From 0fac816bdc7d749b5b4b4223161969420f7e912e Mon Sep 17 00:00:00 2001 From: rancher-security-bot <119513217+rancher-security-bot@users.noreply.github.com> Date: Fri, 28 Feb 2025 06:11:52 +0000 Subject: [PATCH] Update 2025-02-28 --- docs/csv/report-harvester-master-cves.csv | 6 - docs/csv/report-harvester-master-stats.csv | 4 +- docs/csv/report-k3s-v1.29.13-cves.csv | 27 - docs/csv/report-k3s-v1.29.13-stats.csv | 10 - docs/csv/report-k3s-v1.29.14-cves.csv | 22 + docs/csv/report-k3s-v1.29.14-stats.csv | 10 + docs/csv/report-k3s-v1.30.10-cves.csv | 22 + docs/csv/report-k3s-v1.30.10-stats.csv | 10 + docs/csv/report-k3s-v1.30.9-cves.csv | 27 - docs/csv/report-k3s-v1.30.9-stats.csv | 10 - docs/csv/report-k3s-v1.31.5-cves.csv | 26 - docs/csv/report-k3s-v1.31.5-stats.csv | 10 - docs/csv/report-k3s-v1.31.6-cves.csv | 21 + docs/csv/report-k3s-v1.31.6-stats.csv | 10 + docs/csv/report-k3s-v1.32.1-cves.csv | 26 - docs/csv/report-k3s-v1.32.1-stats.csv | 10 - docs/csv/report-k3s-v1.32.2-cves.csv | 23 + docs/csv/report-k3s-v1.32.2-stats.csv | 10 + docs/csv/report-rancher-v2.10-head-cves.csv | 170 +-- docs/csv/report-rancher-v2.10-head-stats.csv | 32 +- docs/csv/report-rancher-v2.10.2-cves.csv | 87 +- docs/csv/report-rancher-v2.10.2-stats.csv | 26 +- docs/csv/report-rancher-v2.8-head-cves.csv | 108 +- docs/csv/report-rancher-v2.8-head-stats.csv | 28 +- docs/csv/report-rancher-v2.8.12-cves.csv | 108 +- docs/csv/report-rancher-v2.8.12-stats.csv | 28 +- docs/csv/report-rancher-v2.9-head-cves.csv | 144 +- docs/csv/report-rancher-v2.9-head-stats.csv | 30 +- docs/csv/report-rancher-v2.9.6-cves.csv | 87 +- docs/csv/report-rancher-v2.9.6-stats.csv | 26 +- docs/harvester-master.html | 72 - docs/index.html | 24 +- docs/{k3s-v1.32.1.html => k3s-v1.29.14.html} | 160 +-- docs/{k3s-v1.30.9.html => k3s-v1.30.10.html} | 148 +- docs/{k3s-v1.29.13.html => k3s-v1.31.6.html} | 164 +-- docs/{k3s-v1.31.5.html => k3s-v1.32.2.html} | 132 +- docs/rancher-v2.10-head.html | 1282 +----------------- docs/rancher-v2.10.2.html | 940 +------------ docs/rancher-v2.8-head.html | 1232 ++--------------- docs/rancher-v2.8.12.html | 1232 ++--------------- docs/rancher-v2.9-head.html | 1228 +---------------- docs/rancher-v2.9.6.html | 940 +------------ 42 files changed, 833 insertions(+), 7879 deletions(-) delete mode 100644 docs/csv/report-k3s-v1.29.13-cves.csv delete mode 100644 docs/csv/report-k3s-v1.29.13-stats.csv create mode 100644 docs/csv/report-k3s-v1.29.14-cves.csv create mode 100644 docs/csv/report-k3s-v1.29.14-stats.csv create mode 100644 docs/csv/report-k3s-v1.30.10-cves.csv create mode 100644 docs/csv/report-k3s-v1.30.10-stats.csv delete mode 100644 docs/csv/report-k3s-v1.30.9-cves.csv delete mode 100644 docs/csv/report-k3s-v1.30.9-stats.csv delete mode 100644 docs/csv/report-k3s-v1.31.5-cves.csv delete mode 100644 docs/csv/report-k3s-v1.31.5-stats.csv create mode 100644 docs/csv/report-k3s-v1.31.6-cves.csv create mode 100644 docs/csv/report-k3s-v1.31.6-stats.csv delete mode 100644 docs/csv/report-k3s-v1.32.1-cves.csv delete mode 100644 docs/csv/report-k3s-v1.32.1-stats.csv create mode 100644 docs/csv/report-k3s-v1.32.2-cves.csv create mode 100644 docs/csv/report-k3s-v1.32.2-stats.csv rename docs/{k3s-v1.32.1.html => k3s-v1.29.14.html} (81%) rename docs/{k3s-v1.30.9.html => k3s-v1.30.10.html} (81%) rename docs/{k3s-v1.29.13.html => k3s-v1.31.6.html} (78%) rename docs/{k3s-v1.31.5.html => k3s-v1.32.2.html} (83%) diff --git a/docs/csv/report-harvester-master-cves.csv b/docs/csv/report-harvester-master-cves.csv index f4e1839..3b5201c 100644 --- a/docs/csv/report-harvester-master-cves.csv +++ b/docs/csv/report-harvester-master-cves.csv @@ -158,14 +158,8 @@ rancher/harvester-node-disk-manager-webhook:master-head,harvester/master,libxml2 rancher/harvester-node-disk-manager:master-head,harvester/master,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-node-disk-manager:master-head (sles 15.6),4.13-150000.4.11.1,false,affected, rancher/harvester-node-disk-manager:master-head,harvester/master,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-node-disk-manager:master-head (sles 15.6),4.13-150000.4.11.1,false,affected, rancher/harvester-node-disk-manager:master-head,harvester/master,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/harvester-node-disk-manager:master-head (sles 15.6),2.10.3-150500.5.20.1,false,affected, -rancher/harvester-node-manager-webhook:master-head,harvester/master,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-node-manager-webhook:master-head (sles 15.6),4.13-150000.4.11.1,false,affected, -rancher/harvester-node-manager-webhook:master-head,harvester/master,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-node-manager-webhook:master-head (sles 15.6),4.13-150000.4.11.1,false,affected, -rancher/harvester-node-manager-webhook:master-head,harvester/master,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/harvester-node-manager-webhook:master-head (sles 15.6),2.10.3-150500.5.20.1,false,affected, rancher/harvester-node-manager-webhook:master-head,harvester/master,golang.org/x/crypto,v0.22.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/harvester-node-manager-webhook,0.31.0,false,not_affected,vulnerable_code_not_present rancher/harvester-node-manager-webhook:master-head,harvester/master,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/harvester-node-manager-webhook,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/harvester-node-manager:master-head,harvester/master,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-node-manager:master-head (sles 15.6),4.13-150000.4.11.1,false,affected, -rancher/harvester-node-manager:master-head,harvester/master,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-node-manager:master-head (sles 15.6),4.13-150000.4.11.1,false,affected, -rancher/harvester-node-manager:master-head,harvester/master,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/harvester-node-manager:master-head (sles 15.6),2.10.3-150500.5.20.1,false,affected, rancher/harvester-node-manager:master-head,harvester/master,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/harvester-node-manager,0.33.0,false,not_affected,vulnerable_code_not_present rancher/harvester-pcidevices:v1.5.0-dev.0,harvester/master,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-pcidevices:v1.5.0-dev.0 (sles 15.6),4.13-150000.4.11.1,false,affected, rancher/harvester-pcidevices:v1.5.0-dev.0,harvester/master,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/harvester-pcidevices:v1.5.0-dev.0 (sles 15.6),4.13-150000.4.11.1,false,affected, diff --git a/docs/csv/report-harvester-master-stats.csv b/docs/csv/report-harvester-master-stats.csv index e6beb9a..1ec4a39 100644 --- a/docs/csv/report-harvester-master-stats.csv +++ b/docs/csv/report-harvester-master-stats.csv @@ -39,8 +39,8 @@ rancher/harvester-network-webhook:master-head,0,4,4 rancher/harvester-networkfs-manager:main-head,0,3,3 rancher/harvester-node-disk-manager-webhook:master-head,0,3,3 rancher/harvester-node-disk-manager:master-head,0,3,3 -rancher/harvester-node-manager-webhook:master-head,0,3,3 -rancher/harvester-node-manager:master-head,0,3,3 +rancher/harvester-node-manager-webhook:master-head,0,0,0 +rancher/harvester-node-manager:master-head,0,0,0 rancher/harvester-pcidevices:v1.5.0-dev.0,0,2,2 rancher/harvester-seeder:v1.5.0-dev.0,0,3,3 rancher/harvester-upgrade:master-head,0,0,0 diff --git a/docs/csv/report-k3s-v1.29.13-cves.csv b/docs/csv/report-k3s-v1.29.13-cves.csv deleted file mode 100644 index 731980a..0000000 --- a/docs/csv/report-k3s-v1.29.13-cves.csv +++ /dev/null @@ -1,27 +0,0 @@ -image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification -rancher/k3s:v1.29.13-k3s1,k3s/v1.29.13,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.29.13-k3s1,k3s/v1.29.13,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.45.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,bin/k3s,0.46.0,false,affected, -rancher/k3s:v1.29.13-k3s1,k3s/v1.29.13,golang.org/x/crypto,v0.17.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.29.13-k3s1,k3s/v1.29.13,golang.org/x/net,v0.17.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/k3s:v1.29.13-k3s1,k3s/v1.29.13,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/helm,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.29.13,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-lb:v0.4.9,k3s/v1.29.13,libcrypto3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-lb:v0.4.9,k3s/v1.29.13,libssl3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.29.13,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.29.13,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.29.13,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/local-path-provisioner,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/local-path-provisioner:v0.0.30,k3s/v1.29.13,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/local-path-provisioner,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.29.13,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.29.13,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-library-traefik:2.11.18,k3s/v1.29.13,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-library-traefik:2.11.18,k3s/v1.29.13,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.29.13,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.29.13,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.29.13,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.29.13-stats.csv b/docs/csv/report-k3s-v1.29.13-stats.csv deleted file mode 100644 index 4292f01..0000000 --- a/docs/csv/report-k3s-v1.29.13-stats.csv +++ /dev/null @@ -1,10 +0,0 @@ -image,critical,high,total -rancher/k3s:v1.29.13-k3s1,0,1,1 -rancher/klipper-helm:v0.9.3-build20241008,0,0,0 -rancher/klipper-lb:v0.4.9,0,0,0 -rancher/local-path-provisioner:v0.0.30,0,0,0 -rancher/mirrored-coredns-coredns:1.12.0,0,0,0 -rancher/mirrored-library-busybox:1.36.1,0,0,0 -rancher/mirrored-library-traefik:2.11.18,0,2,2 -rancher/mirrored-metrics-server:v0.7.2,0,0,0 -rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-k3s-v1.29.14-cves.csv b/docs/csv/report-k3s-v1.29.14-cves.csv new file mode 100644 index 0000000..b7edacb --- /dev/null +++ b/docs/csv/report-k3s-v1.29.14-cves.csv @@ -0,0 +1,22 @@ +image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification +rancher/k3s:v1.29.14-k3s1,k3s/v1.29.14,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_present +rancher/k3s:v1.29.14-k3s1,k3s/v1.29.14,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.45.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,bin/k3s,0.46.0,false,affected, +rancher/k3s:v1.29.14-k3s1,k3s/v1.29.14,golang.org/x/crypto,v0.17.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/k3s:v1.29.14-k3s1,k3s/v1.29.14,golang.org/x/net,v0.17.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/k3s:v1.29.14-k3s1,k3s/v1.29.14,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.29.14,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.29.14,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.29.14,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.29.14,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.29.14,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.29.14,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.29.14,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-lb:v0.4.10,k3s/v1.29.14,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-lb:v0.4.10,k3s/v1.29.14,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.29.14,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.29.14,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.29.14,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.29.14,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.29.14,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.29.14,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.29.14,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.29.14-stats.csv b/docs/csv/report-k3s-v1.29.14-stats.csv new file mode 100644 index 0000000..e90723c --- /dev/null +++ b/docs/csv/report-k3s-v1.29.14-stats.csv @@ -0,0 +1,10 @@ +image,critical,high,total +rancher/k3s:v1.29.14-k3s1,0,1,1 +rancher/klipper-helm:v0.9.4-build20250113,0,0,0 +rancher/klipper-lb:v0.4.10,0,0,0 +rancher/local-path-provisioner:v0.0.31,0,0,0 +rancher/mirrored-coredns-coredns:1.12.0,0,0,0 +rancher/mirrored-library-busybox:1.36.1,0,0,0 +rancher/mirrored-library-traefik:2.11.20,0,0,0 +rancher/mirrored-metrics-server:v0.7.2,0,0,0 +rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-k3s-v1.30.10-cves.csv b/docs/csv/report-k3s-v1.30.10-cves.csv new file mode 100644 index 0000000..b9de295 --- /dev/null +++ b/docs/csv/report-k3s-v1.30.10-cves.csv @@ -0,0 +1,22 @@ +image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification +rancher/k3s:v1.30.10-k3s1,k3s/v1.30.10,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_present +rancher/k3s:v1.30.10-k3s1,k3s/v1.30.10,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.45.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,bin/k3s,0.46.0,false,affected, +rancher/k3s:v1.30.10-k3s1,k3s/v1.30.10,golang.org/x/crypto,v0.17.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/k3s:v1.30.10-k3s1,k3s/v1.30.10,golang.org/x/net,v0.17.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/k3s:v1.30.10-k3s1,k3s/v1.30.10,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.30.10,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.30.10,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.30.10,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.30.10,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.30.10,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.30.10,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.30.10,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-lb:v0.4.10,k3s/v1.30.10,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-lb:v0.4.10,k3s/v1.30.10,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.30.10,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.30.10,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.30.10,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.30.10,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.30.10,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.30.10,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.30.10,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.30.10-stats.csv b/docs/csv/report-k3s-v1.30.10-stats.csv new file mode 100644 index 0000000..b07a474 --- /dev/null +++ b/docs/csv/report-k3s-v1.30.10-stats.csv @@ -0,0 +1,10 @@ +image,critical,high,total +rancher/k3s:v1.30.10-k3s1,0,1,1 +rancher/klipper-helm:v0.9.4-build20250113,0,0,0 +rancher/klipper-lb:v0.4.10,0,0,0 +rancher/local-path-provisioner:v0.0.31,0,0,0 +rancher/mirrored-coredns-coredns:1.12.0,0,0,0 +rancher/mirrored-library-busybox:1.36.1,0,0,0 +rancher/mirrored-library-traefik:2.11.20,0,0,0 +rancher/mirrored-metrics-server:v0.7.2,0,0,0 +rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-k3s-v1.30.9-cves.csv b/docs/csv/report-k3s-v1.30.9-cves.csv deleted file mode 100644 index 039c244..0000000 --- a/docs/csv/report-k3s-v1.30.9-cves.csv +++ /dev/null @@ -1,27 +0,0 @@ -image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification -rancher/k3s:v1.30.9-k3s1,k3s/v1.30.9,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.30.9-k3s1,k3s/v1.30.9,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.45.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,bin/k3s,0.46.0,false,affected, -rancher/k3s:v1.30.9-k3s1,k3s/v1.30.9,golang.org/x/crypto,v0.17.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.30.9-k3s1,k3s/v1.30.9,golang.org/x/net,v0.17.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/k3s:v1.30.9-k3s1,k3s/v1.30.9,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/helm,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.30.9,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-lb:v0.4.9,k3s/v1.30.9,libcrypto3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-lb:v0.4.9,k3s/v1.30.9,libssl3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.30.9,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.30.9,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.30.9,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/local-path-provisioner,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/local-path-provisioner:v0.0.30,k3s/v1.30.9,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/local-path-provisioner,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.30.9,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.30.9,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-library-traefik:2.11.18,k3s/v1.30.9,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-library-traefik:2.11.18,k3s/v1.30.9,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.30.9,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.30.9,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.30.9,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.30.9-stats.csv b/docs/csv/report-k3s-v1.30.9-stats.csv deleted file mode 100644 index d084ef6..0000000 --- a/docs/csv/report-k3s-v1.30.9-stats.csv +++ /dev/null @@ -1,10 +0,0 @@ -image,critical,high,total -rancher/k3s:v1.30.9-k3s1,0,1,1 -rancher/klipper-helm:v0.9.3-build20241008,0,0,0 -rancher/klipper-lb:v0.4.9,0,0,0 -rancher/local-path-provisioner:v0.0.30,0,0,0 -rancher/mirrored-coredns-coredns:1.12.0,0,0,0 -rancher/mirrored-library-busybox:1.36.1,0,0,0 -rancher/mirrored-library-traefik:2.11.18,0,2,2 -rancher/mirrored-metrics-server:v0.7.2,0,0,0 -rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-k3s-v1.31.5-cves.csv b/docs/csv/report-k3s-v1.31.5-cves.csv deleted file mode 100644 index 1ca5134..0000000 --- a/docs/csv/report-k3s-v1.31.5-cves.csv +++ /dev/null @@ -1,26 +0,0 @@ -image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification -rancher/k3s:v1.31.5-k3s1,k3s/v1.31.5,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.31.5-k3s1,k3s/v1.31.5,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.31.5-k3s1,k3s/v1.31.5,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/k3s:v1.31.5-k3s1,k3s/v1.31.5,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/helm,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.31.5,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-lb:v0.4.9,k3s/v1.31.5,libcrypto3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-lb:v0.4.9,k3s/v1.31.5,libssl3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.31.5,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.31.5,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.31.5,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/local-path-provisioner,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/local-path-provisioner:v0.0.30,k3s/v1.31.5,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/local-path-provisioner,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.31.5,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.31.5,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-library-traefik:2.11.18,k3s/v1.31.5,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-library-traefik:2.11.18,k3s/v1.31.5,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.31.5,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.31.5,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.31.5,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.31.5-stats.csv b/docs/csv/report-k3s-v1.31.5-stats.csv deleted file mode 100644 index aad6a04..0000000 --- a/docs/csv/report-k3s-v1.31.5-stats.csv +++ /dev/null @@ -1,10 +0,0 @@ -image,critical,high,total -rancher/k3s:v1.31.5-k3s1,0,0,0 -rancher/klipper-helm:v0.9.3-build20241008,0,0,0 -rancher/klipper-lb:v0.4.9,0,0,0 -rancher/local-path-provisioner:v0.0.30,0,0,0 -rancher/mirrored-coredns-coredns:1.12.0,0,0,0 -rancher/mirrored-library-busybox:1.36.1,0,0,0 -rancher/mirrored-library-traefik:2.11.18,0,2,2 -rancher/mirrored-metrics-server:v0.7.2,0,0,0 -rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-k3s-v1.31.6-cves.csv b/docs/csv/report-k3s-v1.31.6-cves.csv new file mode 100644 index 0000000..18cf92a --- /dev/null +++ b/docs/csv/report-k3s-v1.31.6-cves.csv @@ -0,0 +1,21 @@ +image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification +rancher/k3s:v1.31.6-k3s1,k3s/v1.31.6,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/k3s:v1.31.6-k3s1,k3s/v1.31.6,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/k3s:v1.31.6-k3s1,k3s/v1.31.6,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/k3s:v1.31.6-k3s1,k3s/v1.31.6,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.31.6,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.31.6,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.31.6,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.31.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.31.6,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.31.6,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.31.6,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-lb:v0.4.10,k3s/v1.31.6,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-lb:v0.4.10,k3s/v1.31.6,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.31.6,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.31.6,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.31.6,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.31.6,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.31.6,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.31.6,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.31.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.31.6-stats.csv b/docs/csv/report-k3s-v1.31.6-stats.csv new file mode 100644 index 0000000..8382897 --- /dev/null +++ b/docs/csv/report-k3s-v1.31.6-stats.csv @@ -0,0 +1,10 @@ +image,critical,high,total +rancher/k3s:v1.31.6-k3s1,0,0,0 +rancher/klipper-helm:v0.9.4-build20250113,0,0,0 +rancher/klipper-lb:v0.4.10,0,0,0 +rancher/local-path-provisioner:v0.0.31,0,0,0 +rancher/mirrored-coredns-coredns:1.12.0,0,0,0 +rancher/mirrored-library-busybox:1.36.1,0,0,0 +rancher/mirrored-library-traefik:2.11.20,0,0,0 +rancher/mirrored-metrics-server:v0.7.2,0,0,0 +rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-k3s-v1.32.1-cves.csv b/docs/csv/report-k3s-v1.32.1-cves.csv deleted file mode 100644 index b3f4a40..0000000 --- a/docs/csv/report-k3s-v1.32.1-cves.csv +++ /dev/null @@ -1,26 +0,0 @@ -image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification -rancher/k3s:v1.32.1-k3s1,k3s/v1.32.1,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.32.1-k3s1,k3s/v1.32.1,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/k3s:v1.32.1-k3s1,k3s/v1.32.1,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/k3s:v1.32.1-k3s1,k3s/v1.32.1,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.3-build20241008 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/helm,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/klipper-helm:v0.9.3-build20241008,k3s/v1.32.1,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/klipper-lb:v0.4.9,k3s/v1.32.1,libcrypto3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/klipper-lb:v0.4.9,k3s/v1.32.1,libssl3,3.3.1-r3,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.9 (alpine 3.20.