15.3),2.31-150300.74.1,false,affected, rancher/istio-installer:1.19.6-rancher1,rancher/v2.10-head,glibc,2.31-150300.63.1,sles,SUSE-SU-2024:1895-1,HIGH,,rancher/istio-installer:1.19.6-rancher1 (sles 15.3),2.31-150300.83.1,false,affected, rancher/istio-installer:1.19.6-rancher1,rancher/v2.10-head,krb5,1.19.2-150300.13.1,sles,SUSE-SU-2024:1001-1,HIGH,,rancher/istio-installer:1.19.6-rancher1 (sles 15.3),1.19.2-150300.16.1,false,affected, @@ -2237,21 +2216,6 @@ rancher/mirrored-library-traefik:2.11.8,rancher/v2.10-head,libssl3,3.3.2-r0,alpi rancher/mirrored-library-traefik:2.11.8,rancher/v2.10-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/traefik,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-library-traefik:2.11.8,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/traefik,0.31.0,true,not_affected,vulnerable_code_not_in_execute_path rancher/mirrored-library-traefik:2.11.8,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/traefik,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,glib2-tools,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,libgio-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,libgobject-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/backing-image-manager,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10-head,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-attacher,1.11.1,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10-head,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-attacher,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10-head,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-attacher,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -2309,10 +2273,8 @@ rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10-head,stdlib,v1.16, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10-head,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-attacher,1.20.0,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10-head,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-attacher,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10-head,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.10-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.10-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.10-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-node-driver-registrar,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.10-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-attacher:v4.8.0,rancher/v2.10-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,rancher/v2.10-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.10-head,github.com/prometheus/client_golang,v1.11.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-node-driver-registrar,1.11.1,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.10-head,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-node-driver-registrar,0.0.0-20220906165146-f3363e06e74c,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.10-head,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-41723,HIGH,https://avd.aquasec.com/nvd/cve-2022-41723,csi-node-driver-registrar,0.7.0,true,affected, @@ -2430,10 +2392,7 @@ rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10-head,stdlib,v1. rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10-head,stdlib,v1.15,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-provisioner,1.20.0,true,affected, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10-head,stdlib,v1.15,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-provisioner,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10-head,stdlib,v1.15,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.10-head,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.10-head,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.10-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.10-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-resizer,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,rancher/v2.10-head,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10-head,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-resizer,1.11.1,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10-head,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-resizer,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10-head,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-resizer,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -2491,65 +2450,8 @@ rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10-head,stdlib,v1.16,g rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10-head,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-resizer,1.20.0,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10-head,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-resizer,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10-head,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.10-head,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-snapshotter,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.10-head,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.10-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,livenessprobe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.10-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10-head,bind-utils,9.18.28-150600.3.3.1,sles,SUSE-SU-2025:0355-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),9.18.33-150600.3.6.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10-head,golang.org/x/crypto,v0.28.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/sbin/longhorn-manager,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/sbin/longhorn-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,longhorn-share-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10-head,libxml2-tools,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10-head,nginx,1.21.5-150600.8.4,sles,SUSE-SU-2025:0283-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),1.21.5-150600.10.3.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/bin/yq,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10-head,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/yq,0.33.0,true,not_affected,vulnerable_code_not_in_execute_path +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,rancher/v2.10-head,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-livenessprobe:v2.15.0,rancher/v2.10-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.10-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2022-4450,HIGH,https://avd.aquasec.com/nvd/cve-2022-4450,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.10-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0215,HIGH,https://avd.aquasec.com/nvd/cve-2023-0215,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.10-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, diff --git a/docs/csv/report-rancher-v2.10-head-stats.csv b/docs/csv/report-rancher-v2.10-head-stats.csv index e60cb82..8c0af1c 100644 --- a/docs/csv/report-rancher-v2.10-head-stats.csv +++ b/docs/csv/report-rancher-v2.10-head-stats.csv @@ -58,9 +58,9 @@ rancher/harvester-csi-driver:v0.1.7,0,8,8 rancher/harvester-csi-driver:v0.2.1,0,4,4 rancher/harvester-csi-driver:v0.2.2,0,4,4 rancher/hyperkube:v1.28.15-rancher1,0,0,0 -rancher/hyperkube:v1.29.13-rancher1,0,0,0 -rancher/hyperkube:v1.30.9-rancher1,0,0,0 -rancher/hyperkube:v1.31.5-rancher1,0,0,0 +rancher/hyperkube:v1.29.14-rancher1,0,0,0 +rancher/hyperkube:v1.30.10-rancher1,0,0,0 +rancher/hyperkube:v1.31.6-rancher1,0,0,0 rancher/istio-installer:1.19.6-rancher1,0,22,22 rancher/istio-installer:1.21.1-rancher1,0,22,22 rancher/istio-installer:1.22.1-rancher1,0,22,22 @@ -253,23 +253,23 @@ rancher/mirrored-library-traefik:2.10.7,0,2,2 rancher/mirrored-library-traefik:2.11.10,0,2,2 rancher/mirrored-library-traefik:2.11.18,0,2,2 rancher/mirrored-library-traefik:2.11.8,0,2,2 -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,0,14,14 +rancher/mirrored-longhornio-backing-image-manager:v1.7.3,0,0,0 rancher/mirrored-longhornio-csi-attacher:v3.2.1,0,33,33 -rancher/mirrored-longhornio-csi-attacher:v4.7.0,0,0,0 -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,0,0,0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0,0,0,0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,0,0,0 rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,0,39,39 -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,0,0,0 -rancher/mirrored-longhornio-csi-resizer:v1.12.0,0,0,0 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,0,0,0 +rancher/mirrored-longhornio-csi-resizer:v1.13.1,0,0,0 rancher/mirrored-longhornio-csi-resizer:v1.2.0,0,33,33 -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,0,0,0 -rancher/mirrored-longhornio-livenessprobe:v2.14.0,0,0,0 -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,0,5,5 -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,0,4,4 -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,0,6,6 -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,0,4,4 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,0,0,0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0,0,0,0 +rancher/mirrored-longhornio-longhorn-engine:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-share-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-ui:v1.7.3,0,0,0 +rancher/mirrored-longhornio-support-bundle-kit:v0.0.51,0,0,0 rancher/mirrored-messagebird-sachet:0.3.1,1,24,25 rancher/mirrored-metrics-server:v0.7.0,0,0,0 rancher/mirrored-metrics-server:v0.7.1,0,0,0 diff --git a/docs/csv/report-rancher-v2.10.2-cves.csv b/docs/csv/report-rancher-v2.10.2-cves.csv index 8c13fda..7d04f5a 100644 --- a/docs/csv/report-rancher-v2.10.2-cves.csv +++ b/docs/csv/report-rancher-v2.10.2-cves.csv @@ -2237,21 +2237,6 @@ rancher/mirrored-library-traefik:2.11.8,rancher/v2.10.2,libssl3,3.3.2-r0,alpine, rancher/mirrored-library-traefik:2.11.8,rancher/v2.10.2,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/traefik,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-library-traefik:2.11.8,rancher/v2.10.2,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/traefik,0.31.0,true,not_affected,vulnerable_code_not_in_execute_path rancher/mirrored-library-traefik:2.11.8,rancher/v2.10.2,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/traefik,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,glib2-tools,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,libgio-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,libgobject-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/backing-image-manager,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10.2,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-attacher,1.11.1,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10.2,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-attacher,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10.2,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-attacher,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -2309,10 +2294,8 @@ rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10.2,stdlib,v1.16,gob rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10.2,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-attacher,1.20.0,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10.2,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-attacher,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10.2,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.10.2,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.10.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.10.2,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-node-driver-registrar,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.10.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-attacher:v4.8.0,rancher/v2.10.2,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,rancher/v2.10.2,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.10.2,github.com/prometheus/client_golang,v1.11.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-node-driver-registrar,1.11.1,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.10.2,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-node-driver-registrar,0.0.0-20220906165146-f3363e06e74c,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.10.2,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-41723,HIGH,https://avd.aquasec.com/nvd/cve-2022-41723,csi-node-driver-registrar,0.7.0,true,affected, @@ -2430,10 +2413,7 @@ rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10.2,stdlib,v1.15, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10.2,stdlib,v1.15,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-provisioner,1.20.0,true,affected, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10.2,stdlib,v1.15,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-provisioner,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10.2,stdlib,v1.15,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.10.2,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.10.2,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.10.2,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.10.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-resizer,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,rancher/v2.10.2,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10.2,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-resizer,1.11.1,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10.2,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-resizer,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10.2,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-resizer,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -2491,65 +2471,8 @@ rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10.2,stdlib,v1.16,gobi rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10.2,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-resizer,1.20.0,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10.2,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-resizer,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10.2,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.10.2,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-snapshotter,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.10.2,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.10.2,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,livenessprobe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.10.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10.2,bind-utils,9.18.28-150600.3.3.1,sles,SUSE-SU-2025:0355-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),9.18.33-150600.3.6.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10.2,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10.2,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10.2,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10.2,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10.2,golang.org/x/crypto,v0.28.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/sbin/longhorn-manager,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/sbin/longhorn-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10.2,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10.2,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10.2,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10.2,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,longhorn-share-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10.2,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10.2,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10.2,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10.2,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10.2,libxml2-tools,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10.2,nginx,1.21.5-150600.8.4,sles,SUSE-SU-2025:0283-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),1.21.5-150600.10.3.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10.2,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10.2,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10.2,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10.2,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10.2,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/bin/yq,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10.2,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/yq,0.33.0,true,not_affected,vulnerable_code_not_in_execute_path +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,rancher/v2.10.2,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-livenessprobe:v2.15.0,rancher/v2.10.2,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.10.2,libcrypto1.1,1.1.1n-r0,alpine,CVE-2022-4450,HIGH,https://avd.aquasec.com/nvd/cve-2022-4450,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.10.2,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0215,HIGH,https://avd.aquasec.com/nvd/cve-2023-0215,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.10.2,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, diff --git a/docs/csv/report-rancher-v2.10.2-stats.csv b/docs/csv/report-rancher-v2.10.2-stats.csv index c60cd7e..96564b4 100644 --- a/docs/csv/report-rancher-v2.10.2-stats.csv +++ b/docs/csv/report-rancher-v2.10.2-stats.csv @@ -253,23 +253,23 @@ rancher/mirrored-library-traefik:2.10.7,0,2,2 rancher/mirrored-library-traefik:2.11.10,0,2,2 rancher/mirrored-library-traefik:2.11.18,0,2,2 rancher/mirrored-library-traefik:2.11.8,0,2,2 -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,0,14,14 +rancher/mirrored-longhornio-backing-image-manager:v1.7.3,0,0,0 rancher/mirrored-longhornio-csi-attacher:v3.2.1,0,33,33 -rancher/mirrored-longhornio-csi-attacher:v4.7.0,0,0,0 -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,0,0,0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0,0,0,0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,0,0,0 rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,0,39,39 -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,0,0,0 -rancher/mirrored-longhornio-csi-resizer:v1.12.0,0,0,0 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,0,0,0 +rancher/mirrored-longhornio-csi-resizer:v1.13.1,0,0,0 rancher/mirrored-longhornio-csi-resizer:v1.2.0,0,33,33 -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,0,0,0 -rancher/mirrored-longhornio-livenessprobe:v2.14.0,0,0,0 -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,0,5,5 -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,0,4,4 -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,0,6,6 -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,0,4,4 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,0,0,0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0,0,0,0 +rancher/mirrored-longhornio-longhorn-engine:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-share-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-ui:v1.7.3,0,0,0 +rancher/mirrored-longhornio-support-bundle-kit:v0.0.51,0,0,0 rancher/mirrored-messagebird-sachet:0.3.1,1,24,25 rancher/mirrored-metrics-server:v0.7.0,0,0,0 rancher/mirrored-metrics-server:v0.7.1,0,0,0 diff --git a/docs/csv/report-rancher-v2.8-head-cves.csv b/docs/csv/report-rancher-v2.8-head-cves.csv index 5b68a69..aabf68e 100644 --- a/docs/csv/report-rancher-v2.8-head-cves.csv +++ b/docs/csv/report-rancher-v2.8-head-cves.csv @@ -1852,13 +1852,12 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,cpio,2.11-28.amzn2,amaz rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,curl,7.79.1-7.amzn2.0.1,amazon,CVE-2023-38039,HIGH,https://avd.aquasec.com/nvd/cve-2023-38039,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),8.3.0-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,curl,7.79.1-7.amzn2.0.1,amazon,CVE-2023-38545,HIGH,https://avd.aquasec.com/nvd/cve-2023-38545,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),8.3.0-1.amzn2.0.4,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,curl,7.79.1-7.amzn2.0.1,amazon,CVE-2023-38546,HIGH,https://avd.aquasec.com/nvd/cve-2023-38546,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),8.3.0-1.amzn2.0.4,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,expat,2.1.0-15.amzn2.0.2,amazon,CVE-2022-23990,CRITICAL,https://avd.aquasec.com/nvd/cve-2022-23990,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.1.0-15.