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.32.1,libcrypto3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.32.1,libssl3,3.3.2-r0,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.30 (alpine 3.20.3),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary -rancher/local-path-provisioner:v0.0.30,k3s/v1.32.1,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/bin/local-path-provisioner,0.31.0,false,not_affected,vulnerable_code_not_present -rancher/local-path-provisioner:v0.0.30,k3s/v1.32.1,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/local-path-provisioner,0.33.0,false,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.32.1,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.32.1,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-library-traefik:2.11.18,k3s/v1.32.1,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-library-traefik:2.11.18,k3s/v1.32.1,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:2.11.18 (alpine 3.21.2),3.3.3-r0,true,affected, -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.32.1,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.32.1,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-metrics-server:v0.7.2,k3s/v1.32.1,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.32.1-stats.csv b/docs/csv/report-k3s-v1.32.1-stats.csv deleted file mode 100644 index 4f78c08..0000000 --- a/docs/csv/report-k3s-v1.32.1-stats.csv +++ /dev/null @@ -1,10 +0,0 @@ -image,critical,high,total -rancher/k3s:v1.32.1-k3s1,0,0,0 -rancher/klipper-helm:v0.9.3-build20241008,0,0,0 -rancher/klipper-lb:v0.4.9,0,0,0 -rancher/local-path-provisioner:v0.0.30,0,0,0 -rancher/mirrored-coredns-coredns:1.12.0,0,0,0 -rancher/mirrored-library-busybox:1.36.1,0,0,0 -rancher/mirrored-library-traefik:2.11.18,0,2,2 -rancher/mirrored-metrics-server:v0.7.2,0,0,0 -rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-k3s-v1.32.2-cves.csv b/docs/csv/report-k3s-v1.32.2-cves.csv new file mode 100644 index 0000000..6cb895c --- /dev/null +++ b/docs/csv/report-k3s-v1.32.2-cves.csv @@ -0,0 +1,23 @@ +image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification +rancher/k3s:v1.32.2-k3s1,k3s/v1.32.2,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/containerd-shim-runc-v2,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/k3s:v1.32.2-k3s1,k3s/v1.32.2,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,bin/k3s,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/k3s:v1.32.2-k3s1,k3s/v1.32.2,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/k3s,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/k3s:v1.32.2-k3s1,k3s/v1.32.2,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.32.2,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.32.2,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-helm:v0.9.4-build20250113 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.32.2,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.32.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.32.2,golang.org/x/crypto,v0.25.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.31.0,false,not_affected,vulnerable_code_not_present +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.32.2,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-helm:v0.9.4-build20250113,k3s/v1.32.2,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/helm,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/klipper-lb:v0.4.10,k3s/v1.32.2,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/klipper-lb:v0.4.10,k3s/v1.32.2,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/klipper-lb:v0.4.10 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.32.2,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/local-path-provisioner:v0.0.31,k3s/v1.32.2,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/local-path-provisioner:v0.0.31 (alpine 3.21.2),3.3.3-r0,false,not_affected,vulnerable_code_cannot_be_controlled_by_adversary +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.32.2,golang.org/x/crypto,v0.29.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,coredns,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-coredns-coredns:1.12.0,k3s/v1.32.2,golang.org/x/net,v0.31.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,coredns,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-library-traefik:3.3.2,k3s/v1.32.2,libcrypto3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:3.3.2 (alpine 3.21.2),3.3.3-r0,true,affected, +rancher/mirrored-library-traefik:3.3.2,k3s/v1.32.2,libssl3,3.3.2-r4,alpine,CVE-2024-12797,HIGH,https://avd.aquasec.com/nvd/cve-2024-12797,rancher/mirrored-library-traefik:3.3.2 (alpine 3.21.2),3.3.3-r0,true,affected, +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.32.2,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,metrics-server,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.32.2,golang.org/x/crypto,v0.26.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,metrics-server,0.31.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-metrics-server:v0.7.2,k3s/v1.32.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,metrics-server,0.33.0,true,not_affected,vulnerable_code_not_present diff --git a/docs/csv/report-k3s-v1.32.2-stats.csv b/docs/csv/report-k3s-v1.32.2-stats.csv new file mode 100644 index 0000000..cc25351 --- /dev/null +++ b/docs/csv/report-k3s-v1.32.2-stats.csv @@ -0,0 +1,10 @@ +image,critical,high,total +rancher/k3s:v1.32.2-k3s1,0,0,0 +rancher/klipper-helm:v0.9.4-build20250113,0,0,0 +rancher/klipper-lb:v0.4.10,0,0,0 +rancher/local-path-provisioner:v0.0.31,0,0,0 +rancher/mirrored-coredns-coredns:1.12.0,0,0,0 +rancher/mirrored-library-busybox:1.36.1,0,0,0 +rancher/mirrored-library-traefik:3.3.2,0,2,2 +rancher/mirrored-metrics-server:v0.7.2,0,0,0 +rancher/mirrored-pause:3.6,0,0,0 diff --git a/docs/csv/report-rancher-v2.10-head-cves.csv b/docs/csv/report-rancher-v2.10-head-cves.csv index 144e502..26600e0 100644 --- a/docs/csv/report-rancher-v2.10-head-cves.csv +++ b/docs/csv/report-rancher-v2.10-head-cves.csv @@ -599,58 +599,37 @@ rancher/hyperkube:v1.28.15-rancher1,rancher/v2.10-head,go.opentelemetry.io/contr rancher/hyperkube:v1.28.15-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp,v0.35.1,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_in_execute_path rancher/hyperkube:v1.28.15-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path rancher/hyperkube:v1.28.15-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-apiserver,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,github.com/opencontainers/runc,v1.1.10,gobinary,CVE-2024-21626,HIGH,https://avd.aquasec.com/nvd/cve-2024-21626,usr/local/bin/kube-controller-manager,1.1.12,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-controller-manager,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,github.com/opencontainers/runc,v1.1.10,gobinary,CVE-2024-21626,HIGH,https://avd.aquasec.com/nvd/cve-2024-21626,usr/local/bin/kube-proxy,1.1.12,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-proxy,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-scheduler,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,github.com/docker/docker,v20.10.24+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,github.com/opencontainers/runc,v1.1.10,gobinary,CVE-2024-21626,HIGH,https://avd.aquasec.com/nvd/cve-2024-21626,usr/local/bin/kubelet,1.1.12,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kubelet,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-apiserver,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-controller-manager,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-proxy,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-scheduler,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,github.com/docker/docker,v20.10.27+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kubelet,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,github.com/docker/docker,v20.10.27+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.31.5-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-apiserver,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-controller-manager,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-proxy,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-scheduler,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,github.com/docker/docker,v20.10.27+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kubelet,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.10-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,github.com/docker/docker,v20.10.27+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.31.6-rancher1,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path rancher/istio-installer:1.19.6-rancher1,rancher/v2.10-head,glibc,2.31-150300.63.1,sles,SUSE-SU-2024:1375-1,HIGH,,rancher/istio-installer:1.19.6-rancher1 (sles 15.3),2.31-150300.74.1,false,affected, rancher/istio-installer:1.19.6-rancher1,rancher/v2.10-head,glibc,2.31-150300.63.1,sles,SUSE-SU-2024:1895-1,HIGH,,rancher/istio-installer:1.19.6-rancher1 (sles 15.3),2.31-150300.83.1,false,affected, rancher/istio-installer:1.19.6-rancher1,rancher/v2.10-head,krb5,1.19.2-150300.13.1,sles,SUSE-SU-2024:1001-1,HIGH,,rancher/istio-installer:1.19.6-rancher1 (sles 15.3),1.19.2-150300.16.1,false,affected, @@ -2237,21 +2216,6 @@ rancher/mirrored-library-traefik:2.11.8,rancher/v2.10-head,libssl3,3.3.2-r0,alpi rancher/mirrored-library-traefik:2.11.8,rancher/v2.10-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/traefik,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-library-traefik:2.11.8,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/traefik,0.31.0,true,not_affected,vulnerable_code_not_in_execute_path rancher/mirrored-library-traefik:2.11.8,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/traefik,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,glib2-tools,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,libgio-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,libgobject-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/backing-image-manager,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10-head,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-attacher,1.11.1,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10-head,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-attacher,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10-head,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-attacher,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -2309,10 +2273,8 @@ rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10-head,stdlib,v1.16, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10-head,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-attacher,1.20.0,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10-head,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-attacher,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10-head,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.10-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.10-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.10-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-node-driver-registrar,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.10-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-attacher:v4.8.0,rancher/v2.10-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,rancher/v2.10-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.10-head,github.com/prometheus/client_golang,v1.11.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-node-driver-registrar,1.11.1,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.10-head,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-node-driver-registrar,0.0.0-20220906165146-f3363e06e74c,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.10-head,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-41723,HIGH,https://avd.aquasec.com/nvd/cve-2022-41723,csi-node-driver-registrar,0.7.0,true,affected, @@ -2430,10 +2392,7 @@ rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10-head,stdlib,v1. rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10-head,stdlib,v1.15,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-provisioner,1.20.0,true,affected, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10-head,stdlib,v1.15,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-provisioner,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10-head,stdlib,v1.15,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.10-head,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.10-head,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.10-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.10-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-resizer,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,rancher/v2.10-head,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10-head,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-resizer,1.11.1,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10-head,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-resizer,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10-head,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-resizer,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -2491,65 +2450,8 @@ rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10-head,stdlib,v1.16,g rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10-head,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-resizer,1.20.0,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10-head,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-resizer,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10-head,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.10-head,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-snapshotter,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.10-head,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.10-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,livenessprobe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.10-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10-head,bind-utils,9.18.28-150600.3.3.1,sles,SUSE-SU-2025:0355-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),9.18.33-150600.3.6.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10-head,golang.org/x/crypto,v0.28.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/sbin/longhorn-manager,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/sbin/longhorn-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,longhorn-share-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10-head,libxml2-tools,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10-head,nginx,1.21.5-150600.8.4,sles,SUSE-SU-2025:0283-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),1.21.5-150600.10.3.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/bin/yq,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10-head,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/yq,0.33.0,true,not_affected,vulnerable_code_not_in_execute_path +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,rancher/v2.10-head,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-livenessprobe:v2.15.0,rancher/v2.10-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.10-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2022-4450,HIGH,https://avd.aquasec.com/nvd/cve-2022-4450,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.10-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0215,HIGH,https://avd.aquasec.com/nvd/cve-2023-0215,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.10-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, diff --git a/docs/csv/report-rancher-v2.10-head-stats.csv b/docs/csv/report-rancher-v2.10-head-stats.csv index e60cb82..8c0af1c 100644 --- a/docs/csv/report-rancher-v2.10-head-stats.csv +++ b/docs/csv/report-rancher-v2.10-head-stats.csv @@ -58,9 +58,9 @@ rancher/harvester-csi-driver:v0.1.7,0,8,8 rancher/harvester-csi-driver:v0.2.1,0,4,4 rancher/harvester-csi-driver:v0.2.2,0,4,4 rancher/hyperkube:v1.28.15-rancher1,0,0,0 -rancher/hyperkube:v1.29.13-rancher1,0,0,0 -rancher/hyperkube:v1.30.9-rancher1,0,0,0 -rancher/hyperkube:v1.31.5-rancher1,0,0,0 +rancher/hyperkube:v1.29.14-rancher1,0,0,0 +rancher/hyperkube:v1.30.10-rancher1,0,0,0 +rancher/hyperkube:v1.31.6-rancher1,0,0,0 rancher/istio-installer:1.19.6-rancher1,0,22,22 rancher/istio-installer:1.21.1-rancher1,0,22,22 rancher/istio-installer:1.22.1-rancher1,0,22,22 @@ -253,23 +253,23 @@ rancher/mirrored-library-traefik:2.10.7,0,2,2 rancher/mirrored-library-traefik:2.11.10,0,2,2 rancher/mirrored-library-traefik:2.11.18,0,2,2 rancher/mirrored-library-traefik:2.11.8,0,2,2 -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,0,14,14 +rancher/mirrored-longhornio-backing-image-manager:v1.7.3,0,0,0 rancher/mirrored-longhornio-csi-attacher:v3.2.1,0,33,33 -rancher/mirrored-longhornio-csi-attacher:v4.7.0,0,0,0 -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,0,0,0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0,0,0,0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,0,0,0 rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,0,39,39 -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,0,0,0 -rancher/mirrored-longhornio-csi-resizer:v1.12.0,0,0,0 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,0,0,0 +rancher/mirrored-longhornio-csi-resizer:v1.13.1,0,0,0 rancher/mirrored-longhornio-csi-resizer:v1.2.0,0,33,33 -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,0,0,0 -rancher/mirrored-longhornio-livenessprobe:v2.14.0,0,0,0 -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,0,5,5 -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,0,4,4 -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,0,6,6 -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,0,4,4 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,0,0,0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0,0,0,0 +rancher/mirrored-longhornio-longhorn-engine:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-share-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-ui:v1.7.3,0,0,0 +rancher/mirrored-longhornio-support-bundle-kit:v0.0.51,0,0,0 rancher/mirrored-messagebird-sachet:0.3.1,1,24,25 rancher/mirrored-metrics-server:v0.7.0,0,0,0 rancher/mirrored-metrics-server:v0.7.1,0,0,0 diff --git a/docs/csv/report-rancher-v2.10.2-cves.csv b/docs/csv/report-rancher-v2.10.2-cves.csv index 8c13fda..7d04f5a 100644 --- a/docs/csv/report-rancher-v2.10.2-cves.csv +++ b/docs/csv/report-rancher-v2.10.2-cves.csv @@ -2237,21 +2237,6 @@ rancher/mirrored-library-traefik:2.11.8,rancher/v2.10.2,libssl3,3.3.2-r0,alpine, rancher/mirrored-library-traefik:2.11.8,rancher/v2.10.2,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/traefik,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-library-traefik:2.11.8,rancher/v2.10.2,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/traefik,0.31.0,true,not_affected,vulnerable_code_not_in_execute_path rancher/mirrored-library-traefik:2.11.8,rancher/v2.10.2,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/traefik,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,glib2-tools,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,libgio-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,libgobject-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/backing-image-manager,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10.2,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-attacher,1.11.1,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10.2,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-attacher,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10.2,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-attacher,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -2309,10 +2294,8 @@ rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10.2,stdlib,v1.16,gob rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10.2,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-attacher,1.20.0,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10.2,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-attacher,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.10.2,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.10.2,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.10.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.10.2,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-node-driver-registrar,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.10.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-attacher:v4.8.0,rancher/v2.10.2,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,rancher/v2.10.2,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.10.2,github.com/prometheus/client_golang,v1.11.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-node-driver-registrar,1.11.1,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.10.2,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-node-driver-registrar,0.0.0-20220906165146-f3363e06e74c,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.10.2,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-41723,HIGH,https://avd.aquasec.com/nvd/cve-2022-41723,csi-node-driver-registrar,0.7.0,true,affected, @@ -2430,10 +2413,7 @@ rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10.2,stdlib,v1.15, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10.2,stdlib,v1.15,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-provisioner,1.20.0,true,affected, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10.2,stdlib,v1.15,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-provisioner,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.10.2,stdlib,v1.15,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.10.2,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.10.2,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.10.2,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.10.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-resizer,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,rancher/v2.10.2,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10.2,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-resizer,1.11.1,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10.2,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-resizer,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10.2,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-resizer,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -2491,65 +2471,8 @@ rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10.2,stdlib,v1.16,gobi rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10.2,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-resizer,1.20.0,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10.2,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-resizer,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.10.2,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.10.2,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-snapshotter,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.10.2,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.10.2,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,livenessprobe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.10.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10.2,bind-utils,9.18.28-150600.3.3.1,sles,SUSE-SU-2025:0355-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),9.18.33-150600.3.6.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10.2,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10.2,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10.2,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10.2,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10.2,golang.org/x/crypto,v0.28.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/sbin/longhorn-manager,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/sbin/longhorn-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10.2,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10.2,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10.2,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10.2,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.10.2,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,longhorn-share-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10.2,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10.2,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10.2,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10.2,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10.2,libxml2-tools,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.10.2,nginx,1.21.5-150600.8.4,sles,SUSE-SU-2025:0283-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),1.21.5-150600.10.3.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10.2,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10.2,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10.2,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10.2,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10.2,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/bin/yq,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.10.2,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/yq,0.33.0,true,not_affected,vulnerable_code_not_in_execute_path +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,rancher/v2.10.2,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-livenessprobe:v2.15.0,rancher/v2.10.2,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.10.2,libcrypto1.1,1.1.1n-r0,alpine,CVE-2022-4450,HIGH,https://avd.aquasec.com/nvd/cve-2022-4450,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.10.2,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0215,HIGH,https://avd.aquasec.com/nvd/cve-2023-0215,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.10.2,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, diff --git a/docs/csv/report-rancher-v2.10.2-stats.csv b/docs/csv/report-rancher-v2.10.2-stats.csv index c60cd7e..96564b4 100644 --- a/docs/csv/report-rancher-v2.10.2-stats.csv +++ b/docs/csv/report-rancher-v2.10.2-stats.csv @@ -253,23 +253,23 @@ rancher/mirrored-library-traefik:2.10.7,0,2,2 rancher/mirrored-library-traefik:2.11.10,0,2,2 rancher/mirrored-library-traefik:2.11.18,0,2,2 rancher/mirrored-library-traefik:2.11.8,0,2,2 -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,0,14,14 +rancher/mirrored-longhornio-backing-image-manager:v1.7.3,0,0,0 rancher/mirrored-longhornio-csi-attacher:v3.2.1,0,33,33 -rancher/mirrored-longhornio-csi-attacher:v4.7.0,0,0,0 -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,0,0,0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0,0,0,0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,0,0,0 rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,0,39,39 -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,0,0,0 -rancher/mirrored-longhornio-csi-resizer:v1.12.0,0,0,0 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,0,0,0 +rancher/mirrored-longhornio-csi-resizer:v1.13.1,0,0,0 rancher/mirrored-longhornio-csi-resizer:v1.2.0,0,33,33 -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,0,0,0 -rancher/mirrored-longhornio-livenessprobe:v2.14.0,0,0,0 -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,0,5,5 -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,0,4,4 -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,0,6,6 -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,0,4,4 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,0,0,0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0,0,0,0 +rancher/mirrored-longhornio-longhorn-engine:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-share-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-ui:v1.7.3,0,0,0 +rancher/mirrored-longhornio-support-bundle-kit:v0.0.51,0,0,0 rancher/mirrored-messagebird-sachet:0.3.1,1,24,25 rancher/mirrored-metrics-server:v0.7.0,0,0,0 rancher/mirrored-metrics-server:v0.7.1,0,0,0 diff --git a/docs/csv/report-rancher-v2.8-head-cves.csv b/docs/csv/report-rancher-v2.8-head-cves.csv index 5b68a69..aabf68e 100644 --- a/docs/csv/report-rancher-v2.8-head-cves.csv +++ b/docs/csv/report-rancher-v2.8-head-cves.csv @@ -1852,13 +1852,12 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,cpio,2.11-28.amzn2,amaz rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,curl,7.79.1-7.amzn2.0.1,amazon,CVE-2023-38039,HIGH,https://avd.aquasec.com/nvd/cve-2023-38039,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),8.3.0-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,curl,7.79.1-7.amzn2.0.1,amazon,CVE-2023-38545,HIGH,https://avd.aquasec.com/nvd/cve-2023-38545,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),8.3.0-1.amzn2.0.4,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,curl,7.79.1-7.amzn2.0.1,amazon,CVE-2023-38546,HIGH,https://avd.aquasec.com/nvd/cve-2023-38546,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),8.3.0-1.amzn2.0.4,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,expat,2.1.0-15.amzn2.0.2,amazon,CVE-2022-23990,CRITICAL,https://avd.aquasec.com/nvd/cve-2022-23990,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.1.0-15.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,expat,2.1.0-15.amzn2.0.2,amazon,CVE-2022-25313,CRITICAL,https://avd.aquasec.com/nvd/cve-2022-25313,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.1.0-15.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,expat,2.1.0-15.amzn2.0.2,amazon,CVE-2024-45490,HIGH,https://avd.aquasec.com/nvd/cve-2024-45490,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.1.0-15.amzn2.0.4,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2018-16428,HIGH,https://avd.aquasec.com/nvd/cve-2018-16428,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2018-16429,HIGH,https://avd.aquasec.com/nvd/cve-2018-16429,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2020-35457,HIGH,https://avd.aquasec.com/nvd/cve-2020-35457,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.8,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2021-28153,HIGH,https://avd.aquasec.com/nvd/cve-2021-28153,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.7,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2021-3800,HIGH,https://avd.aquasec.com/nvd/cve-2021-3800,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.5,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2023-32636,HIGH,https://avd.aquasec.com/nvd/cve-2023-32636,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2023-32643,HIGH,https://avd.aquasec.com/nvd/cve-2023-32643,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,glibc,2.26-62.amzn2,amazon,CVE-2024-2961,HIGH,https://avd.aquasec.com/nvd/cve-2024-2961,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.26-64.amzn2.0.1,true,affected, @@ -1905,11 +1904,9 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,openssl-libs,1:1.0.2k-2 rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,openssl-libs,1:1.0.2k-24.amzn2.0.4,amazon,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),1:1.0.2k-24.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python,2.7.18-1.amzn2.0.5,amazon,CVE-2022-45061,HIGH,https://avd.aquasec.com/nvd/cve-2022-45061,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python,2.7.18-1.amzn2.0.5,amazon,CVE-2022-48565,HIGH,https://avd.aquasec.com/nvd/cve-2022-48565,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.7,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python,2.7.18-1.amzn2.0.5,amazon,CVE-2023-24329,HIGH,https://avd.aquasec.com/nvd/cve-2023-24329,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python,2.7.18-1.amzn2.0.5,amazon,CVE-2023-27043,HIGH,https://avd.aquasec.com/nvd/cve-2023-27043,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2022-45061,HIGH,https://avd.aquasec.com/nvd/cve-2022-45061,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2022-48565,HIGH,https://avd.aquasec.com/nvd/cve-2022-48565,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.7,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2023-24329,HIGH,https://avd.aquasec.com/nvd/cve-2023-24329,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2023-27043,HIGH,https://avd.aquasec.com/nvd/cve-2023-27043,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,sqlite,3.7.17-8.amzn2.1.1,amazon,CVE-2022-35737,HIGH,https://avd.aquasec.com/nvd/cve-2022-35737,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),3.7.17-8.amzn2.1.2,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2021-3236,HIGH,https://avd.aquasec.com/nvd/cve-2021-3236,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1882-1.amzn2.0.1,true,affected, @@ -1929,17 +1926,15 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.am rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3324,HIGH,https://avd.aquasec.com/nvd/cve-2022-3324,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3352,HIGH,https://avd.aquasec.com/nvd/cve-2022-3352,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3491,HIGH,https://avd.aquasec.com/nvd/cve-2022-3491,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4141,HIGH,https://avd.aquasec.com/nvd/cve-2022-4141,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1006-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4292,HIGH,https://avd.aquasec.com/nvd/cve-2022-4292,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-47024,HIGH,https://avd.aquasec.com/nvd/cve-2022-47024,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0049,HIGH,https://avd.aquasec.com/nvd/cve-2023-0049,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0051,HIGH,https://avd.aquasec.com/nvd/cve-2023-0051,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0054,HIGH,https://avd.aquasec.com/nvd/cve-2023-0054,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0288,HIGH,https://avd.aquasec.com/nvd/cve-2023-0288,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0433,HIGH,https://avd.aquasec.com/nvd/cve-2023-0433,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0512,HIGH,https://avd.aquasec.com/nvd/cve-2023-0512,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1127,HIGH,https://avd.aquasec.com/nvd/cve-2023-1127,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1367-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1170,HIGH,https://avd.aquasec.com/nvd/cve-2023-1170,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1175,HIGH,https://avd.aquasec.com/nvd/cve-2023-1175,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1264,HIGH,https://avd.aquasec.com/nvd/cve-2023-1264,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1355,HIGH,https://avd.aquasec.com/nvd/cve-2023-1355,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2609,HIGH,https://avd.aquasec.com/nvd/cve-2023-2609,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2610,HIGH,https://avd.aquasec.com/nvd/cve-2023-2610,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-4733,HIGH,https://avd.aquasec.com/nvd/cve-2023-4733,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1882-1.amzn2.0.1,true,affected, @@ -1967,17 +1962,15 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1 rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3324,HIGH,https://avd.aquasec.com/nvd/cve-2022-3324,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3352,HIGH,https://avd.aquasec.com/nvd/cve-2022-3352,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3491,HIGH,https://avd.aquasec.com/nvd/cve-2022-3491,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4141,HIGH,https://avd.aquasec.com/nvd/cve-2022-4141,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1006-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4292,HIGH,https://avd.aquasec.com/nvd/cve-2022-4292,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-47024,HIGH,https://avd.aquasec.com/nvd/cve-2022-47024,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0049,HIGH,https://avd.aquasec.com/nvd/cve-2023-0049,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0051,HIGH,https://avd.aquasec.com/nvd/cve-2023-0051,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0054,HIGH,https://avd.aquasec.com/nvd/cve-2023-0054,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0288,HIGH,https://avd.aquasec.com/nvd/cve-2023-0288,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0433,HIGH,https://avd.aquasec.com/nvd/cve-2023-0433,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0512,HIGH,https://avd.aquasec.com/nvd/cve-2023-0512,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1127,HIGH,https://avd.aquasec.com/nvd/cve-2023-1127,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1367-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1170,HIGH,https://avd.aquasec.com/nvd/cve-2023-1170,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1175,HIGH,https://avd.aquasec.com/nvd/cve-2023-1175,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1264,HIGH,https://avd.aquasec.com/nvd/cve-2023-1264,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1355,HIGH,https://avd.aquasec.com/nvd/cve-2023-1355,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2609,HIGH,https://avd.aquasec.com/nvd/cve-2023-2609,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2610,HIGH,https://avd.aquasec.com/nvd/cve-2023-2610,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8-head,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-4733,HIGH,https://avd.aquasec.com/nvd/cve-2023-4733,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1882-1.amzn2.0.1,true,affected, @@ -4314,21 +4307,6 @@ rancher/mirrored-library-traefik:2.11.8,rancher/v2.8-head,libssl3,3.3.2-r0,alpin rancher/mirrored-library-traefik:2.11.8,rancher/v2.8-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/traefik,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-library-traefik:2.11.8,rancher/v2.8-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/traefik,0.31.0,true,not_affected,vulnerable_code_not_in_execute_path rancher/mirrored-library-traefik:2.11.8,rancher/v2.8-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/traefik,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,glib2-tools,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,libgio-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,libgobject-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/backing-image-manager,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8-head,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-attacher,1.11.1,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8-head,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-attacher,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8-head,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-attacher,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4386,10 +4364,8 @@ rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8-head,stdlib,v1.16,g rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8-head,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-attacher,1.20.0,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8-head,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-attacher,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8-head,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.8-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.8-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.8-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-node-driver-registrar,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.8-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-attacher:v4.8.0,rancher/v2.8-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,rancher/v2.8-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.8-head,github.com/prometheus/client_golang,v1.11.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-node-driver-registrar,1.11.1,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.8-head,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-node-driver-registrar,0.0.0-20220906165146-f3363e06e74c,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.8-head,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-41723,HIGH,https://avd.aquasec.com/nvd/cve-2022-41723,csi-node-driver-registrar,0.7.0,true,affected, @@ -4507,10 +4483,7 @@ rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8-head,stdlib,v1.1 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8-head,stdlib,v1.15,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-provisioner,1.20.0,true,affected, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8-head,stdlib,v1.15,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-provisioner,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8-head,stdlib,v1.15,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.8-head,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.8-head,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.8-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.8-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-resizer,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,rancher/v2.8-head,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8-head,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-resizer,1.11.1,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8-head,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-resizer,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8-head,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-resizer,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4568,65 +4541,8 @@ rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8-head,stdlib,v1.16,go rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8-head,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-resizer,1.20.0,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8-head,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-resizer,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8-head,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.8-head,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-snapshotter,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.8-head,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.8-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,livenessprobe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.8-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8-head,bind-utils,9.18.28-150600.3.3.1,sles,SUSE-SU-2025:0355-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),9.18.33-150600.3.6.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8-head,golang.org/x/crypto,v0.28.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/sbin/longhorn-manager,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/sbin/longhorn-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,longhorn-share-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8-head,libxml2-tools,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8-head,nginx,1.21.5-150600.8.4,sles,SUSE-SU-2025:0283-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),1.21.5-150600.10.3.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/bin/yq,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8-head,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/yq,0.33.0,true,not_affected,vulnerable_code_not_in_execute_path +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,rancher/v2.8-head,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-livenessprobe:v2.15.0,rancher/v2.8-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.8-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2022-4450,HIGH,https://avd.aquasec.com/nvd/cve-2022-4450,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.8-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0215,HIGH,https://avd.aquasec.com/nvd/cve-2023-0215,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.8-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, diff --git a/docs/csv/report-rancher-v2.8-head-stats.csv b/docs/csv/report-rancher-v2.8-head-stats.csv index 90d8e8e..38dcbe7 100644 --- a/docs/csv/report-rancher-v2.8-head-stats.csv +++ b/docs/csv/report-rancher-v2.8-head-stats.csv @@ -87,7 +87,7 @@ rancher/longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/longhornio-csi-provisioner:v2.1.2,0,39,39 rancher/longhornio-csi-resizer:v1.2.0,0,33,33 rancher/machine:v0.15.0-rancher118,0,8,8 -rancher/mirrored-amazon-aws-cli:2.9.14,1,144,145 +rancher/mirrored-amazon-aws-cli:2.9.14,2,136,138 rancher/mirrored-appscode-kubed:v0.13.2,1,25,26 rancher/mirrored-bci-busybox:15.6.24.2,0,0,0 rancher/mirrored-bci-micro:15.6.24.2,0,0,0 @@ -252,23 +252,23 @@ rancher/mirrored-library-registry:2.8.1,3,17,20 rancher/mirrored-library-traefik:2.10.7,0,2,2 rancher/mirrored-library-traefik:2.11.10,0,2,2 rancher/mirrored-library-traefik:2.11.8,0,2,2 -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,0,14,14 +rancher/mirrored-longhornio-backing-image-manager:v1.7.3,0,0,0 rancher/mirrored-longhornio-csi-attacher:v3.2.1,0,33,33 -rancher/mirrored-longhornio-csi-attacher:v4.7.0,0,0,0 -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,0,0,0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0,0,0,0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,0,0,0 rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,0,39,39 -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,0,0,0 -rancher/mirrored-longhornio-csi-resizer:v1.12.0,0,0,0 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,0,0,0 +rancher/mirrored-longhornio-csi-resizer:v1.13.1,0,0,0 rancher/mirrored-longhornio-csi-resizer:v1.2.0,0,33,33 -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,0,0,0 -rancher/mirrored-longhornio-livenessprobe:v2.14.0,0,0,0 -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,0,5,5 -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,0,4,4 -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,0,6,6 -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,0,4,4 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,0,0,0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0,0,0,0 +rancher/mirrored-longhornio-longhorn-engine:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-share-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-ui:v1.7.3,0,0,0 +rancher/mirrored-longhornio-support-bundle-kit:v0.0.51,0,0,0 rancher/mirrored-messagebird-sachet:0.3.1,1,24,25 rancher/mirrored-metrics-server:v0.6.2,1,19,20 rancher/mirrored-metrics-server:v0.6.3,0,9,9 diff --git a/docs/csv/report-rancher-v2.8.12-cves.csv b/docs/csv/report-rancher-v2.8.12-cves.csv index 727b969..e6fbf96 100644 --- a/docs/csv/report-rancher-v2.8.12-cves.csv +++ b/docs/csv/report-rancher-v2.8.12-cves.csv @@ -1852,13 +1852,12 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,cpio,2.11-28.amzn2,amazon rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,curl,7.79.1-7.amzn2.0.1,amazon,CVE-2023-38039,HIGH,https://avd.aquasec.com/nvd/cve-2023-38039,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),8.3.0-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,curl,7.79.1-7.amzn2.0.1,amazon,CVE-2023-38545,HIGH,https://avd.aquasec.com/nvd/cve-2023-38545,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),8.3.0-1.amzn2.0.4,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,curl,7.79.1-7.amzn2.0.1,amazon,CVE-2023-38546,HIGH,https://avd.aquasec.com/nvd/cve-2023-38546,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),8.3.0-1.amzn2.0.4,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,expat,2.1.0-15.amzn2.0.2,amazon,CVE-2022-23990,CRITICAL,https://avd.aquasec.com/nvd/cve-2022-23990,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.1.0-15.