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,expat,2.1.0-15.amzn2.0.2,amazon,CVE-2022-25313,CRITICAL,https://avd.aquasec.com/nvd/cve-2022-25313,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.1.0-15.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,expat,2.1.0-15.amzn2.0.2,amazon,CVE-2024-45490,HIGH,https://avd.aquasec.com/nvd/cve-2024-45490,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.1.0-15.amzn2.0.4,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2018-16428,HIGH,https://avd.aquasec.com/nvd/cve-2018-16428,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2018-16429,HIGH,https://avd.aquasec.com/nvd/cve-2018-16429,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2020-35457,HIGH,https://avd.aquasec.com/nvd/cve-2020-35457,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.8,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2021-28153,HIGH,https://avd.aquasec.com/nvd/cve-2021-28153,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.7,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2021-3800,HIGH,https://avd.aquasec.com/nvd/cve-2021-3800,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.5,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2023-32636,HIGH,https://avd.aquasec.com/nvd/cve-2023-32636,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2023-32643,HIGH,https://avd.aquasec.com/nvd/cve-2023-32643,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glibc,2.26-62.amzn2,amazon,CVE-2024-2961,HIGH,https://avd.aquasec.com/nvd/cve-2024-2961,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.26-64.amzn2.0.1,true,affected, @@ -1905,11 +1904,9 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,openssl-libs,1:1.0.2k-2 rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,openssl-libs,1:1.0.2k-24.amzn2.0.4,amazon,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),1:1.0.2k-24.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python,2.7.18-1.amzn2.0.5,amazon,CVE-2022-45061,HIGH,https://avd.aquasec.com/nvd/cve-2022-45061,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python,2.7.18-1.amzn2.0.5,amazon,CVE-2022-48565,HIGH,https://avd.aquasec.com/nvd/cve-2022-48565,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.7,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python,2.7.18-1.amzn2.0.5,amazon,CVE-2023-24329,HIGH,https://avd.aquasec.com/nvd/cve-2023-24329,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python,2.7.18-1.amzn2.0.5,amazon,CVE-2023-27043,HIGH,https://avd.aquasec.com/nvd/cve-2023-27043,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2022-45061,HIGH,https://avd.aquasec.com/nvd/cve-2022-45061,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2022-48565,HIGH,https://avd.aquasec.com/nvd/cve-2022-48565,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.7,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2023-24329,HIGH,https://avd.aquasec.com/nvd/cve-2023-24329,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2023-27043,HIGH,https://avd.aquasec.com/nvd/cve-2023-27043,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,sqlite,3.7.17-8.amzn2.1.1,amazon,CVE-2022-35737,HIGH,https://avd.aquasec.com/nvd/cve-2022-35737,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),3.7.17-8.amzn2.1.2,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2021-3236,HIGH,https://avd.aquasec.com/nvd/cve-2021-3236,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1882-1.amzn2.0.1,true,affected, @@ -1929,17 +1926,15 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.am rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3324,HIGH,https://avd.aquasec.com/nvd/cve-2022-3324,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3352,HIGH,https://avd.aquasec.com/nvd/cve-2022-3352,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3491,HIGH,https://avd.aquasec.com/nvd/cve-2022-3491,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4141,HIGH,https://avd.aquasec.com/nvd/cve-2022-4141,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1006-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4292,HIGH,https://avd.aquasec.com/nvd/cve-2022-4292,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-47024,HIGH,https://avd.aquasec.com/nvd/cve-2022-47024,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0049,HIGH,https://avd.aquasec.com/nvd/cve-2023-0049,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0051,HIGH,https://avd.aquasec.com/nvd/cve-2023-0051,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0054,HIGH,https://avd.aquasec.com/nvd/cve-2023-0054,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0288,HIGH,https://avd.aquasec.com/nvd/cve-2023-0288,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0433,HIGH,https://avd.aquasec.com/nvd/cve-2023-0433,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0512,HIGH,https://avd.aquasec.com/nvd/cve-2023-0512,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1127,HIGH,https://avd.aquasec.com/nvd/cve-2023-1127,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1367-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1170,HIGH,https://avd.aquasec.com/nvd/cve-2023-1170,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1175,HIGH,https://avd.aquasec.com/nvd/cve-2023-1175,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1264,HIGH,https://avd.aquasec.com/nvd/cve-2023-1264,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1355,HIGH,https://avd.aquasec.com/nvd/cve-2023-1355,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2609,HIGH,https://avd.aquasec.com/nvd/cve-2023-2609,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2610,HIGH,https://avd.aquasec.com/nvd/cve-2023-2610,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-4733,HIGH,https://avd.aquasec.com/nvd/cve-2023-4733,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1882-1.amzn2.0.1,true,affected, @@ -1967,17 +1962,15 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1 rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3324,HIGH,https://avd.aquasec.com/nvd/cve-2022-3324,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3352,HIGH,https://avd.aquasec.com/nvd/cve-2022-3352,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3491,HIGH,https://avd.aquasec.com/nvd/cve-2022-3491,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4141,HIGH,https://avd.aquasec.com/nvd/cve-2022-4141,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1006-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4292,HIGH,https://avd.aquasec.com/nvd/cve-2022-4292,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-47024,HIGH,https://avd.aquasec.com/nvd/cve-2022-47024,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0049,HIGH,https://avd.aquasec.com/nvd/cve-2023-0049,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0051,HIGH,https://avd.aquasec.com/nvd/cve-2023-0051,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0054,HIGH,https://avd.aquasec.com/nvd/cve-2023-0054,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0288,HIGH,https://avd.aquasec.com/nvd/cve-2023-0288,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0433,HIGH,https://avd.aquasec.com/nvd/cve-2023-0433,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0512,HIGH,https://avd.aquasec.com/nvd/cve-2023-0512,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1127,HIGH,https://avd.aquasec.com/nvd/cve-2023-1127,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1367-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1170,HIGH,https://avd.aquasec.com/nvd/cve-2023-1170,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1175,HIGH,https://avd.aquasec.com/nvd/cve-2023-1175,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1264,HIGH,https://avd.aquasec.com/nvd/cve-2023-1264,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1355,HIGH,https://avd.aquasec.com/nvd/cve-2023-1355,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2609,HIGH,https://avd.aquasec.com/nvd/cve-2023-2609,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2610,HIGH,https://avd.aquasec.com/nvd/cve-2023-2610,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-4733,HIGH,https://avd.aquasec.com/nvd/cve-2023-4733,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1882-1.amzn2.0.1,true,affected, @@ -4314,21 +4307,6 @@ rancher/mirrored-library-traefik:2.11.8,rancher/v2.8-head,libssl3,3.3.2-r0,alpin rancher/mirrored-library-traefik:2.11.8,rancher/v2.8-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/traefik,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-library-traefik:2.11.8,rancher/v2.8-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/traefik,0.31.0,true,not_affected,vulnerable_code_not_in_execute_path rancher/mirrored-library-traefik:2.11.8,rancher/v2.8-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/traefik,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,glib2-tools,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,libgio-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,libgobject-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/backing-image-manager,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8-head,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-attacher,1.11.1,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8-head,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-attacher,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8-head,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-attacher,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4386,10 +4364,8 @@ rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8-head,stdlib,v1.16,g rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8-head,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-attacher,1.20.0,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8-head,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-attacher,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8-head,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.8-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.8-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.8-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-node-driver-registrar,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.8-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-attacher:v4.8.0,rancher/v2.8-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,rancher/v2.8-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.8-head,github.com/prometheus/client_golang,v1.11.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-node-driver-registrar,1.11.1,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.8-head,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-node-driver-registrar,0.0.0-20220906165146-f3363e06e74c,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.8-head,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-41723,HIGH,https://avd.aquasec.com/nvd/cve-2022-41723,csi-node-driver-registrar,0.7.0,true,affected, @@ -4507,10 +4483,7 @@ rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8-head,stdlib,v1.1 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8-head,stdlib,v1.15,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-provisioner,1.20.0,true,affected, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8-head,stdlib,v1.15,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-provisioner,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8-head,stdlib,v1.15,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.8-head,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.8-head,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.8-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.8-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-resizer,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,rancher/v2.8-head,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8-head,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-resizer,1.11.1,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8-head,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-resizer,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8-head,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-resizer,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4568,65 +4541,8 @@ rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8-head,stdlib,v1.16,go rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8-head,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-resizer,1.20.0,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8-head,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-resizer,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8-head,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.8-head,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-snapshotter,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.8-head,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.8-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,livenessprobe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.8-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8-head,bind-utils,9.18.28-150600.3.3.1,sles,SUSE-SU-2025:0355-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),9.18.33-150600.3.6.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8-head,golang.org/x/crypto,v0.28.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/sbin/longhorn-manager,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/sbin/longhorn-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,longhorn-share-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8-head,libxml2-tools,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8-head,nginx,1.21.5-150600.8.4,sles,SUSE-SU-2025:0283-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),1.21.5-150600.10.3.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/bin/yq,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8-head,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/yq,0.33.0,true,not_affected,vulnerable_code_not_in_execute_path +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,rancher/v2.8-head,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-livenessprobe:v2.15.0,rancher/v2.8-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.8-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2022-4450,HIGH,https://avd.aquasec.com/nvd/cve-2022-4450,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.8-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0215,HIGH,https://avd.aquasec.com/nvd/cve-2023-0215,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.8-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, diff --git a/docs/csv/report-rancher-v2.8-head-stats.csv b/docs/csv/report-rancher-v2.8-head-stats.csv index 90d8e8e..38dcbe7 100644 --- a/docs/csv/report-rancher-v2.8-head-stats.csv +++ b/docs/csv/report-rancher-v2.8-head-stats.csv @@ -87,7 +87,7 @@ rancher/longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/longhornio-csi-provisioner:v2.1.2,0,39,39 rancher/longhornio-csi-resizer:v1.2.0,0,33,33 rancher/machine:v0.15.0-rancher118,0,8,8 -rancher/mirrored-amazon-aws-cli:2.9.14,1,144,145 +rancher/mirrored-amazon-aws-cli:2.9.14,2,136,138 rancher/mirrored-appscode-kubed:v0.13.2,1,25,26 rancher/mirrored-bci-busybox:15.6.24.2,0,0,0 rancher/mirrored-bci-micro:15.6.24.2,0,0,0 @@ -252,23 +252,23 @@ rancher/mirrored-library-registry:2.8.1,3,17,20 rancher/mirrored-library-traefik:2.10.7,0,2,2 rancher/mirrored-library-traefik:2.11.10,0,2,2 rancher/mirrored-library-traefik:2.11.8,0,2,2 -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,0,14,14 +rancher/mirrored-longhornio-backing-image-manager:v1.7.3,0,0,0 rancher/mirrored-longhornio-csi-attacher:v3.2.1,0,33,33 -rancher/mirrored-longhornio-csi-attacher:v4.7.0,0,0,0 -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,0,0,0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0,0,0,0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,0,0,0 rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,0,39,39 -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,0,0,0 -rancher/mirrored-longhornio-csi-resizer:v1.12.0,0,0,0 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,0,0,0 +rancher/mirrored-longhornio-csi-resizer:v1.13.1,0,0,0 rancher/mirrored-longhornio-csi-resizer:v1.2.0,0,33,33 -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,0,0,0 -rancher/mirrored-longhornio-livenessprobe:v2.14.0,0,0,0 -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,0,5,5 -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,0,4,4 -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,0,6,6 -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,0,4,4 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,0,0,0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0,0,0,0 +rancher/mirrored-longhornio-longhorn-engine:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-share-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-ui:v1.7.3,0,0,0 +rancher/mirrored-longhornio-support-bundle-kit:v0.0.51,0,0,0 rancher/mirrored-messagebird-sachet:0.3.1,1,24,25 rancher/mirrored-metrics-server:v0.6.2,1,19,20 rancher/mirrored-metrics-server:v0.6.3,0,9,9 diff --git a/docs/csv/report-rancher-v2.8.12-cves.csv b/docs/csv/report-rancher-v2.8.12-cves.csv index 727b969..e6fbf96 100644 --- a/docs/csv/report-rancher-v2.8.12-cves.csv +++ b/docs/csv/report-rancher-v2.8.12-cves.csv @@ -1852,13 +1852,12 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,cpio,2.11-28.amzn2,amazon rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,curl,7.79.1-7.amzn2.0.1,amazon,CVE-2023-38039,HIGH,https://avd.aquasec.com/nvd/cve-2023-38039,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),8.3.0-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,curl,7.79.1-7.amzn2.0.1,amazon,CVE-2023-38545,HIGH,https://avd.aquasec.com/nvd/cve-2023-38545,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),8.3.0-1.amzn2.0.4,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,curl,7.79.1-7.amzn2.0.1,amazon,CVE-2023-38546,HIGH,https://avd.aquasec.com/nvd/cve-2023-38546,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),8.3.0-1.amzn2.0.4,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,expat,2.1.0-15.amzn2.0.2,amazon,CVE-2022-23990,CRITICAL,https://avd.aquasec.com/nvd/cve-2022-23990,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.1.0-15.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,expat,2.1.0-15.amzn2.0.2,amazon,CVE-2022-25313,CRITICAL,https://avd.aquasec.com/nvd/cve-2022-25313,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.1.0-15.