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,expat,2.1.0-15.amzn2.0.2,amazon,CVE-2022-25313,CRITICAL,https://avd.aquasec.com/nvd/cve-2022-25313,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.1.0-15.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,expat,2.1.0-15.amzn2.0.2,amazon,CVE-2024-45490,HIGH,https://avd.aquasec.com/nvd/cve-2024-45490,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.1.0-15.amzn2.0.4,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2018-16428,HIGH,https://avd.aquasec.com/nvd/cve-2018-16428,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2018-16429,HIGH,https://avd.aquasec.com/nvd/cve-2018-16429,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.3,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2020-35457,HIGH,https://avd.aquasec.com/nvd/cve-2020-35457,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.8,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2021-28153,HIGH,https://avd.aquasec.com/nvd/cve-2021-28153,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.7,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2021-3800,HIGH,https://avd.aquasec.com/nvd/cve-2021-3800,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.5,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2023-32636,HIGH,https://avd.aquasec.com/nvd/cve-2023-32636,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glib2,2.56.1-9.amzn2.0.2,amazon,CVE-2023-32643,HIGH,https://avd.aquasec.com/nvd/cve-2023-32643,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.56.1-9.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,glibc,2.26-62.amzn2,amazon,CVE-2024-2961,HIGH,https://avd.aquasec.com/nvd/cve-2024-2961,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.26-64.amzn2.0.1,true,affected, @@ -1905,11 +1904,9 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,openssl-libs,1:1.0.2k-24. rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,openssl-libs,1:1.0.2k-24.amzn2.0.4,amazon,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),1:1.0.2k-24.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python,2.7.18-1.amzn2.0.5,amazon,CVE-2022-45061,HIGH,https://avd.aquasec.com/nvd/cve-2022-45061,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python,2.7.18-1.amzn2.0.5,amazon,CVE-2022-48565,HIGH,https://avd.aquasec.com/nvd/cve-2022-48565,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.7,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python,2.7.18-1.amzn2.0.5,amazon,CVE-2023-24329,HIGH,https://avd.aquasec.com/nvd/cve-2023-24329,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python,2.7.18-1.amzn2.0.5,amazon,CVE-2023-27043,HIGH,https://avd.aquasec.com/nvd/cve-2023-27043,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2022-45061,HIGH,https://avd.aquasec.com/nvd/cve-2022-45061,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2022-48565,HIGH,https://avd.aquasec.com/nvd/cve-2022-48565,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.7,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2023-24329,HIGH,https://avd.aquasec.com/nvd/cve-2023-24329,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.6,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,python-libs,2.7.18-1.amzn2.0.5,amazon,CVE-2023-27043,HIGH,https://avd.aquasec.com/nvd/cve-2023-27043,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2.7.18-1.amzn2.0.9,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,sqlite,3.7.17-8.amzn2.1.1,amazon,CVE-2022-35737,HIGH,https://avd.aquasec.com/nvd/cve-2022-35737,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),3.7.17-8.amzn2.1.2,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2021-3236,HIGH,https://avd.aquasec.com/nvd/cve-2021-3236,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1882-1.amzn2.0.1,true,affected, @@ -1929,17 +1926,15 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3324,HIGH,https://avd.aquasec.com/nvd/cve-2022-3324,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3352,HIGH,https://avd.aquasec.com/nvd/cve-2022-3352,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3491,HIGH,https://avd.aquasec.com/nvd/cve-2022-3491,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4141,HIGH,https://avd.aquasec.com/nvd/cve-2022-4141,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1006-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4292,HIGH,https://avd.aquasec.com/nvd/cve-2022-4292,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-47024,HIGH,https://avd.aquasec.com/nvd/cve-2022-47024,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0049,HIGH,https://avd.aquasec.com/nvd/cve-2023-0049,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0051,HIGH,https://avd.aquasec.com/nvd/cve-2023-0051,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0054,HIGH,https://avd.aquasec.com/nvd/cve-2023-0054,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0288,HIGH,https://avd.aquasec.com/nvd/cve-2023-0288,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0433,HIGH,https://avd.aquasec.com/nvd/cve-2023-0433,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0512,HIGH,https://avd.aquasec.com/nvd/cve-2023-0512,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1127,HIGH,https://avd.aquasec.com/nvd/cve-2023-1127,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1367-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1170,HIGH,https://avd.aquasec.com/nvd/cve-2023-1170,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1175,HIGH,https://avd.aquasec.com/nvd/cve-2023-1175,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1264,HIGH,https://avd.aquasec.com/nvd/cve-2023-1264,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1355,HIGH,https://avd.aquasec.com/nvd/cve-2023-1355,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2609,HIGH,https://avd.aquasec.com/nvd/cve-2023-2609,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2610,HIGH,https://avd.aquasec.com/nvd/cve-2023-2610,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-data,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-4733,HIGH,https://avd.aquasec.com/nvd/cve-2023-4733,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1882-1.amzn2.0.1,true,affected, @@ -1967,17 +1962,15 @@ rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.a rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3324,HIGH,https://avd.aquasec.com/nvd/cve-2022-3324,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3352,HIGH,https://avd.aquasec.com/nvd/cve-2022-3352,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-3491,HIGH,https://avd.aquasec.com/nvd/cve-2022-3491,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4141,HIGH,https://avd.aquasec.com/nvd/cve-2022-4141,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1006-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-4292,HIGH,https://avd.aquasec.com/nvd/cve-2022-4292,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2022-47024,HIGH,https://avd.aquasec.com/nvd/cve-2022-47024,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, +rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0049,HIGH,https://avd.aquasec.com/nvd/cve-2023-0049,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1160-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0051,HIGH,https://avd.aquasec.com/nvd/cve-2023-0051,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0054,HIGH,https://avd.aquasec.com/nvd/cve-2023-0054,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0288,HIGH,https://avd.aquasec.com/nvd/cve-2023-0288,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0433,HIGH,https://avd.aquasec.com/nvd/cve-2023-0433,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-0512,HIGH,https://avd.aquasec.com/nvd/cve-2023-0512,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1314-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1127,HIGH,https://avd.aquasec.com/nvd/cve-2023-1127,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1367-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1170,HIGH,https://avd.aquasec.com/nvd/cve-2023-1170,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1175,HIGH,https://avd.aquasec.com/nvd/cve-2023-1175,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1264,HIGH,https://avd.aquasec.com/nvd/cve-2023-1264,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, -rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-1355,HIGH,https://avd.aquasec.com/nvd/cve-2023-1355,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1403-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2609,HIGH,https://avd.aquasec.com/nvd/cve-2023-2609,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-2610,HIGH,https://avd.aquasec.com/nvd/cve-2023-2610,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1592-1.amzn2.0.1,true,affected, rancher/mirrored-amazon-aws-cli:2.9.14,rancher/v2.8.12,vim-minimal,2:9.0.828-1.amzn2.0.1,amazon,CVE-2023-4733,HIGH,https://avd.aquasec.com/nvd/cve-2023-4733,rancher/mirrored-amazon-aws-cli:2.9.14 (amazon 2 (Karoo)),2:9.0.1882-1.amzn2.0.1,true,affected, @@ -4314,21 +4307,6 @@ rancher/mirrored-library-traefik:2.11.8,rancher/v2.8.12,libssl3,3.3.2-r0,alpine, rancher/mirrored-library-traefik:2.11.8,rancher/v2.8.12,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/traefik,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-library-traefik:2.11.8,rancher/v2.8.12,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/traefik,0.31.0,true,not_affected,vulnerable_code_not_in_execute_path rancher/mirrored-library-traefik:2.11.8,rancher/v2.8.12,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/traefik,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,glib2-tools,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,libgio-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,libgobject-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/backing-image-manager,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8.12,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-attacher,1.11.1,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8.12,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-attacher,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8.12,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-attacher,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4386,10 +4364,8 @@ rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8.12,stdlib,v1.16,gob rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8.12,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-attacher,1.20.0,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8.12,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-attacher,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.8.12,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.8.12,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.8.12,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.8.12,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-node-driver-registrar,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.8.12,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-attacher:v4.8.0,rancher/v2.8.12,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,rancher/v2.8.12,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.8.12,github.com/prometheus/client_golang,v1.11.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-node-driver-registrar,1.11.1,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.8.12,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-node-driver-registrar,0.0.0-20220906165146-f3363e06e74c,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.8.12,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-41723,HIGH,https://avd.aquasec.com/nvd/cve-2022-41723,csi-node-driver-registrar,0.7.0,true,affected, @@ -4507,10 +4483,7 @@ rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8.12,stdlib,v1.15, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8.12,stdlib,v1.15,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-provisioner,1.20.0,true,affected, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8.12,stdlib,v1.15,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-provisioner,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.8.12,stdlib,v1.15,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.8.12,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.8.12,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.8.12,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.8.12,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-resizer,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,rancher/v2.8.12,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8.12,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-resizer,1.11.1,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8.12,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-resizer,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8.12,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-resizer,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4568,65 +4541,8 @@ rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8.12,stdlib,v1.16,gobi rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8.12,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-resizer,1.20.0,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8.12,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-resizer,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.8.12,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.8.12,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-snapshotter,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.8.12,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.8.12,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,livenessprobe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.8.12,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8.12,bind-utils,9.18.28-150600.3.3.1,sles,SUSE-SU-2025:0355-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),9.18.33-150600.3.6.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8.12,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8.12,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8.12,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8.12,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8.12,golang.org/x/crypto,v0.28.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/sbin/longhorn-manager,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/sbin/longhorn-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8.12,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8.12,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8.12,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8.12,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.8.12,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,longhorn-share-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8.12,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8.12,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8.12,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8.12,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8.12,libxml2-tools,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.8.12,nginx,1.21.5-150600.8.4,sles,SUSE-SU-2025:0283-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),1.21.5-150600.10.3.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8.12,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8.12,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8.12,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8.12,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8.12,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/bin/yq,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.8.12,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/yq,0.33.0,true,not_affected,vulnerable_code_not_in_execute_path +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,rancher/v2.8.12,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-livenessprobe:v2.15.0,rancher/v2.8.12,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.8.12,libcrypto1.1,1.1.1n-r0,alpine,CVE-2022-4450,HIGH,https://avd.aquasec.com/nvd/cve-2022-4450,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.8.12,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0215,HIGH,https://avd.aquasec.com/nvd/cve-2023-0215,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.8.12,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, diff --git a/docs/csv/report-rancher-v2.8.12-stats.csv b/docs/csv/report-rancher-v2.8.12-stats.csv index 55a6a38..90f948f 100644 --- a/docs/csv/report-rancher-v2.8.12-stats.csv +++ b/docs/csv/report-rancher-v2.8.12-stats.csv @@ -87,7 +87,7 @@ rancher/longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/longhornio-csi-provisioner:v2.1.2,0,39,39 rancher/longhornio-csi-resizer:v1.2.0,0,33,33 rancher/machine:v0.15.0-rancher118,0,8,8 -rancher/mirrored-amazon-aws-cli:2.9.14,1,144,145 +rancher/mirrored-amazon-aws-cli:2.9.14,2,136,138 rancher/mirrored-appscode-kubed:v0.13.2,1,25,26 rancher/mirrored-bci-busybox:15.6.24.2,0,0,0 rancher/mirrored-bci-micro:15.6.24.2,0,0,0 @@ -252,23 +252,23 @@ rancher/mirrored-library-registry:2.8.1,3,17,20 rancher/mirrored-library-traefik:2.10.7,0,2,2 rancher/mirrored-library-traefik:2.11.10,0,2,2 rancher/mirrored-library-traefik:2.11.8,0,2,2 -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,0,14,14 +rancher/mirrored-longhornio-backing-image-manager:v1.7.3,0,0,0 rancher/mirrored-longhornio-csi-attacher:v3.2.1,0,33,33 -rancher/mirrored-longhornio-csi-attacher:v4.7.0,0,0,0 -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,0,0,0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0,0,0,0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,0,0,0 rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,0,39,39 -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,0,0,0 -rancher/mirrored-longhornio-csi-resizer:v1.12.0,0,0,0 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,0,0,0 +rancher/mirrored-longhornio-csi-resizer:v1.13.1,0,0,0 rancher/mirrored-longhornio-csi-resizer:v1.2.0,0,33,33 -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,0,0,0 -rancher/mirrored-longhornio-livenessprobe:v2.14.0,0,0,0 -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,0,5,5 -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,0,4,4 -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,0,6,6 -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,0,4,4 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,0,0,0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0,0,0,0 +rancher/mirrored-longhornio-longhorn-engine:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-share-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-ui:v1.7.3,0,0,0 +rancher/mirrored-longhornio-support-bundle-kit:v0.0.51,0,0,0 rancher/mirrored-messagebird-sachet:0.3.1,1,24,25 rancher/mirrored-metrics-server:v0.6.2,1,19,20 rancher/mirrored-metrics-server:v0.6.3,0,9,9 diff --git a/docs/csv/report-rancher-v2.9-head-cves.csv b/docs/csv/report-rancher-v2.9-head-cves.csv index 04c7e32..f5c104a 100644 --- a/docs/csv/report-rancher-v2.9-head-cves.csv +++ b/docs/csv/report-rancher-v2.9-head-cves.csv @@ -1463,45 +1463,24 @@ rancher/hyperkube:v1.28.15-rancher1,rancher/v2.9-head,go.opentelemetry.io/contri rancher/hyperkube:v1.28.15-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp,v0.35.1,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_in_execute_path rancher/hyperkube:v1.28.15-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path rancher/hyperkube:v1.28.15-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-apiserver,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,github.com/opencontainers/runc,v1.1.10,gobinary,CVE-2024-21626,HIGH,https://avd.aquasec.com/nvd/cve-2024-21626,usr/local/bin/kube-controller-manager,1.1.12,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-controller-manager,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,github.com/opencontainers/runc,v1.1.10,gobinary,CVE-2024-21626,HIGH,https://avd.aquasec.com/nvd/cve-2024-21626,usr/local/bin/kube-proxy,1.1.12,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-proxy,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-scheduler,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,github.com/docker/docker,v20.10.24+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,github.com/opencontainers/runc,v1.1.10,gobinary,CVE-2024-21626,HIGH,https://avd.aquasec.com/nvd/cve-2024-21626,usr/local/bin/kubelet,1.1.12,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kubelet,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.29.13-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-apiserver,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-controller-manager,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-proxy,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-scheduler,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,github.com/docker/docker,v20.10.27+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kubelet,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path -rancher/hyperkube:v1.30.9-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-apiserver,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-apiserver,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-apiserver,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-controller-manager,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-controller-manager,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-controller-manager,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-proxy,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-proxy,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-proxy,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kube-scheduler,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kube-scheduler,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kube-scheduler,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubectl,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,github.com/docker/docker,v20.10.27+incompatible,gobinary,CVE-2024-41110,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-41110,usr/local/bin/kubelet,"23.0.15, 26.1.5, 27.1.1, 25.0.6",false,not_affected,vulnerable_code_not_present +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful,v0.42.0,gobinary,CVE-2023-45142,HIGH,https://avd.aquasec.com/nvd/cve-2023-45142,usr/local/bin/kubelet,0.44.0,false,not_affected,vulnerable_code_not_present +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc,v0.42.0,gobinary,CVE-2023-47108,HIGH,https://avd.aquasec.com/nvd/cve-2023-47108,usr/local/bin/kubelet,0.46.