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,expat,2.1.0-15.amzn2.0.2,amazon,CVE-2024-45490,HIGH,https://avd.aquasec.com/nvd/cve-2024-45490,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.1.0-15.amzn2.0.4,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2018-16428,HIGH,https://avd.aquasec.com/nvd/cve-2018-16428,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2018-16429,HIGH,https://avd.aquasec.com/nvd/cve-2018-16429,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2020-35457,HIGH,https://avd.aquasec.com/nvd/cve-2020-35457,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.8,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2021-28153,HIGH,https://avd.aquasec.com/nvd/cve-2021-28153,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.7,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2021-3800,HIGH,https://avd.aquasec.com/nvd/cve-2021-3800,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.5,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2023-32636,HIGH,https://avd.aquasec.com/nvd/cve-2023-32636,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2023-32643,HIGH,https://avd.aquasec.com/nvd/cve-2023-32643,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glibc,2.26-62.amzn2,amazon,CVE-2024-2961,HIGH,https://avd.aquasec.com/nvd/cve-2024-2961,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.26-64.amzn2.0.1,true,affected, @@ -1905,11 +1904,9 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,openssl-libs,1:1.0.2k-24. rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,openssl-libs,1:1.0.2k-24.amzn2.0.4,amazon,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),1:1.0.2k-24.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python,2.7.18-1.amzn2.0.5,amazon,CVE-2022-45061,HIGH,https://avd.aquasec.com/nvd/cve-2022-45061,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python,2.7.18-1.amzn2.0.5,amazon,CVE-2022-48565,HIGH,https://avd.aquasec.com/nvd/cve-2022-48565,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.7,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python,2.7.18-1.amzn2.0.5,amazon,CVE-2023-24329,HIGH,https://avd.aquasec.com/nvd/cve-2023-24329,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python,2.7.18-1.amzn2.0.5,amazon,CVE-2023-27043,HIGH,https://avd.aquasec.com/nvd/cve-2023-27043,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2022-45061,HIGH,https://avd.aquasec.com/nvd/cve-2022-45061,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2022-48565,HIGH,https://avd.aquasec.com/nvd/cve-2022-48565,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.7,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2023-24329,HIGH,https://avd.aquasec.com/nvd/cve-2023-24329,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2023-27043,HIGH,https://avd.aquasec.com/nvd/cve-2023-27043,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,sqlite,3.7.17-8.amzn2.1.1,amazon,CVE-2022-35737,HIGH,https://avd.aquasec.com/nvd/cve-2022-35737,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),3.7.17-8.amzn2.1.2,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2021-3236,HIGH,https://avd.aquasec.com/nvd/cve-2021-3236,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1882-1.amzn2.0.1,true,affected, @@ -1929,17 +1926,15 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3324,HIGH,https://avd.aquasec.com/nvd/cve-2022-3324,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3352,HIGH,https://avd.aquasec.com/nvd/cve-2022-3352,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3491,HIGH,https://avd.aquasec.com/nvd/cve-2022-3491,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4141,HIGH,https://avd.aquasec.com/nvd/cve-2022-4141,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1006-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4292,HIGH,https://avd.aquasec.com/nvd/cve-2022-4292,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-47024,HIGH,https://avd.aquasec.com/nvd/cve-2022-47024,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0049,HIGH,https://avd.aquasec.com/nvd/cve-2023-0049,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0051,HIGH,https://avd.aquasec.com/nvd/cve-2023-0051,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0054,HIGH,https://avd.aquasec.com/nvd/cve-2023-0054,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0288,HIGH,https://avd.aquasec.com/nvd/cve-2023-0288,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0433,HIGH,https://avd.aquasec.com/nvd/cve-2023-0433,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0512,HIGH,https://avd.aquasec.com/nvd/cve-2023-0512,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1127,HIGH,https://avd.aquasec.com/nvd/cve-2023-1127,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1367-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1170,HIGH,https://avd.aquasec.com/nvd/cve-2023-1170,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1175,HIGH,https://avd.aquasec.com/nvd/cve-2023-1175,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1264,HIGH,https://avd.aquasec.com/nvd/cve-2023-1264,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1355,HIGH,https://avd.aquasec.com/nvd/cve-2023-1355,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2609,HIGH,https://avd.aquasec.com/nvd/cve-2023-2609,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2610,HIGH,https://avd.aquasec.com/nvd/cve-2023-2610,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-4733,HIGH,https://avd.aquasec.com/nvd/cve-2023-4733,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1882-1.amzn2.0.1,true,affected, @@ -1967,17 +1962,15 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.a rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3324,HIGH,https://avd.aquasec.com/nvd/cve-2022-3324,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3352,HIGH,https://avd.aquasec.com/nvd/cve-2022-3352,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3491,HIGH,https://avd.aquasec.com/nvd/cve-2022-3491,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4141,HIGH,https://avd.aquasec.com/nvd/cve-2022-4141,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1006-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4292,HIGH,https://avd.aquasec.com/nvd/cve-2022-4292,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-47024,HIGH,https://avd.aquasec.com/nvd/cve-2022-47024,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0049,HIGH,https://avd.aquasec.com/nvd/cve-2023-0049,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0051,HIGH,https://avd.aquasec.com/nvd/cve-2023-0051,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0054,HIGH,https://avd.aquasec.com/nvd/cve-2023-0054,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0288,HIGH,https://avd.aquasec.com/nvd/cve-2023-0288,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0433,HIGH,https://avd.aquasec.com/nvd/cve-2023-0433,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0512,HIGH,https://avd.aquasec.com/nvd/cve-2023-0512,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1127,HIGH,https://avd.aquasec.com/nvd/cve-2023-1127,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1367-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1170,HIGH,https://avd.aquasec.com/nvd/cve-2023-1170,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1175,HIGH,https://avd.aquasec.com/nvd/cve-2023-1175,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1264,HIGH,https://avd.aquasec.com/nvd/cve-2023-1264,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1355,HIGH,https://avd.aquasec.com/nvd/cve-2023-1355,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2609,HIGH,https://avd.aquasec.com/nvd/cve-2023-2609,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2610,HIGH,https://avd.aquasec.com/nvd/cve-2023-2610,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-4733,HIGH,https://avd.aquasec.com/nvd/cve-2023-4733,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1882-1.amzn2.0.1,true,affected, @@ -4314,21 +4307,6 @@ rancher/mirrored-library-traefik:2.11.8,rancher/v2.8.12,libssl3,3.3.2-r0,alpine, rancher/mirrored-library-traefik:2.11.8,rancher/v2.8.12,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/traefik,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-library-traefik:2.11.8,rancher/v2.8.12,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/traefik,0.31.0,true,not_affected,vulnerable_code_not_in_execute_path rancher/mirrored-library-traefik:2.11.8,rancher/v2.8.12,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/traefik,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,glib2-tools,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,libgio-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,libgobject-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/backing-image-manager,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8.12,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-attacher,1.11.1,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8.12,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-attacher,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8.12,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-attacher,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4386,10 +4364,8 @@ rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8.12,stdlib,v1.16,gob rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8.12,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-attacher,1.20.0,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8.12,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-attacher,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8.12,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.8.12,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.8.12,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.8.12,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-node-driver-registrar,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.8.12,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-attacher:v4.8.0,rancher/v2.8.12,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,rancher/v2.8.12,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.8.12,github.com/prometheus/client_golang,v1.11.