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/kubelet,0.31.0,false,not_affected,vulnerable_code_not_in_execute_path +rancher/hyperkube:v1.30.10-rancher1,rancher/v2.9-head,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/kubelet,0.33.0,false,not_affected,vulnerable_code_not_in_execute_path rancher/istio-installer:1.19.6-rancher1,rancher/v2.9-head,glibc,2.31-150300.63.1,sles,SUSE-SU-2024:1375-1,HIGH,,rancher/istio-installer:1.19.6-rancher1 (sles 15.3),2.31-150300.74.1,false,affected, rancher/istio-installer:1.19.6-rancher1,rancher/v2.9-head,glibc,2.31-150300.63.1,sles,SUSE-SU-2024:1895-1,HIGH,,rancher/istio-installer:1.19.6-rancher1 (sles 15.3),2.31-150300.83.1,false,affected, rancher/istio-installer:1.19.6-rancher1,rancher/v2.9-head,krb5,1.19.2-150300.13.1,sles,SUSE-SU-2024:1001-1,HIGH,,rancher/istio-installer:1.19.6-rancher1 (sles 15.3),1.19.2-150300.16.1,false,affected, @@ -4381,21 +4360,6 @@ rancher/mirrored-library-traefik:2.11.8,rancher/v2.9-head,libssl3,3.3.2-r0,alpin rancher/mirrored-library-traefik:2.11.8,rancher/v2.9-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/traefik,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-library-traefik:2.11.8,rancher/v2.9-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/traefik,0.31.0,true,not_affected,vulnerable_code_not_in_execute_path rancher/mirrored-library-traefik:2.11.8,rancher/v2.9-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/traefik,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,glib2-tools,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,libgio-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,libgobject-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/backing-image-manager,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9-head,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-attacher,1.11.1,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9-head,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-attacher,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9-head,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-attacher,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4453,10 +4417,8 @@ rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9-head,stdlib,v1.16,g rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9-head,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-attacher,1.20.0,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9-head,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-attacher,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9-head,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.9-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.9-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.9-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-node-driver-registrar,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.9-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-attacher:v4.8.0,rancher/v2.9-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,rancher/v2.9-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.9-head,github.com/prometheus/client_golang,v1.11.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-node-driver-registrar,1.11.1,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.9-head,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-node-driver-registrar,0.0.0-20220906165146-f3363e06e74c,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.9-head,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-41723,HIGH,https://avd.aquasec.com/nvd/cve-2022-41723,csi-node-driver-registrar,0.7.0,true,affected, @@ -4574,10 +4536,7 @@ rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9-head,stdlib,v1.1 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9-head,stdlib,v1.15,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-provisioner,1.20.0,true,affected, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9-head,stdlib,v1.15,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-provisioner,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9-head,stdlib,v1.15,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.9-head,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.9-head,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.9-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.9-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-resizer,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,rancher/v2.9-head,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9-head,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-resizer,1.11.1,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9-head,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-resizer,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9-head,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-resizer,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4635,65 +4594,8 @@ rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9-head,stdlib,v1.16,go rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9-head,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-resizer,1.20.0,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9-head,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-resizer,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9-head,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.9-head,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-snapshotter,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.9-head,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.9-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,livenessprobe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.9-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9-head,bind-utils,9.18.28-150600.3.3.1,sles,SUSE-SU-2025:0355-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),9.18.33-150600.3.6.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9-head,golang.org/x/crypto,v0.28.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/sbin/longhorn-manager,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/sbin/longhorn-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9-head,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,longhorn-share-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9-head,libxml2-tools,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9-head,nginx,1.21.5-150600.8.4,sles,SUSE-SU-2025:0283-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),1.21.5-150600.10.3.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9-head,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9-head,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9-head,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9-head,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9-head,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/bin/yq,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9-head,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/yq,0.33.0,true,not_affected,vulnerable_code_not_in_execute_path +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,rancher/v2.9-head,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-livenessprobe:v2.15.0,rancher/v2.9-head,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.9-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2022-4450,HIGH,https://avd.aquasec.com/nvd/cve-2022-4450,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.9-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0215,HIGH,https://avd.aquasec.com/nvd/cve-2023-0215,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.9-head,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, diff --git a/docs/csv/report-rancher-v2.9-head-stats.csv b/docs/csv/report-rancher-v2.9-head-stats.csv index 9f56573..0b4d9c2 100644 --- a/docs/csv/report-rancher-v2.9-head-stats.csv +++ b/docs/csv/report-rancher-v2.9-head-stats.csv @@ -90,8 +90,8 @@ rancher/harvester-csi-driver:v0.2.1,0,4,4 rancher/harvester-csi-driver:v0.2.2,0,4,4 rancher/hyperkube:v1.27.16-rancher1,0,0,0 rancher/hyperkube:v1.28.15-rancher1,0,0,0 -rancher/hyperkube:v1.29.13-rancher1,0,0,0 -rancher/hyperkube:v1.30.9-rancher1,0,0,0 +rancher/hyperkube:v1.29.14-rancher1,0,0,0 +rancher/hyperkube:v1.30.10-rancher1,0,0,0 rancher/istio-installer:1.19.6-rancher1,0,22,22 rancher/istio-installer:1.21.1-rancher1,0,22,22 rancher/istio-installer:1.22.1-rancher1,0,22,22 @@ -340,23 +340,23 @@ rancher/mirrored-library-traefik:2.10.7,0,2,2 rancher/mirrored-library-traefik:2.11.10,0,2,2 rancher/mirrored-library-traefik:2.11.18,0,2,2 rancher/mirrored-library-traefik:2.11.8,0,2,2 -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,0,14,14 +rancher/mirrored-longhornio-backing-image-manager:v1.7.3,0,0,0 rancher/mirrored-longhornio-csi-attacher:v3.2.1,0,33,33 -rancher/mirrored-longhornio-csi-attacher:v4.7.0,0,0,0 -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,0,0,0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0,0,0,0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,0,0,0 rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,0,39,39 -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,0,0,0 -rancher/mirrored-longhornio-csi-resizer:v1.12.0,0,0,0 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,0,0,0 +rancher/mirrored-longhornio-csi-resizer:v1.13.1,0,0,0 rancher/mirrored-longhornio-csi-resizer:v1.2.0,0,33,33 -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,0,0,0 -rancher/mirrored-longhornio-livenessprobe:v2.14.0,0,0,0 -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,0,5,5 -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,0,4,4 -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,0,6,6 -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,0,4,4 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,0,0,0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0,0,0,0 +rancher/mirrored-longhornio-longhorn-engine:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-share-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-ui:v1.7.3,0,0,0 +rancher/mirrored-longhornio-support-bundle-kit:v0.0.51,0,0,0 rancher/mirrored-messagebird-sachet:0.3.1,1,24,25 rancher/mirrored-metrics-server:v0.6.3,0,9,9 rancher/mirrored-metrics-server:v0.7.0,0,0,0 diff --git a/docs/csv/report-rancher-v2.9.6-cves.csv b/docs/csv/report-rancher-v2.9.6-cves.csv index 3550a48..7ff2e0c 100644 --- a/docs/csv/report-rancher-v2.9.6-cves.csv +++ b/docs/csv/report-rancher-v2.9.6-cves.csv @@ -4381,21 +4381,6 @@ rancher/mirrored-library-traefik:2.11.8,rancher/v2.9.6,libssl3,3.3.2-r0,alpine,C rancher/mirrored-library-traefik:2.11.8,rancher/v2.9.6,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/traefik,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-library-traefik:2.11.8,rancher/v2.9.6,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/traefik,0.31.0,true,not_affected,vulnerable_code_not_in_execute_path rancher/mirrored-library-traefik:2.11.8,rancher/v2.9.6,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/traefik,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,glib2-tools,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,libgio-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,libgobject-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-backing-image-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/backing-image-manager,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9.6,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-attacher,1.11.1,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9.6,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-attacher,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9.6,golang.org/x/net,v0.0.0-20210410081132-afb366fc7cd1,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-attacher,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4453,10 +4438,8 @@ rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9.6,stdlib,v1.16,gobi rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9.6,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-attacher,1.20.0,true,affected, rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9.6,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-attacher,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-attacher:v3.2.1,rancher/v2.9.6,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.9.6,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-attacher,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-attacher:v4.7.0,rancher/v2.9.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.9.6,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-node-driver-registrar,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,rancher/v2.9.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-attacher:v4.8.0,rancher/v2.9.6,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-attacher,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,rancher/v2.9.6,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-node-driver-registrar,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.9.6,github.com/prometheus/client_golang,v1.11.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-node-driver-registrar,1.11.1,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.9.6,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-node-driver-registrar,0.0.0-20220906165146-f3363e06e74c,true,affected, rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,rancher/v2.9.6,golang.org/x/net,v0.0.0-20210520170846-37e1c6afe023,gobinary,CVE-2022-41723,HIGH,https://avd.aquasec.com/nvd/cve-2022-41723,csi-node-driver-registrar,0.7.0,true,affected, @@ -4574,10 +4557,7 @@ rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9.6,stdlib,v1.15,g rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9.6,stdlib,v1.15,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-provisioner,1.20.0,true,affected, rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9.6,stdlib,v1.15,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-provisioner,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-provisioner:v2.1.2,rancher/v2.9.6,stdlib,v1.15,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.9.6,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-provisioner,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,rancher/v2.9.6,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.9.6,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-resizer:v1.12.0,rancher/v2.9.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-resizer,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,rancher/v2.9.6,golang.org/x/net,v0.19.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-provisioner,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9.6,github.com/prometheus/client_golang,v1.9.0,gobinary,CVE-2022-21698,HIGH,https://avd.aquasec.com/nvd/cve-2022-21698,csi-resizer,1.11.1,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9.6,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2021-33194,HIGH,https://avd.aquasec.com/nvd/cve-2021-33194,csi-resizer,0.0.0-20210520170846-37e1c6afe023,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9.6,golang.org/x/net,v0.0.0-20210316092652-d523dce5a7f4,gobinary,CVE-2022-27664,HIGH,https://avd.aquasec.com/nvd/cve-2022-27664,csi-resizer,0.0.0-20220906165146-f3363e06e74c,true,affected, @@ -4635,65 +4615,8 @@ rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9.6,stdlib,v1.16,gobin rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9.6,stdlib,v1.16,gobinary,CVE-2023-45287,HIGH,https://avd.aquasec.com/nvd/cve-2023-45287,csi-resizer,1.20.0,true,affected, rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9.6,stdlib,v1.16,gobinary,CVE-2023-45288,MEDIUM,https://avd.aquasec.com/nvd/cve-2023-45288,csi-resizer,"1.21.9, 1.22.2",true,affected,severity_changed_due_to_suse_cvss_score rancher/mirrored-longhornio-csi-resizer:v1.2.0,rancher/v2.9.6,stdlib,v1.16,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-resizer,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.9.6,stdlib,v1.21.13,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,csi-snapshotter,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,rancher/v2.9.6,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.9.6,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,livenessprobe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-livenessprobe:v2.14.0,rancher/v2.9.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-engine:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,libgmodule-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,qemu-img,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,qemu-pr-helper,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:3744-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-15061.6.coco15sp6.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,qemu-tools,8.2.6-150600.3.15.1,sles,SUSE-SU-2024:4094-1,HIGH,,rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 (sles 15.6),8.2.7-150600.3.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,stdlib,v1.22.4,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/local/bin/grpc_health_probe,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/grpc_health_probe,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/grpc_health_probe,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/longhorn-instance-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9.6,bind-utils,9.18.28-150600.3.3.1,sles,SUSE-SU-2025:0355-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),9.18.33-150600.3.6.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9.6,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9.6,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9.6,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9.6,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9.6,golang.org/x/crypto,v0.28.0,gobinary,CVE-2024-45337,CRITICAL,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/sbin/longhorn-manager,0.31.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.30.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/sbin/longhorn-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9.6,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9.6,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9.6,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9.6,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,rancher/v2.9.6,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,longhorn-share-manager,0.33.0,true,not_affected,vulnerable_code_not_present -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9.6,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9.6,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9.6,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9.6,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9.6,libxml2-tools,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,rancher/v2.9.6,nginx,1.21.5-150600.8.4,sles,SUSE-SU-2025:0283-1,HIGH,,rancher/mirrored-longhornio-longhorn-ui:v1.7.2 (sles 15.6),1.21.5-150600.10.3.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9.6,libglib-2_0-0,2.78.6-150600.4.3.1,sles,SUSE-SU-2024:4254-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.78.6-150600.4.8.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9.6,libtasn1,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9.6,libtasn1-6,4.13-150000.4.8.1,sles,SUSE-SU-2025:0548-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),4.13-150000.4.11.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9.6,libxml2-2,2.10.3-150500.5.17.1,sles,SUSE-SU-2025:0348-1,HIGH,,rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 (sles 15.6),2.10.3-150500.5.20.1,true,affected, -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9.6,stdlib,v1.22.5,gobinary,CVE-2024-34156,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-34156,usr/bin/yq,"1.22.7, 1.23.1",true,affected,severity_changed_due_to_suse_cvss_score -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,rancher/v2.9.6,golang.org/x/net,v0.27.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/bin/yq,0.33.0,true,not_affected,vulnerable_code_not_in_execute_path +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,rancher/v2.9.6,golang.org/x/net,v0.20.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,csi-snapshotter,0.33.0,true,not_affected,vulnerable_code_not_present +rancher/mirrored-longhornio-livenessprobe:v2.15.0,rancher/v2.9.6,golang.org/x/net,v0.32.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,livenessprobe,0.33.0,true,not_affected,vulnerable_code_not_present rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.9.6,libcrypto1.1,1.1.1n-r0,alpine,CVE-2022-4450,HIGH,https://avd.aquasec.com/nvd/cve-2022-4450,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.9.6,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0215,HIGH,https://avd.aquasec.com/nvd/cve-2023-0215,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, rancher/mirrored-messagebird-sachet:0.3.1,rancher/v2.9.6,libcrypto1.1,1.1.1n-r0,alpine,CVE-2023-0286,HIGH,https://avd.aquasec.com/nvd/cve-2023-0286,rancher/mirrored-messagebird-sachet:0.3.1 (alpine 3.15.4),1.1.1t-r0,true,affected, diff --git a/docs/csv/report-rancher-v2.9.6-stats.csv b/docs/csv/report-rancher-v2.9.6-stats.csv index 4c694eb..edc348c 100644 --- a/docs/csv/report-rancher-v2.9.6-stats.csv +++ b/docs/csv/report-rancher-v2.9.6-stats.csv @@ -340,23 +340,23 @@ rancher/mirrored-library-traefik:2.10.7,0,2,2 rancher/mirrored-library-traefik:2.11.10,0,2,2 rancher/mirrored-library-traefik:2.11.18,0,2,2 rancher/mirrored-library-traefik:2.11.8,0,2,2 -rancher/mirrored-longhornio-backing-image-manager:v1.7.2,0,14,14 +rancher/mirrored-longhornio-backing-image-manager:v1.7.3,0,0,0 rancher/mirrored-longhornio-csi-attacher:v3.2.1,0,33,33 -rancher/mirrored-longhornio-csi-attacher:v4.7.0,0,0,0 -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0,0,0,0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0,0,0,0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0,0,0,0 rancher/mirrored-longhornio-csi-node-driver-registrar:v2.3.0,0,31,31 rancher/mirrored-longhornio-csi-provisioner:v2.1.2,0,39,39 -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007,0,0,0 -rancher/mirrored-longhornio-csi-resizer:v1.12.0,0,0,0 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204,0,0,0 +rancher/mirrored-longhornio-csi-resizer:v1.13.1,0,0,0 rancher/mirrored-longhornio-csi-resizer:v1.2.0,0,33,33 -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007,0,0,0 -rancher/mirrored-longhornio-livenessprobe:v2.14.0,0,0,0 -rancher/mirrored-longhornio-longhorn-engine:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2,0,11,11 -rancher/mirrored-longhornio-longhorn-manager:v1.7.2,0,5,5 -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2,0,4,4 -rancher/mirrored-longhornio-longhorn-ui:v1.7.2,0,6,6 -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45,0,4,4 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204,0,0,0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0,0,0,0 +rancher/mirrored-longhornio-longhorn-engine:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-share-manager:v1.7.3,0,0,0 +rancher/mirrored-longhornio-longhorn-ui:v1.7.3,0,0,0 +rancher/mirrored-longhornio-support-bundle-kit:v0.0.51,0,0,0 rancher/mirrored-messagebird-sachet:0.3.1,1,24,25 rancher/mirrored-metrics-server:v0.6.3,0,9,9 rancher/mirrored-metrics-server:v0.7.0,0,0,0 diff --git a/docs/harvester-master.html b/docs/harvester-master.html index 58a5776..d57f066 100644 --- a/docs/harvester-master.html +++ b/docs/harvester-master.html @@ -1983,42 +1983,6 @@