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-node-driver-registrar,1.11.1,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.8.12,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-node-driver-registrar,0.0.0-20220906165146-f3363e06e74c,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.8.12,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-41723,HIGH,https://avd.aquasec.com/nvd/cve-2022-41723,csi-node-driver-registrar,0.7.0,true,affected, @@ -4507,10 +4483,7 @@ rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8.12,stdlib,v1.15, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8.12,stdlib,v1.15,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-provisioner,1.20.0,true,affected, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8.12,stdlib,v1.15,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-provisioner,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8.12,stdlib,v1.15,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.8.12,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.8.12,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.8.12,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.8.12,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-resizer,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,rancher/v2.8.12,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8.12,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-resizer,1.11.1,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8.12,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-resizer,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8.12,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-resizer,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4568,65 +4541,8 @@ rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8.12,stdlib,v1.16,gobi rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8.12,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-resizer,1.20.0,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8.12,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-resizer,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8.12,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.8.12,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-snapshotter,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.8.12,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.8.12,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,livenessprobe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.8.12,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8.12,bind-utils,9.18.28-150600.3.3.1,sles,SUSE-SU-2025:0355-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),9.18.33-150600.3.6.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8.12,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8.12,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8.12,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8.12,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8.12,golang.org/x/crypto,v0.28.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/sbin/longhorn-manager,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/sbin/longhorn-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8.12,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8.12,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8.12,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8.12,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,longhorn-share-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8.12,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8.12,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8.12,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8.12,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8.12,libxml2-tools,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8.12,nginx,1.21.5-150600.8.4,sles,SUSE-SU-2025:0283-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),1.21.5-150600.10.3.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8.12,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8.12,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8.12,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8.12,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8.12,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/bin/yq,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8.12,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/yq,0.33.0,true,not_affected,vulnerable_code_not_in_execute_path +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,rancher/v2.8.12,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-livenessprobe:v2.15.0,rancher/v2.8.12,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.8.12,libcrypto1.1,1.1.1n-r0,alpine,CVE-2022-4450,HIGH,https://avd.aquasec.com/nvd/cve-2022-4450,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.8.12,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0215,HIGH,https://avd.aquasec.com/nvd/cve-2023-0215,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.8.12,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, diff --git a/docs/csv/report-rancher-v2.8.12-stats.csv b/docs/csv/report-rancher-v2.8.12-stats.csv index 55a6a38..90f948f 100644 --- a/docs/csv/report-rancher-v2.8.12-stats.csv +++ b/docs/csv/report-rancher-v2.8.12-stats.csv @@ -87,7 +87,7 @@ rancher/longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/longhornio-csi-provisioner:v2.1.2,0,39,39 rancher/longhornio-csi-resizer:v1.2.0,0,33,33 rancher/machine:v0.15.0-rancher118,0,8,8 -rancher/mirrored-amazon-aws-cli:2.9.14,1,144,145 +rancher/mirrored-amazon-aws-cli:2.9.14,2,136,138 rancher/mirrored-appscode-kubed:v0.13.2,1,25,26 rancher/mirrored-bci-busybox:15.6.24.2,0,0,0 rancher/mirrored-bci-micro:15.6.24.2,0,0,0 @@ -252,23 +252,23 @@ rancher/mirrored-library-registry:2.8.1,3,17,20 rancher/mirrored-library-traefik:2.10.7,0,2,2 rancher/mirrored-library-traefik:2.11.10,0,2,2 rancher/mirrored-library-traefik:2.11.8,0,2,2 -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,0,14,14 +rancher/mirrored-longhornio-backing-image-manager:v1.7.3,0,0,0 rancher/mirrored-longhornio-csi-attacher:v3.2.1,0,33,33 -rancher/mirrored-longhornio-csi-attacher:v4.7.0,0,0,0 -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,0,0,0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0,0,0,0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,0,0,0 rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,0,39,39 -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,0,0,0 -rancher/mirrored-longhornio-csi-resizer:v1.12.0,0,0,0 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,0,0,0 +rancher/mirrored-longhornio-csi-resizer:v1.13.1,0,0,0 rancher/mirrored-longhornio-csi-resizer:v1.2.0,0,33,33 -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,0,0,0 -rancher/mirrored-longhornio-livenessprobe:v2.14.0,0,0,0 -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,0,5,5 -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,0,4,4 -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,0,6,6 -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,0,4,4 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,0,0,0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0,0,0,0 +rancher/mirrored-longhornio-longhorn-engine:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-share-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-ui:v1.7.3,0,0,0 +rancher/mirrored-longhornio-support-bundle-kit:v0.0.51,0,0,0 rancher/mirrored-messagebird-sachet:0.3.1,1,24,25 rancher/mirrored-metrics-server:v0.6.2,1,19,20 rancher/mirrored-metrics-server:v0.6.3,0,9,9 diff --git a/docs/csv/report-rancher-v2.9-head-cves.csv b/docs/csv/report-rancher-v2.9-head-cves.csv index 04c7e32..f5c104a 100644 --- a/docs/csv/report-rancher-v2.9-head-cves.csv +++ b/docs/csv/report-rancher-v2.9-head-cves.csv @@ -1463,45 +1463,24 @@ rancher/hyperkube:v1.28.15-rancher1,rancher/v2.9-head,go.opentelemetry.io/contri rancher/hyperkube:v1.28.15-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp,v0.35.1,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_in_execute_path rancher/hyperkube:v1.28.15-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path rancher/hyperkube:v1.28.15-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-apiserver,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,github.com/opencontainers/runc,v1.1.10,gobinary,CVE-2024-21626,HIGH,https://avd.aquasec.com/nvd/cve-2024-21626,usr/local/bin/kube-controller-manager,1.1.12,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-controller-manager,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,github.com/opencontainers/runc,v1.1.10,gobinary,CVE-2024-21626,HIGH,https://avd.aquasec.com/nvd/cve-2024-21626,usr/local/bin/kube-proxy,1.1.12,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-proxy,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-scheduler,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,github.com/docker/docker,v20.10.24+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,github.com/opencontainers/runc,v1.1.10,gobinary,CVE-2024-21626,HIGH,https://avd.aquasec.com/nvd/cve-2024-21626,usr/local/bin/kubelet,1.1.12,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kubelet,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-apiserver,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-controller-manager,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-proxy,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-scheduler,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,github.com/docker/docker,v20.10.27+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kubelet,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-apiserver,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-controller-manager,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-proxy,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-scheduler,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,github.com/docker/docker,v20.10.27+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kubelet,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path rancher/istio-installer:1.19.6-rancher1,rancher/v2.9-head,glibc,2.31-150300.63.1,sles,SUSE-SU-2024:1375-1,HIGH,,rancher/istio-installer:1.19.6-rancher1 (sles 15.3),2.31-150300.74.1,false,affected, rancher/istio-installer:1.19.6-rancher1,rancher/v2.9-head,glibc,2.31-150300.63.1,sles,SUSE-SU-2024:1895-1,HIGH,,rancher/istio-installer:1.19.6-rancher1 (sles 15.3),2.31-150300.83.1,false,affected, rancher/istio-installer:1.19.6-rancher1,rancher/v2.9-head,krb5,1.19.2-150300.13.1,sles,SUSE-SU-2024:1001-1,HIGH,,rancher/istio-installer:1.19.6-rancher1 (sles 15.3),1.19.2-150300.16.1,false,affected, @@ -4381,21 +4360,6 @@ rancher/mirrored-library-traefik:2.11.8,rancher/v2.9-head,libssl3,3.3.2-r0,alpin rancher/mirrored-library-traefik:2.11.8,rancher/v2.9-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/traefik,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-library-traefik:2.11.8,rancher/v2.9-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/traefik,0.31.0,true,not_affected,vulnerable_code_not_in_execute_path rancher/mirrored-library-traefik:2.11.8,rancher/v2.9-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/traefik,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,glib2-tools,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,libgio-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,libgobject-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/backing-image-manager,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9-head,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-attacher,1.11.1,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9-head,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-attacher,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9-head,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-attacher,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4453,10 +4417,8 @@ rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9-head,stdlib,v1.16,g rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9-head,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-attacher,1.20.0,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9-head,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-attacher,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9-head,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.9-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.9-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.9-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-node-driver-registrar,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.9-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-attacher:v4.8.0,rancher/v2.9-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,rancher/v2.9-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.9-head,github.com/prometheus/client_golang,v1.11.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-node-driver-registrar,1.11.1,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.9-head,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-node-driver-registrar,0.0.0-20220906165146-f3363e06e74c,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.9-head,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-41723,HIGH,https://avd.aquasec.com/nvd/cve-2022-41723,csi-node-driver-registrar,0.7.0,true,affected, @@ -4574,10 +4536,7 @@ rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9-head,stdlib,v1.1 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9-head,stdlib,v1.15,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-provisioner,1.20.0,true,affected, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9-head,stdlib,v1.15,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-provisioner,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9-head,stdlib,v1.15,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.9-head,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.9-head,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.9-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.9-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-resizer,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,rancher/v2.9-head,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9-head,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-resizer,1.11.1,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9-head,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-resizer,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9-head,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-resizer,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4635,65 +4594,8 @@ rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9-head,stdlib,v1.16,go rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9-head,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-resizer,1.20.0,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9-head,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-resizer,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9-head,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.9-head,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-snapshotter,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.9-head,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.9-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,livenessprobe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.9-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9-head,bind-utils,9.18.28-150600.3.3.1,sles,SUSE-SU-2025:0355-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),9.18.33-150600.3.6.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9-head,golang.org/x/crypto,v0.28.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/sbin/longhorn-manager,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/sbin/longhorn-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,longhorn-share-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9-head,libxml2-tools,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9-head,nginx,1.21.5-150600.8.4,sles,SUSE-SU-2025:0283-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),1.21.5-150600.10.3.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/bin/yq,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9-head,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/yq,0.33.0,true,not_affected,vulnerable_code_not_in_execute_path +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,rancher/v2.9-head,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-livenessprobe:v2.15.0,rancher/v2.9-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.9-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2022-4450,HIGH,https://avd.aquasec.com/nvd/cve-2022-4450,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.9-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0215,HIGH,https://avd.aquasec.com/nvd/cve-2023-0215,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.9-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, diff --git a/docs/csv/report-rancher-v2.9-head-stats.csv b/docs/csv/report-rancher-v2.9-head-stats.csv index 9f56573..0b4d9c2 100644 --- a/docs/csv/report-rancher-v2.9-head-stats.csv +++ b/docs/csv/report-rancher-v2.9-head-stats.csv @@ -90,8 +90,8 @@ rancher/harvester-csi-driver:v0.2.1,0,4,4 rancher/harvester-csi-driver:v0.2.2,0,4,4 rancher/hyperkube:v1.27.16-rancher1,0,0,0 rancher/hyperkube:v1.28.15-rancher1,0,0,0 -rancher/hyperkube:v1.29.13-rancher1,0,0,0 -rancher/hyperkube:v1.30.9-rancher1,0,0,0 +rancher/hyperkube:v1.29.14-rancher1,0,0,0 +rancher/hyperkube:v1.30.10-rancher1,0,0,0 rancher/istio-installer:1.19.6-rancher1,0,22,22 rancher/istio-installer:1.21.1-rancher1,0,22,22 rancher/istio-installer:1.22.1-rancher1,0,22,22 @@ -340,23 +340,23 @@ rancher/mirrored-library-traefik:2.10.7,0,2,2 rancher/mirrored-library-traefik:2.11.10,0,2,2 rancher/mirrored-library-traefik:2.11.18,0,2,2 rancher/mirrored-library-traefik:2.11.8,0,2,2 -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,0,14,14 +rancher/mirrored-longhornio-backing-image-manager:v1.7.3,0,0,0 rancher/mirrored-longhornio-csi-attacher:v3.2.1,0,33,33 -rancher/mirrored-longhornio-csi-attacher:v4.7.0,0,0,0 -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,0,0,0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0,0,0,0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,0,0,0 rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,0,39,39 -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,0,0,0 -rancher/mirrored-longhornio-csi-resizer:v1.12.0,0,0,0 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,0,0,0 +rancher/mirrored-longhornio-csi-resizer:v1.13.1,0,0,0 rancher/mirrored-longhornio-csi-resizer:v1.2.0,0,33,33 -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,0,0,0 -rancher/mirrored-longhornio-livenessprobe:v2.14.0,0,0,0 -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,0,5,5 -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,0,4,4 -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,0,6,6 -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,0,4,4 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,0,0,0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0,0,0,0 +rancher/mirrored-longhornio-longhorn-engine:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-share-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-ui:v1.7.3,0,0,0 +rancher/mirrored-longhornio-support-bundle-kit:v0.0.51,0,0,0 rancher/mirrored-messagebird-sachet:0.3.1,1,24,25 