How to use this page

rancher/harvester-node-manager-webhook:master-head false Harvester master -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/harvester-node-manager-webhook:master-head -false -Harvester master -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/harvester-node-manager-webhook:master-head -false -Harvester master -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/harvester-node-manager-webhook:master-head -false -Harvester master usr/bin/harvester-node-manager-webhook golang.org/x/crypto@v0.22.0 CVE-2024-45337 @@ -2043,42 +2007,6 @@

How to use this page

rancher/harvester-node-manager:master-head false Harvester master -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/harvester-node-manager:master-head -false -Harvester master -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/harvester-node-manager:master-head -false -Harvester master -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/harvester-node-manager:master-head -false -Harvester master usr/bin/harvester-node-manager golang.org/x/net@v0.24.0 CVE-2024-45338 diff --git a/docs/index.html b/docs/index.html index 5e7800d..f071a86 100644 --- a/docs/index.html +++ b/docs/index.html @@ -122,24 +122,24 @@

How to use this page

report -K3s v1.32.1 -report -report +K3s v1.32.2 +report +report -K3s v1.31.5 -report -report +K3s v1.31.6 +report +report -K3s v1.30.9 -report -report +K3s v1.30.10 +report +report -K3s v1.29.13 -report -report +K3s v1.29.14 +report +report Harvester v1.4.1 diff --git a/docs/k3s-v1.32.1.html b/docs/k3s-v1.29.14.html similarity index 81% rename from docs/k3s-v1.32.1.html rename to docs/k3s-v1.29.14.html index df021f6..5efc753 100644 --- a/docs/k3s-v1.32.1.html +++ b/docs/k3s-v1.29.14.html @@ -23,7 +23,7 @@ -

SUSE Rancher - K3s v1.32.1 version - CVE Scans - 2025-02-28

+

SUSE Rancher - K3s v1.29.14 version - CVE Scans - 2025-02-28

How to use this page

@@ -72,9 +72,9 @@

How to use this page

Type (language or OS) -rancher/k3s:v1.32.1-k3s1 +rancher/k3s:v1.29.14-k3s1 false -K3s v1.32.1 +K3s v1.29.14 bin/containerd-shim-runc-v2 golang.org/x/net@v0.23.0 CVE-2024-45338 @@ -84,11 +84,23 @@

How to use this page

gobinary -rancher/k3s:v1.32.1-k3s1 +rancher/k3s:v1.29.14-k3s1 false -K3s v1.32.1 +K3s v1.29.14 bin/k3s -golang.org/x/crypto@v0.24.0 +go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.45.0 +CVE-2023-47108 +HIGH +affected + +gobinary + + +rancher/k3s:v1.29.14-k3s1 +false +K3s v1.29.14 +bin/k3s +golang.org/x/crypto@v0.17.0 CVE-2024-45337 none not affected @@ -96,11 +108,11 @@

How to use this page

gobinary -rancher/k3s:v1.32.1-k3s1 +rancher/k3s:v1.29.14-k3s1 false -K3s v1.32.1 +K3s v1.29.14 bin/k3s -golang.org/x/net@v0.26.0 +golang.org/x/net@v0.17.0 CVE-2024-45338 none not affected @@ -108,9 +120,9 @@

How to use this page

gobinary -rancher/k3s:v1.32.1-k3s1 +rancher/k3s:v1.29.14-k3s1 false -K3s v1.32.1 +K3s v1.29.14 bin/runc golang.org/x/net@v0.24.0 CVE-2024-45338 @@ -120,11 +132,11 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.32.1 +K3s v1.29.14 libcrypto3 -libcrypto3@3.3.2-r0 +libcrypto3@3.3.2-r4 CVE-2024-12797 none not affected @@ -132,11 +144,11 @@

How to use this page

alpine -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.32.1 +K3s v1.29.14 libssl3 -libssl3@3.3.2-r0 +libssl3@3.3.2-r4 CVE-2024-12797 none not affected @@ -144,9 +156,9 @@

How to use this page

alpine -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.32.1 +K3s v1.29.14 home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis golang.org/x/crypto@v0.26.0 CVE-2024-45337 @@ -156,9 +168,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.32.1 +K3s v1.29.14 home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis golang.org/x/net@v0.28.0 CVE-2024-45338 @@ -168,9 +180,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.32.1 +K3s v1.29.14 home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status golang.org/x/crypto@v0.25.0 CVE-2024-45337 @@ -180,9 +192,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.32.1 +K3s v1.29.14 home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status golang.org/x/net@v0.23.0 CVE-2024-45338 @@ -192,21 +204,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.32.1 -usr/bin/helm -golang.org/x/crypto@v0.26.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/klipper-helm:v0.9.3-build20241008 -false -K3s v1.32.1 +K3s v1.29.14 usr/bin/helm golang.org/x/net@v0.26.0 CVE-2024-45338 @@ -216,11 +216,11 @@

How to use this page

gobinary -rancher/klipper-lb:v0.4.9 +rancher/klipper-lb:v0.4.10 false -K3s v1.32.1 +K3s v1.29.14 libcrypto3 -libcrypto3@3.3.1-r3 +libcrypto3@3.3.2-r4 CVE-2024-12797 none not affected @@ -228,11 +228,11 @@

How to use this page

alpine -rancher/klipper-lb:v0.4.9 +rancher/klipper-lb:v0.4.10 false -K3s v1.32.1 +K3s v1.29.14 libssl3 -libssl3@3.3.1-r3 +libssl3@3.3.2-r4 CVE-2024-12797 none not affected @@ -240,11 +240,11 @@

How to use this page

alpine -rancher/local-path-provisioner:v0.0.30 +rancher/local-path-provisioner:v0.0.31 false -K3s v1.32.1 +K3s v1.29.14 libcrypto3 -libcrypto3@3.3.2-r0 +libcrypto3@3.3.2-r4 CVE-2024-12797 none not affected @@ -252,11 +252,11 @@

How to use this page

alpine -rancher/local-path-provisioner:v0.0.30 +rancher/local-path-provisioner:v0.0.31 false -K3s v1.32.1 +K3s v1.29.14 libssl3 -libssl3@3.3.2-r0 +libssl3@3.3.2-r4 CVE-2024-12797 none not affected @@ -264,33 +264,9 @@

How to use this page

alpine -rancher/local-path-provisioner:v0.0.30 -false -K3s v1.32.1 -usr/bin/local-path-provisioner -golang.org/x/crypto@v0.25.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/local-path-provisioner:v0.0.30 -false -K3s v1.32.1 -usr/bin/local-path-provisioner -golang.org/x/net@v0.27.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - rancher/mirrored-coredns-coredns:1.12.0 true -K3s v1.32.1 +K3s v1.29.14 coredns golang.org/x/crypto@v0.29.0 CVE-2024-45337 @@ -302,7 +278,7 @@

How to use this page

rancher/mirrored-coredns-coredns:1.12.0 true -K3s v1.32.1 +K3s v1.29.14 coredns golang.org/x/net@v0.31.0 CVE-2024-45338 @@ -312,33 +288,9 @@

How to use this page

gobinary -rancher/mirrored-library-traefik:2.11.18 -true -K3s v1.32.1 -libcrypto3 -libcrypto3@3.3.2-r4 -CVE-2024-12797 -HIGH -affected - -alpine - - -rancher/mirrored-library-traefik:2.11.18 -true -K3s v1.32.1 -libssl3 -libssl3@3.3.2-r4 -CVE-2024-12797 -HIGH -affected - -alpine - - rancher/mirrored-metrics-server:v0.7.2 true -K3s v1.32.1 +K3s v1.29.14 metrics-server stdlib@v1.22.5 CVE-2024-34156 @@ -350,7 +302,7 @@

How to use this page

rancher/mirrored-metrics-server:v0.7.2 true -K3s v1.32.1 +K3s v1.29.14 metrics-server golang.org/x/crypto@v0.26.0 CVE-2024-45337 @@ -362,7 +314,7 @@

How to use this page

rancher/mirrored-metrics-server:v0.7.2 true -K3s v1.32.1 +K3s v1.29.14 metrics-server golang.org/x/net@v0.28.0 CVE-2024-45338 diff --git a/docs/k3s-v1.30.9.html b/docs/k3s-v1.30.10.html similarity index 81% rename from docs/k3s-v1.30.9.html rename to docs/k3s-v1.30.10.html index 8883e7a..db840cb 100644 --- a/docs/k3s-v1.30.9.html +++ b/docs/k3s-v1.30.10.html @@ -23,7 +23,7 @@ -

SUSE Rancher - K3s v1.30.9 version - CVE Scans - 2025-02-28

+

SUSE Rancher - K3s v1.30.10 version - CVE Scans - 2025-02-28

How to use this page

@@ -72,9 +72,9 @@

How to use this page

Type (language or OS) -rancher/k3s:v1.30.9-k3s1 +rancher/k3s:v1.30.10-k3s1 false -K3s v1.30.9 +K3s v1.30.10 bin/containerd-shim-runc-v2 golang.org/x/net@v0.23.0 CVE-2024-45338 @@ -84,9 +84,9 @@

How to use this page

gobinary -rancher/k3s:v1.30.9-k3s1 +rancher/k3s:v1.30.10-k3s1 false -K3s v1.30.9 +K3s v1.30.10 bin/k3s go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.45.0 CVE-2023-47108 @@ -96,9 +96,9 @@

How to use this page

gobinary -rancher/k3s:v1.30.9-k3s1 +rancher/k3s:v1.30.10-k3s1 false -K3s v1.30.9 +K3s v1.30.10 bin/k3s golang.org/x/crypto@v0.17.0 CVE-2024-45337 @@ -108,9 +108,9 @@

How to use this page

gobinary -rancher/k3s:v1.30.9-k3s1 +rancher/k3s:v1.30.10-k3s1 false -K3s v1.30.9 +K3s v1.30.10 bin/k3s golang.org/x/net@v0.17.0 CVE-2024-45338 @@ -120,9 +120,9 @@

How to use this page

gobinary -rancher/k3s:v1.30.9-k3s1 +rancher/k3s:v1.30.10-k3s1 false -K3s v1.30.9 +K3s v1.30.10 bin/runc golang.org/x/net@v0.24.0 CVE-2024-45338 @@ -132,11 +132,11 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.30.9 +K3s v1.30.10 libcrypto3 -libcrypto3@3.3.2-r0 +libcrypto3@3.3.2-r4 CVE-2024-12797 none not affected @@ -144,11 +144,11 @@

How to use this page

alpine -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.30.9 +K3s v1.30.10 libssl3 -libssl3@3.3.2-r0 +libssl3@3.3.2-r4 CVE-2024-12797 none not affected @@ -156,9 +156,9 @@

How to use this page

alpine -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.30.9 +K3s v1.30.10 home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis golang.org/x/crypto@v0.26.0 CVE-2024-45337 @@ -168,9 +168,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.30.9 +K3s v1.30.10 home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis golang.org/x/net@v0.28.0 CVE-2024-45338 @@ -180,9 +180,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.30.9 +K3s v1.30.10 home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status golang.org/x/crypto@v0.25.0 CVE-2024-45337 @@ -192,9 +192,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.30.9 +K3s v1.30.10 home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status golang.org/x/net@v0.23.0 CVE-2024-45338 @@ -204,21 +204,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 -false -K3s v1.30.9 -usr/bin/helm -golang.org/x/crypto@v0.26.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.30.9 +K3s v1.30.10 usr/bin/helm golang.org/x/net@v0.26.0 CVE-2024-45338 @@ -228,11 +216,11 @@

How to use this page

gobinary -rancher/klipper-lb:v0.4.9 +rancher/klipper-lb:v0.4.10 false -K3s v1.30.9 +K3s v1.30.10 libcrypto3 -libcrypto3@3.3.1-r3 +libcrypto3@3.3.2-r4 CVE-2024-12797 none not affected @@ -240,11 +228,11 @@

How to use this page

alpine -rancher/klipper-lb:v0.4.9 +rancher/klipper-lb:v0.4.10 false -K3s v1.30.9 +K3s v1.30.10 libssl3 -libssl3@3.3.1-r3 +libssl3@3.3.2-r4 CVE-2024-12797 none not affected @@ -252,11 +240,11 @@

How to use this page

alpine -rancher/local-path-provisioner:v0.0.30 +rancher/local-path-provisioner:v0.0.31 false -K3s v1.30.9 +K3s v1.30.10 libcrypto3 -libcrypto3@3.3.2-r0 +libcrypto3@3.3.2-r4 CVE-2024-12797 none not affected @@ -264,11 +252,11 @@

How to use this page

alpine -rancher/local-path-provisioner:v0.0.30 +rancher/local-path-provisioner:v0.0.31 false -K3s v1.30.9 +K3s v1.30.10 libssl3 -libssl3@3.3.2-r0 +libssl3@3.3.2-r4 CVE-2024-12797 none not affected @@ -276,33 +264,9 @@

How to use this page

alpine -rancher/local-path-provisioner:v0.0.30 -false -K3s v1.30.9 -usr/bin/local-path-provisioner -golang.org/x/crypto@v0.25.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/local-path-provisioner:v0.0.30 -false -K3s v1.30.9 -usr/bin/local-path-provisioner -golang.org/x/net@v0.27.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - rancher/mirrored-coredns-coredns:1.12.0 true -K3s v1.30.9 +K3s v1.30.10 coredns golang.org/x/crypto@v0.29.0 CVE-2024-45337 @@ -314,7 +278,7 @@

How to use this page

rancher/mirrored-coredns-coredns:1.12.0 true -K3s v1.30.9 +K3s v1.30.10 coredns golang.org/x/net@v0.31.0 CVE-2024-45338 @@ -324,33 +288,9 @@

How to use this page

gobinary -rancher/mirrored-library-traefik:2.11.18 -true -K3s v1.30.9 -libcrypto3 -libcrypto3@3.3.2-r4 -CVE-2024-12797 -HIGH -affected - -alpine - - -rancher/mirrored-library-traefik:2.11.18 -true -K3s v1.30.9 -libssl3 -libssl3@3.3.2-r4 -CVE-2024-12797 -HIGH -affected - -alpine - - rancher/mirrored-metrics-server:v0.7.2 true -K3s v1.30.9 +K3s v1.30.10 metrics-server stdlib@v1.22.5 CVE-2024-34156 @@ -362,7 +302,7 @@

How to use this page

rancher/mirrored-metrics-server:v0.7.2 true -K3s v1.30.9 +K3s v1.30.10 metrics-server golang.org/x/crypto@v0.26.0 CVE-2024-45337 @@ -374,7 +314,7 @@

How to use this page

rancher/mirrored-metrics-server:v0.7.2 true -K3s v1.30.9 +K3s v1.30.10 metrics-server golang.org/x/net@v0.28.0 CVE-2024-45338 diff --git a/docs/k3s-v1.29.13.html b/docs/k3s-v1.31.6.html similarity index 78% rename from docs/k3s-v1.29.13.html rename to docs/k3s-v1.31.6.html index 34b45d0..ba425dd 100644 --- a/docs/k3s-v1.29.13.html +++ b/docs/k3s-v1.31.6.html @@ -23,7 +23,7 @@ -

SUSE Rancher - K3s v1.29.13 version - CVE Scans - 2025-02-28

+

SUSE Rancher - K3s v1.31.6 version - CVE Scans - 2025-02-28

How to use this page

@@ -72,35 +72,23 @@

How to use this page

Type (language or OS) -rancher/k3s:v1.29.13-k3s1 +rancher/k3s:v1.31.6-k3s1 false -K3s v1.29.13 +K3s v1.31.6 bin/containerd-shim-runc-v2 -golang.org/x/net@v0.23.0 +golang.org/x/net@v0.30.0 CVE-2024-45338 none not affected -vulnerable code not present -gobinary - - -rancher/k3s:v1.29.13-k3s1 -false -K3s v1.29.13 -bin/k3s -go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.45.0 -CVE-2023-47108 -HIGH -affected - +vulnerable code not in execute path gobinary -rancher/k3s:v1.29.13-k3s1 +rancher/k3s:v1.31.6-k3s1 false -K3s v1.29.13 +K3s v1.31.6 bin/k3s -golang.org/x/crypto@v0.17.0 +golang.org/x/crypto@v0.24.0 CVE-2024-45337 none not affected @@ -108,11 +96,11 @@

How to use this page

gobinary -rancher/k3s:v1.29.13-k3s1 +rancher/k3s:v1.31.6-k3s1 false -K3s v1.29.13 +K3s v1.31.6 bin/k3s -golang.org/x/net@v0.17.0 +golang.org/x/net@v0.26.0 CVE-2024-45338 none not affected @@ -120,9 +108,9 @@

How to use this page

gobinary -rancher/k3s:v1.29.13-k3s1 +rancher/k3s:v1.31.6-k3s1 false -K3s v1.29.13 +K3s v1.31.6 bin/runc golang.org/x/net@v0.24.0 CVE-2024-45338 @@ -132,11 +120,11 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.29.13 +K3s v1.31.6 libcrypto3 -libcrypto3@3.3.2-r0 +libcrypto3@3.3.2-r4 CVE-2024-12797 none not affected @@ -144,11 +132,11 @@

How to use this page

alpine -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.29.13 +K3s v1.31.6 libssl3 -libssl3@3.3.2-r0 +libssl3@3.3.2-r4 CVE-2024-12797 none not affected @@ -156,9 +144,9 @@

How to use this page

alpine -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.29.13 +K3s v1.31.6 home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis golang.org/x/crypto@v0.26.0 CVE-2024-45337 @@ -168,9 +156,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.29.13 +K3s v1.31.6 home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis golang.org/x/net@v0.28.0 CVE-2024-45338 @@ -180,9 +168,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.29.13 +K3s v1.31.6 home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status golang.org/x/crypto@v0.25.0 CVE-2024-45337 @@ -192,9 +180,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.29.13 +K3s v1.31.6 home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status golang.org/x/net@v0.23.0 CVE-2024-45338 @@ -204,21 +192,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.29.13 -usr/bin/helm -golang.org/x/crypto@v0.26.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/klipper-helm:v0.9.3-build20241008 -false -K3s v1.29.13 +K3s v1.31.6 usr/bin/helm golang.org/x/net@v0.26.0 CVE-2024-45338 @@ -228,11 +204,11 @@