rancher/mirrored-metrics-server:v0.6.3,0,9,9 rancher/mirrored-metrics-server:v0.7.0,0,0,0 diff --git a/docs/csv/report-rancher-v2.9.6-cves.csv b/docs/csv/report-rancher-v2.9.6-cves.csv index 3550a48..7ff2e0c 100644 --- a/docs/csv/report-rancher-v2.9.6-cves.csv +++ b/docs/csv/report-rancher-v2.9.6-cves.csv @@ -4381,21 +4381,6 @@ rancher/mirrored-library-traefik:2.11.8,rancher/v2.9.6,libssl3,3.3.2-r0,alpine,C rancher/mirrored-library-traefik:2.11.8,rancher/v2.9.6,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/traefik,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-library-traefik:2.11.8,rancher/v2.9.6,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/traefik,0.31.0,true,not_affected,vulnerable_code_not_in_execute_path rancher/mirrored-library-traefik:2.11.8,rancher/v2.9.6,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/traefik,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,glib2-tools,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,libgio-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,libgobject-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/backing-image-manager,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9.6,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-attacher,1.11.1,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9.6,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-attacher,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9.6,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-attacher,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4453,10 +4438,8 @@ rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9.6,stdlib,v1.16,gobi rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9.6,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-attacher,1.20.0,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9.6,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-attacher,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9.6,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.9.6,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.9.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.9.6,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-node-driver-registrar,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.9.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-attacher:v4.8.0,rancher/v2.9.6,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,rancher/v2.9.6,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.9.6,github.com/prometheus/client_golang,v1.11.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-node-driver-registrar,1.11.1,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.9.6,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-node-driver-registrar,0.0.0-20220906165146-f3363e06e74c,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.9.6,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-41723,HIGH,https://avd.aquasec.com/nvd/cve-2022-41723,csi-node-driver-registrar,0.7.0,true,affected, @@ -4574,10 +4557,7 @@ rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9.6,stdlib,v1.15,g rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9.6,stdlib,v1.15,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-provisioner,1.20.0,true,affected, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9.6,stdlib,v1.15,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-provisioner,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9.6,stdlib,v1.15,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.9.6,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.9.6,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.9.6,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.9.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-resizer,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,rancher/v2.9.6,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9.6,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-resizer,1.11.1,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9.6,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-resizer,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9.6,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-resizer,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4635,65 +4615,8 @@ rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9.6,stdlib,v1.16,gobin rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9.6,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-resizer,1.20.0,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9.6,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-resizer,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9.6,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.9.6,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-snapshotter,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.9.6,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.9.6,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,livenessprobe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.9.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9.6,bind-utils,9.18.28-150600.3.3.1,sles,SUSE-SU-2025:0355-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),9.18.33-150600.3.6.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9.6,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9.6,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9.6,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9.6,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9.6,golang.org/x/crypto,v0.28.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/sbin/longhorn-manager,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/sbin/longhorn-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9.6,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9.6,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9.6,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9.6,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,longhorn-share-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9.6,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9.6,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9.6,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9.6,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9.6,libxml2-tools,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9.6,nginx,1.21.5-150600.8.4,sles,SUSE-SU-2025:0283-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),1.21.5-150600.10.3.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9.6,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9.6,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9.6,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9.6,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9.6,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/bin/yq,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9.6,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/yq,0.33.0,true,not_affected,vulnerable_code_not_in_execute_path +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,rancher/v2.9.6,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-livenessprobe:v2.15.0,rancher/v2.9.6,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.9.6,libcrypto1.1,1.1.1n-r0,alpine,CVE-2022-4450,HIGH,https://avd.aquasec.com/nvd/cve-2022-4450,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.9.6,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0215,HIGH,https://avd.aquasec.com/nvd/cve-2023-0215,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.9.6,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, diff --git a/docs/csv/report-rancher-v2.9.6-stats.csv b/docs/csv/report-rancher-v2.9.6-stats.csv index 4c694eb..edc348c 100644 --- a/docs/csv/report-rancher-v2.9.6-stats.csv +++ b/docs/csv/report-rancher-v2.9.6-stats.csv @@ -340,23 +340,23 @@ rancher/mirrored-library-traefik:2.10.7,0,2,2 rancher/mirrored-library-traefik:2.11.10,0,2,2 rancher/mirrored-library-traefik:2.11.18,0,2,2 rancher/mirrored-library-traefik:2.11.8,0,2,2 -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,0,14,14 +rancher/mirrored-longhornio-backing-image-manager:v1.7.3,0,0,0 rancher/mirrored-longhornio-csi-attacher:v3.2.1,0,33,33 -rancher/mirrored-longhornio-csi-attacher:v4.7.0,0,0,0 -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,0,0,0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0,0,0,0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,0,0,0 rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,0,39,39 -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,0,0,0 -rancher/mirrored-longhornio-csi-resizer:v1.12.0,0,0,0 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,0,0,0 +rancher/mirrored-longhornio-csi-resizer:v1.13.1,0,0,0 rancher/mirrored-longhornio-csi-resizer:v1.2.0,0,33,33 -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,0,0,0 -rancher/mirrored-longhornio-livenessprobe:v2.14.0,0,0,0 -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,0,5,5 -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,0,4,4 -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,0,6,6 -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,0,4,4 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,0,0,0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0,0,0,0 +rancher/mirrored-longhornio-longhorn-engine:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-share-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-ui:v1.7.3,0,0,0 +rancher/mirrored-longhornio-support-bundle-kit:v0.0.51,0,0,0 rancher/mirrored-messagebird-sachet:0.3.1,1,24,25 rancher/mirrored-metrics-server:v0.6.3,0,9,9 rancher/mirrored-metrics-server:v0.7.0,0,0,0 diff --git a/docs/harvester-master.html b/docs/harvester-master.html index 58a5776..d57f066 100644 --- a/docs/harvester-master.html +++ b/docs/harvester-master.html @@ -1983,42 +1983,6 @@