How to use this page

gobinary -rancher/klipper-lb:v0.4.9 +rancher/klipper-lb:v0.4.10 false -K3s v1.29.13 +K3s v1.31.6 libcrypto3 -libcrypto3@3.3.1-r3 +libcrypto3@3.3.2-r4 CVE-2024-12797 none not affected @@ -240,11 +216,11 @@

How to use this page

alpine -rancher/klipper-lb:v0.4.9 +rancher/klipper-lb:v0.4.10 false -K3s v1.29.13 +K3s v1.31.6 libssl3 -libssl3@3.3.1-r3 +libssl3@3.3.2-r4 CVE-2024-12797 none not affected @@ -252,11 +228,11 @@

How to use this page

alpine -rancher/local-path-provisioner:v0.0.30 +rancher/local-path-provisioner:v0.0.31 false -K3s v1.29.13 +K3s v1.31.6 libcrypto3 -libcrypto3@3.3.2-r0 +libcrypto3@3.3.2-r4 CVE-2024-12797 none not affected @@ -264,11 +240,11 @@

How to use this page

alpine -rancher/local-path-provisioner:v0.0.30 +rancher/local-path-provisioner:v0.0.31 false -K3s v1.29.13 +K3s v1.31.6 libssl3 -libssl3@3.3.2-r0 +libssl3@3.3.2-r4 CVE-2024-12797 none not affected @@ -276,33 +252,9 @@

How to use this page

alpine -rancher/local-path-provisioner:v0.0.30 -false -K3s v1.29.13 -usr/bin/local-path-provisioner -golang.org/x/crypto@v0.25.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/local-path-provisioner:v0.0.30 -false -K3s v1.29.13 -usr/bin/local-path-provisioner -golang.org/x/net@v0.27.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - rancher/mirrored-coredns-coredns:1.12.0 true -K3s v1.29.13 +K3s v1.31.6 coredns golang.org/x/crypto@v0.29.0 CVE-2024-45337 @@ -314,7 +266,7 @@

How to use this page

rancher/mirrored-coredns-coredns:1.12.0 true -K3s v1.29.13 +K3s v1.31.6 coredns golang.org/x/net@v0.31.0 CVE-2024-45338 @@ -324,33 +276,9 @@

How to use this page

gobinary -rancher/mirrored-library-traefik:2.11.18 -true -K3s v1.29.13 -libcrypto3 -libcrypto3@3.3.2-r4 -CVE-2024-12797 -HIGH -affected - -alpine - - -rancher/mirrored-library-traefik:2.11.18 -true -K3s v1.29.13 -libssl3 -libssl3@3.3.2-r4 -CVE-2024-12797 -HIGH -affected - -alpine - - rancher/mirrored-metrics-server:v0.7.2 true -K3s v1.29.13 +K3s v1.31.6 metrics-server stdlib@v1.22.5 CVE-2024-34156 @@ -362,7 +290,7 @@

How to use this page

rancher/mirrored-metrics-server:v0.7.2 true -K3s v1.29.13 +K3s v1.31.6 metrics-server golang.org/x/crypto@v0.26.0 CVE-2024-45337 @@ -374,7 +302,7 @@

How to use this page

rancher/mirrored-metrics-server:v0.7.2 true -K3s v1.29.13 +K3s v1.31.6 metrics-server golang.org/x/net@v0.28.0 CVE-2024-45338 diff --git a/docs/k3s-v1.31.5.html b/docs/k3s-v1.32.2.html similarity index 83% rename from docs/k3s-v1.31.5.html rename to docs/k3s-v1.32.2.html index b52c04b..7221994 100644 --- a/docs/k3s-v1.31.5.html +++ b/docs/k3s-v1.32.2.html @@ -23,7 +23,7 @@ -

SUSE Rancher - K3s v1.31.5 version - CVE Scans - 2025-02-28

+

SUSE Rancher - K3s v1.32.2 version - CVE Scans - 2025-02-28

How to use this page

@@ -72,21 +72,21 @@

How to use this page

Type (language or OS) -rancher/k3s:v1.31.5-k3s1 +rancher/k3s:v1.32.2-k3s1 false -K3s v1.31.5 +K3s v1.32.2 bin/containerd-shim-runc-v2 -golang.org/x/net@v0.23.0 +golang.org/x/net@v0.30.0 CVE-2024-45338 none not affected -vulnerable code not present +vulnerable code not in execute path gobinary -rancher/k3s:v1.31.5-k3s1 +rancher/k3s:v1.32.2-k3s1 false -K3s v1.31.5 +K3s v1.32.2 bin/k3s golang.org/x/crypto@v0.24.0 CVE-2024-45337 @@ -96,9 +96,9 @@

How to use this page

gobinary -rancher/k3s:v1.31.5-k3s1 +rancher/k3s:v1.32.2-k3s1 false -K3s v1.31.5 +K3s v1.32.2 bin/k3s golang.org/x/net@v0.26.0 CVE-2024-45338 @@ -108,9 +108,9 @@

How to use this page

gobinary -rancher/k3s:v1.31.5-k3s1 +rancher/k3s:v1.32.2-k3s1 false -K3s v1.31.5 +K3s v1.32.2 bin/runc golang.org/x/net@v0.24.0 CVE-2024-45338 @@ -120,11 +120,11 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.31.5 +K3s v1.32.2 libcrypto3 -libcrypto3@3.3.2-r0 +libcrypto3@3.3.2-r4 CVE-2024-12797 none not affected @@ -132,11 +132,11 @@

How to use this page

alpine -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.31.5 +K3s v1.32.2 libssl3 -libssl3@3.3.2-r0 +libssl3@3.3.2-r4 CVE-2024-12797 none not affected @@ -144,9 +144,9 @@

How to use this page

alpine -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.31.5 +K3s v1.32.2 home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis golang.org/x/crypto@v0.26.0 CVE-2024-45337 @@ -156,9 +156,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.31.5 +K3s v1.32.2 home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis golang.org/x/net@v0.28.0 CVE-2024-45338 @@ -168,9 +168,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.31.5 +K3s v1.32.2 home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status golang.org/x/crypto@v0.25.0 CVE-2024-45337 @@ -180,9 +180,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.31.5 +K3s v1.32.2 home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status golang.org/x/net@v0.23.0 CVE-2024-45338 @@ -192,21 +192,9 @@

How to use this page

gobinary -rancher/klipper-helm:v0.9.3-build20241008 -false -K3s v1.31.5 -usr/bin/helm -golang.org/x/crypto@v0.26.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/klipper-helm:v0.9.3-build20241008 +rancher/klipper-helm:v0.9.4-build20250113 false -K3s v1.31.5 +K3s v1.32.2 usr/bin/helm golang.org/x/net@v0.26.0 CVE-2024-45338 @@ -216,11 +204,11 @@

How to use this page

gobinary -rancher/klipper-lb:v0.4.9 +rancher/klipper-lb:v0.4.10 false -K3s v1.31.5 +K3s v1.32.2 libcrypto3 -libcrypto3@3.3.1-r3 +libcrypto3@3.3.2-r4 CVE-2024-12797 none not affected @@ -228,11 +216,11 @@

How to use this page

alpine -rancher/klipper-lb:v0.4.9 +rancher/klipper-lb:v0.4.10 false -K3s v1.31.5 +K3s v1.32.2 libssl3 -libssl3@3.3.1-r3 +libssl3@3.3.2-r4 CVE-2024-12797 none not affected @@ -240,11 +228,11 @@

How to use this page

alpine -rancher/local-path-provisioner:v0.0.30 +rancher/local-path-provisioner:v0.0.31 false -K3s v1.31.5 +K3s v1.32.2 libcrypto3 -libcrypto3@3.3.2-r0 +libcrypto3@3.3.2-r4 CVE-2024-12797 none not affected @@ -252,11 +240,11 @@

How to use this page

alpine -rancher/local-path-provisioner:v0.0.30 +rancher/local-path-provisioner:v0.0.31 false -K3s v1.31.5 +K3s v1.32.2 libssl3 -libssl3@3.3.2-r0 +libssl3@3.3.2-r4 CVE-2024-12797 none not affected @@ -264,33 +252,9 @@

How to use this page

alpine -rancher/local-path-provisioner:v0.0.30 -false -K3s v1.31.5 -usr/bin/local-path-provisioner -golang.org/x/crypto@v0.25.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/local-path-provisioner:v0.0.30 -false -K3s v1.31.5 -usr/bin/local-path-provisioner -golang.org/x/net@v0.27.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - rancher/mirrored-coredns-coredns:1.12.0 true -K3s v1.31.5 +K3s v1.32.2 coredns golang.org/x/crypto@v0.29.0 CVE-2024-45337 @@ -302,7 +266,7 @@

How to use this page

rancher/mirrored-coredns-coredns:1.12.0 true -K3s v1.31.5 +K3s v1.32.2 coredns golang.org/x/net@v0.31.0 CVE-2024-45338 @@ -312,9 +276,9 @@

How to use this page

gobinary -rancher/mirrored-library-traefik:2.11.18 +rancher/mirrored-library-traefik:3.3.2 true -K3s v1.31.5 +K3s v1.32.2 libcrypto3 libcrypto3@3.3.2-r4 CVE-2024-12797 @@ -324,9 +288,9 @@

How to use this page

alpine -rancher/mirrored-library-traefik:2.11.18 +rancher/mirrored-library-traefik:3.3.2 true -K3s v1.31.5 +K3s v1.32.2 libssl3 libssl3@3.3.2-r4 CVE-2024-12797 @@ -338,7 +302,7 @@

How to use this page

rancher/mirrored-metrics-server:v0.7.2 true -K3s v1.31.5 +K3s v1.32.2 metrics-server stdlib@v1.22.5 CVE-2024-34156 @@ -350,7 +314,7 @@

How to use this page

rancher/mirrored-metrics-server:v0.7.2 true -K3s v1.31.5 +K3s v1.32.2 metrics-server golang.org/x/crypto@v0.26.0 CVE-2024-45337 @@ -362,7 +326,7 @@

How to use this page

rancher/mirrored-metrics-server:v0.7.2 true -K3s v1.31.5 +K3s v1.32.2 metrics-server golang.org/x/net@v0.28.0 CVE-2024-45338 diff --git a/docs/rancher-v2.10-head.html b/docs/rancher-v2.10-head.html index 601c0f3..f77d6df 100644 --- a/docs/rancher-v2.10-head.html +++ b/docs/rancher-v2.10-head.html @@ -7272,7 +7272,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kube-apiserver @@ -7284,7 +7284,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kube-apiserver @@ -7296,7 +7296,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kube-apiserver @@ -7308,259 +7308,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kube-controller-manager -github.com/opencontainers/runc@v1.1.10 -CVE-2024-21626 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kube-controller-manager -go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 -CVE-2023-47108 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kube-controller-manager -golang.org/x/crypto@v0.21.0 -CVE-2024-45337 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kube-controller-manager -golang.org/x/net@v0.23.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kube-proxy -github.com/opencontainers/runc@v1.1.10 -CVE-2024-21626 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kube-proxy -go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 -CVE-2023-47108 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kube-proxy -golang.org/x/crypto@v0.21.0 -CVE-2024-45337 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kube-proxy -golang.org/x/net@v0.23.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kube-scheduler -go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 -CVE-2023-47108 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kube-scheduler -golang.org/x/crypto@v0.21.0 -CVE-2024-45337 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kube-scheduler -golang.org/x/net@v0.23.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kubectl -golang.org/x/net@v0.23.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kubelet -github.com/docker/docker@v20.10.24+incompatible -CVE-2024-41110 -none -not affected -vulnerable code not present -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kubelet -github.com/opencontainers/runc@v1.1.10 -CVE-2024-21626 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kubelet -go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful@v0.42.0 -CVE-2023-45142 -none -not affected -vulnerable code not present -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kubelet -go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 -CVE-2023-47108 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kubelet -golang.org/x/crypto@v0.21.0 -CVE-2024-45337 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.10 head -usr/local/bin/kubelet -golang.org/x/net@v0.23.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.10 head -usr/local/bin/kube-apiserver -go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 -CVE-2023-47108 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.10 head -usr/local/bin/kube-apiserver -golang.org/x/crypto@v0.21.0 -CVE-2024-45337 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.10 head -usr/local/bin/kube-apiserver -golang.org/x/net@v0.23.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kube-controller-manager @@ -7572,7 +7320,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kube-controller-manager @@ -7584,7 +7332,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kube-controller-manager @@ -7596,7 +7344,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kube-proxy @@ -7608,7 +7356,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kube-proxy @@ -7620,7 +7368,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kube-proxy @@ -7632,7 +7380,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kube-scheduler @@ -7644,7 +7392,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kube-scheduler @@ -7656,7 +7404,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kube-scheduler @@ -7668,7 +7416,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kubectl @@ -7680,7 +7428,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kubelet @@ -7692,7 +7440,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kubelet @@ -7704,7 +7452,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kubelet @@ -7716,7 +7464,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kubelet @@ -7728,7 +7476,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.10 head usr/local/bin/kubelet @@ -7740,7 +7488,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.31.5-rancher1 +rancher/hyperkube:v1.31.6-rancher1 false Rancher v2.10 head usr/local/bin/kube-apiserver @@ -7752,7 +7500,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.31.5-rancher1 +rancher/hyperkube:v1.31.6-rancher1 false Rancher v2.10 head usr/local/bin/kube-apiserver @@ -7764,7 +7512,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.31.5-rancher1 +rancher/hyperkube:v1.31.6-rancher1 false Rancher v2.10 head usr/local/bin/kube-controller-manager @@ -7776,7 +7524,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.31.5-rancher1 +rancher/hyperkube:v1.31.6-rancher1 false Rancher v2.10 head usr/local/bin/kube-controller-manager @@ -7788,7 +7536,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.31.5-rancher1 +rancher/hyperkube:v1.31.6-rancher1 false Rancher v2.10 head usr/local/bin/kube-proxy @@ -7800,7 +7548,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.31.5-rancher1 +rancher/hyperkube:v1.31.6-rancher1 false Rancher v2.10 head usr/local/bin/kube-proxy @@ -7812,7 +7560,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.31.5-rancher1 +rancher/hyperkube:v1.31.6-rancher1 false Rancher v2.10 head usr/local/bin/kube-scheduler @@ -7824,7 +7572,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.31.5-rancher1 +rancher/hyperkube:v1.31.6-rancher1 false Rancher v2.10 head usr/local/bin/kube-scheduler @@ -7836,7 +7584,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.31.5-rancher1 +rancher/hyperkube:v1.31.6-rancher1 false Rancher v2.10 head usr/local/bin/kubectl @@ -7848,7 +7596,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.31.5-rancher1 +rancher/hyperkube:v1.31.6-rancher1 false Rancher v2.10 head usr/local/bin/kubelet @@ -7860,7 +7608,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.31.5-rancher1 +rancher/hyperkube:v1.31.6-rancher1 false Rancher v2.10 head usr/local/bin/kubelet @@ -7872,7 +7620,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.31.5-rancher1 +rancher/hyperkube:v1.31.6-rancher1 false Rancher v2.10 head usr/local/bin/kubelet @@ -7884,7 +7632,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.31.5-rancher1 +rancher/hyperkube:v1.31.6-rancher1 false Rancher v2.10 head usr/local/bin/kubelet @@ -26928,216 +26676,36 @@

How to use this page

gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.10 head -glib2-tools -glib2-tools@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 +csi-attacher +github.com/prometheus/client_golang@v1.9.0 +CVE-2022-21698 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.10 head -libgio-2_0-0 -libgio-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 +csi-attacher +golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 +CVE-2021-33194 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.10 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10 head -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10 head -libgobject-2_0-0 -libgobject-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10 head -usr/local/bin/backing-image-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.10 head -csi-attacher -github.com/prometheus/client_golang@v1.9.0 -CVE-2022-21698 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.10 head -csi-attacher -golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 -CVE-2021-33194 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.10 head -csi-attacher -golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 -CVE-2022-27664 +csi-attacher +golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 +CVE-2022-27664 HIGH affected @@ -27792,23 +27360,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-attacher:v4.7.0 -true -Rancher v2.10 head -csi-attacher -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v4.7.0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0 true Rancher v2.10 head csi-attacher -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -27816,23 +27372,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0 -true -Rancher v2.10 head -csi-node-driver-registrar -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0 true Rancher v2.10 head csi-node-driver-registrar -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -29244,19 +28788,7 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007 -true -Rancher v2.10 head -csi-provisioner -stdlib@v1.21.13 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204 true Rancher v2.10 head csi-provisioner @@ -29268,30 +28800,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-resizer:v1.12.0 -true -Rancher v2.10 head -csi-resizer -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-resizer:v1.12.0 -true -Rancher v2.10 head -csi-resizer -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - rancher/mirrored-longhornio-csi-resizer:v1.2.0 true Rancher v2.10 head @@ -29976,19 +29484,7 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007 -true -Rancher v2.10 head -csi-snapshotter -stdlib@v1.21.13 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204 true Rancher v2.10 head csi-snapshotter @@ -30000,23 +29496,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-livenessprobe:v2.14.0 -true -Rancher v2.10 head -livenessprobe -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-livenessprobe:v2.14.0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0 true Rancher v2.10 head livenessprobe -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -30024,666 +29508,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -usr/local/bin/grpc_health_probe -stdlib@v1.22.4 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -usr/local/bin/grpc_health_probe -golang.org/x/crypto@v0.24.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -usr/local/bin/grpc_health_probe -golang.org/x/net@v0.26.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -usr/local/bin/longhorn -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10 head -usr/local/bin/longhorn-instance-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -usr/local/bin/grpc_health_probe -stdlib@v1.22.4 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -usr/local/bin/grpc_health_probe -golang.org/x/crypto@v0.24.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -usr/local/bin/grpc_health_probe -golang.org/x/net@v0.26.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10 head -usr/local/bin/longhorn-instance-manager -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.10 head -bind-utils -bind-utils@9.18.28-150600.3.3.1 -SUSE-SU-2025:0355-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.10 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.10 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.10 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.10 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.10 head -usr/local/sbin/longhorn-manager -golang.org/x/crypto@v0.28.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.10 head -usr/local/sbin/longhorn-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.10 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.10 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.10 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.10 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.10 head -longhorn-share-manager -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.10 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.10 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.10 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.10 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.10 head -libxml2-tools -libxml2-tools@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.10 head -nginx -nginx@1.21.5-150600.8.4 -SUSE-SU-2025:0283-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.10 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.10 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.10 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.10 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.10 head -usr/bin/yq -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.10 head -usr/bin/yq -golang.org/x/net@v0.27.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - rancher/mirrored-messagebird-sachet:0.3.1 true Rancher v2.10 head diff --git a/docs/rancher-v2.10.2.html b/docs/rancher-v2.10.2.html index 0a25b3c..8984f2c 100644 --- a/docs/rancher-v2.10.2.html +++ b/docs/rancher-v2.10.2.html @@ -26928,186 +26928,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -glib2-tools -glib2-tools@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -libgio-2_0-0 -libgio-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -libgobject-2_0-0 -libgobject-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.10.2 -usr/local/bin/backing-image-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.10.2 @@ -27792,23 +27612,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-attacher:v4.7.0 -true -Rancher v2.10.2 -csi-attacher -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v4.7.0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0 true Rancher v2.10.2 csi-attacher -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -27816,23 +27624,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0 -true -Rancher v2.10.2 -csi-node-driver-registrar -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0 true Rancher v2.10.2 csi-node-driver-registrar -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -29244,19 +29040,7 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007 -true -Rancher v2.10.2 -csi-provisioner -stdlib@v1.21.13 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204 true Rancher v2.10.2 csi-provisioner @@ -29268,30 +29052,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-resizer:v1.12.0 -true -Rancher v2.10.2 -csi-resizer -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-resizer:v1.12.0 -true -Rancher v2.10.2 -csi-resizer -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - rancher/mirrored-longhornio-csi-resizer:v1.2.0 true Rancher v2.10.2 @@ -29976,19 +29736,7 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007 -true -Rancher v2.10.2 -csi-snapshotter -stdlib@v1.21.13 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204 true Rancher v2.10.2 csi-snapshotter @@ -30000,23 +29748,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-livenessprobe:v2.14.0 -true -Rancher v2.10.2 -livenessprobe -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-livenessprobe:v2.14.0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0 true Rancher v2.10.2 livenessprobe -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -30024,666 +29760,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -usr/local/bin/grpc_health_probe -stdlib@v1.22.4 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -usr/local/bin/grpc_health_probe -golang.org/x/crypto@v0.24.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -usr/local/bin/grpc_health_probe -golang.org/x/net@v0.26.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -usr/local/bin/longhorn -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.10.2 -usr/local/bin/longhorn-instance-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -usr/local/bin/grpc_health_probe -stdlib@v1.22.4 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -usr/local/bin/grpc_health_probe -golang.org/x/crypto@v0.24.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -usr/local/bin/grpc_health_probe -golang.org/x/net@v0.26.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.10.2 -usr/local/bin/longhorn-instance-manager -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.10.2 -bind-utils -bind-utils@9.18.28-150600.3.3.1 -SUSE-SU-2025:0355-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.10.2 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.10.2 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.10.2 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.10.2 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.10.2 -usr/local/sbin/longhorn-manager -golang.org/x/crypto@v0.28.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.10.2 -usr/local/sbin/longhorn-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.10.2 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.10.2 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.10.2 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.10.2 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.10.2 -longhorn-share-manager -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.10.2 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.10.2 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.10.2 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.10.2 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.10.2 -libxml2-tools -libxml2-tools@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.10.2 -nginx -nginx@1.21.5-150600.8.4 -SUSE-SU-2025:0283-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.10.2 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.10.2 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.10.2 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.10.2 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.10.2 -usr/bin/yq -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.10.2 -usr/bin/yq -golang.org/x/net@v0.27.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - rancher/mirrored-messagebird-sachet:0.3.1 true Rancher v2.10.2 diff --git a/docs/rancher-v2.8-head.html b/docs/rancher-v2.8-head.html index 3f342bf..b3abea2 100644 --- a/docs/rancher-v2.8-head.html +++ b/docs/rancher-v2.8-head.html @@ -22313,7 +22313,7 @@

How to use this page

Rancher v2.8 head expat expat@2.1.0-15.amzn2.0.2 -CVE-2022-25313 +CVE-2022-23990 CRITICAL affected @@ -22325,20 +22325,8 @@

How to use this page

Rancher v2.8 head expat expat@2.1.0-15.amzn2.0.2 -CVE-2024-45490 -HIGH -affected - -amazon - - -rancher/mirrored-amazon-aws-cli:2.9.14 -true -Rancher v2.8 head -glib2 -glib2@2.56.1-9.amzn2.0.2 -CVE-2018-16428 -HIGH +CVE-2022-25313 +CRITICAL affected amazon @@ -22347,9 +22335,9 @@

How to use this page

rancher/mirrored-amazon-aws-cli:2.9.14 true Rancher v2.8 head -glib2 -glib2@2.56.1-9.amzn2.0.2 -CVE-2018-16429 +expat +expat@2.1.0-15.amzn2.0.2 +CVE-2024-45490 HIGH affected @@ -22361,7 +22349,7 @@

How to use this page

Rancher v2.8 head glib2 glib2@2.56.1-9.amzn2.0.2 -CVE-2020-35457 +CVE-2018-16428 HIGH affected @@ -22373,7 +22361,7 @@

How to use this page

Rancher v2.8 head glib2 glib2@2.56.1-9.amzn2.0.2 -CVE-2021-28153 +CVE-2018-16429 HIGH affected @@ -22385,7 +22373,7 @@

How to use this page

Rancher v2.8 head glib2 glib2@2.56.1-9.amzn2.0.2 -CVE-2021-3800 +CVE-2020-35457 HIGH affected @@ -22949,18 +22937,6 @@

How to use this page

Rancher v2.8 head python python@2.7.18-1.amzn2.0.5 -CVE-2023-24329 -HIGH -affected - -amazon - - -rancher/mirrored-amazon-aws-cli:2.9.14 -true -Rancher v2.8 head -python -python@2.7.18-1.amzn2.0.5 CVE-2023-27043 HIGH affected @@ -22997,18 +22973,6 @@

How to use this page

Rancher v2.8 head python-libs python-libs@2.7.18-1.amzn2.0.5 -CVE-2023-24329 -HIGH -affected - -amazon - - -rancher/mirrored-amazon-aws-cli:2.9.14 -true -Rancher v2.8 head -python-libs -python-libs@2.7.18-1.amzn2.0.5 CVE-2023-27043 HIGH affected @@ -23237,31 +23201,7 @@

How to use this page

Rancher v2.8 head vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2022-47024 -HIGH -affected - -amazon - - -rancher/mirrored-amazon-aws-cli:2.9.14 -true -Rancher v2.8 head -vim-data -vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-0051 -HIGH -affected - -amazon - - -rancher/mirrored-amazon-aws-cli:2.9.14 -true -Rancher v2.8 head -vim-data -vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-0054 +CVE-2022-4141 HIGH affected @@ -23273,7 +23213,7 @@

How to use this page

Rancher v2.8 head vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-0288 +CVE-2022-4292 HIGH affected @@ -23285,7 +23225,7 @@

How to use this page

Rancher v2.8 head vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-0433 +CVE-2022-47024 HIGH affected @@ -23297,7 +23237,7 @@

How to use this page

Rancher v2.8 head vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-0512 +CVE-2023-0049 HIGH affected @@ -23309,7 +23249,7 @@

How to use this page

Rancher v2.8 head vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-1127 +CVE-2023-0051 HIGH affected @@ -23321,7 +23261,7 @@

How to use this page

Rancher v2.8 head vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-1170 +CVE-2023-0054 HIGH affected @@ -23333,7 +23273,7 @@

How to use this page

Rancher v2.8 head vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-1175 +CVE-2023-0288 HIGH affected @@ -23345,7 +23285,7 @@

How to use this page

Rancher v2.8 head vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-1264 +CVE-2023-0433 HIGH affected @@ -23357,7 +23297,7 @@

How to use this page

Rancher v2.8 head vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-1355 +CVE-2023-0512 HIGH affected @@ -23693,31 +23633,7 @@

How to use this page

Rancher v2.8 head vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2022-47024 -HIGH -affected - -amazon - - -rancher/mirrored-amazon-aws-cli:2.9.14 -true -Rancher v2.8 head -vim-minimal -vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-0051 -HIGH -affected - -amazon - - -rancher/mirrored-amazon-aws-cli:2.9.14 -true -Rancher v2.8 head -vim-minimal -vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-0054 +CVE-2022-4141 HIGH affected @@ -23729,7 +23645,7 @@

How to use this page

Rancher v2.8 head vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-0288 +CVE-2022-4292 HIGH affected @@ -23741,7 +23657,7 @@

How to use this page

Rancher v2.8 head vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-0433 +CVE-2022-47024 HIGH affected @@ -23753,7 +23669,7 @@

How to use this page

Rancher v2.8 head vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-0512 +CVE-2023-0049 HIGH affected @@ -23765,7 +23681,7 @@

How to use this page

Rancher v2.8 head vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-1127 +CVE-2023-0051 HIGH affected @@ -23777,7 +23693,7 @@

How to use this page

Rancher v2.8 head vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-1170 +CVE-2023-0054 HIGH affected @@ -23789,7 +23705,7 @@

How to use this page

Rancher v2.8 head vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-1175 +CVE-2023-0288 HIGH affected @@ -23801,7 +23717,7 @@

How to use this page

Rancher v2.8 head vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-1264 +CVE-2023-0433 HIGH affected @@ -23813,7 +23729,7 @@

How to use this page

Rancher v2.8 head vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-1355 +CVE-2023-0512 HIGH affected @@ -51852,183 +51768,171 @@

How to use this page

gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8 head -glib2-tools -glib2-tools@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 +csi-attacher +github.com/prometheus/client_golang@v1.9.0 +CVE-2022-21698 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8 head -libgio-2_0-0 -libgio-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 +csi-attacher +golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 +CVE-2021-33194 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 +csi-attacher +golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 +CVE-2022-27664 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8 head -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 +csi-attacher +golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 +CVE-2022-41723 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8 head -libgobject-2_0-0 -libgobject-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 +csi-attacher +golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 +CVE-2023-39325 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH +csi-attacher +golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 +CVE-2024-45338 +
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 +csi-attacher +golang.org/x/text@v0.3.6 +CVE-2021-38561 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 +csi-attacher +golang.org/x/text@v0.3.6 +CVE-2022-32149 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 +csi-attacher +google.golang.org/grpc@v1.36.0 +GHSA-m425-mq94-257g HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH +csi-attacher +gopkg.in/yaml.v3@v3.0.0-20210107192922-496545a6307b +CVE-2022-28948 +
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH +csi-attacher +stdlib@v1.16 +CVE-2022-23806 +
HIGH*Severity modified based on SUSE's CVE database and CVSS rating
affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH +csi-attacher +stdlib@v1.16 +CVE-2023-24538 +
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH +csi-attacher +stdlib@v1.16 +CVE-2023-24540 +
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH +csi-attacher +stdlib@v1.16 +CVE-2024-24790 +
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.8 head -usr/local/bin/backing-image-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present gobinary @@ -52036,176 +51940,8 @@

How to use this page

true Rancher v2.8 head csi-attacher -github.com/prometheus/client_golang@v1.9.0 -CVE-2022-21698 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8 head -csi-attacher -golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 -CVE-2021-33194 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8 head -csi-attacher -golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 -CVE-2022-27664 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8 head -csi-attacher -golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 -CVE-2022-41723 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8 head -csi-attacher -golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 -CVE-2023-39325 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8 head -csi-attacher -golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 -CVE-2024-45338 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8 head -csi-attacher -golang.org/x/text@v0.3.6 -CVE-2021-38561 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8 head -csi-attacher -golang.org/x/text@v0.3.6 -CVE-2022-32149 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8 head -csi-attacher -google.golang.org/grpc@v1.36.0 -GHSA-m425-mq94-257g -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8 head -csi-attacher -gopkg.in/yaml.v3@v3.0.0-20210107192922-496545a6307b -CVE-2022-28948 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8 head -csi-attacher -stdlib@v1.16 -CVE-2022-23806 -
HIGH*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8 head -csi-attacher -stdlib@v1.16 -CVE-2023-24538 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8 head -csi-attacher -stdlib@v1.16 -CVE-2023-24540 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8 head -csi-attacher -stdlib@v1.16 -CVE-2024-24790 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8 head -csi-attacher -stdlib@v1.16 -CVE-2021-27918 +stdlib@v1.16 +CVE-2021-27918 HIGH affected @@ -52716,23 +52452,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-attacher:v4.7.0 -true -Rancher v2.8 head -csi-attacher -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v4.7.0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0 true Rancher v2.8 head csi-attacher -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -52740,23 +52464,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0 true Rancher v2.8 head csi-node-driver-registrar -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0 -true -Rancher v2.8 head -csi-node-driver-registrar -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -54168,19 +53880,7 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007 -true -Rancher v2.8 head -csi-provisioner -stdlib@v1.21.13 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204 true Rancher v2.8 head csi-provisioner @@ -54192,30 +53892,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-resizer:v1.12.0 -true -Rancher v2.8 head -csi-resizer -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-resizer:v1.12.0 -true -Rancher v2.8 head -csi-resizer -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - rancher/mirrored-longhornio-csi-resizer:v1.2.0 true Rancher v2.8 head @@ -54900,19 +54576,7 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007 -true -Rancher v2.8 head -csi-snapshotter -stdlib@v1.21.13 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204 true Rancher v2.8 head csi-snapshotter @@ -54924,23 +54588,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-livenessprobe:v2.14.0 -true -Rancher v2.8 head -livenessprobe -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-livenessprobe:v2.14.0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0 true Rancher v2.8 head livenessprobe -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -54948,666 +54600,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -usr/local/bin/grpc_health_probe -stdlib@v1.22.4 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -usr/local/bin/grpc_health_probe -golang.org/x/crypto@v0.24.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -usr/local/bin/grpc_health_probe -golang.org/x/net@v0.26.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -usr/local/bin/longhorn -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8 head -usr/local/bin/longhorn-instance-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -usr/local/bin/grpc_health_probe -stdlib@v1.22.4 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -usr/local/bin/grpc_health_probe -golang.org/x/crypto@v0.24.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -usr/local/bin/grpc_health_probe -golang.org/x/net@v0.26.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8 head -usr/local/bin/longhorn-instance-manager -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.8 head -bind-utils -bind-utils@9.18.28-150600.3.3.1 -SUSE-SU-2025:0355-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.8 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.8 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.8 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.8 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.8 head -usr/local/sbin/longhorn-manager -golang.org/x/crypto@v0.28.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.8 head -usr/local/sbin/longhorn-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.8 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.8 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.8 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.8 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.8 head -longhorn-share-manager -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.8 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.8 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.8 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.8 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.8 head -libxml2-tools -libxml2-tools@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.8 head -nginx -nginx@1.21.5-150600.8.4 -SUSE-SU-2025:0283-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.8 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.8 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.8 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.8 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.8 head -usr/bin/yq -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.8 head -usr/bin/yq -golang.org/x/net@v0.27.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - rancher/mirrored-messagebird-sachet:0.3.1 true Rancher v2.8 head diff --git a/docs/rancher-v2.8.12.html b/docs/rancher-v2.8.12.html index bf11720..9afbca8 100644 --- a/docs/rancher-v2.8.12.html +++ b/docs/rancher-v2.8.12.html @@ -22313,7 +22313,7 @@

How to use this page

Rancher v2.8.12 expat expat@2.1.0-15.amzn2.0.2 -CVE-2022-25313 +CVE-2022-23990 CRITICAL affected @@ -22325,20 +22325,8 @@

How to use this page

Rancher v2.8.12 expat expat@2.1.0-15.amzn2.0.2 -CVE-2024-45490 -HIGH -affected - -amazon - - -rancher/mirrored-amazon-aws-cli:2.9.14 -true -Rancher v2.8.12 -glib2 -glib2@2.56.1-9.amzn2.0.2 -CVE-2018-16428 -HIGH +CVE-2022-25313 +CRITICAL affected amazon @@ -22347,9 +22335,9 @@

How to use this page

rancher/mirrored-amazon-aws-cli:2.9.14 true Rancher v2.8.12 -glib2 -glib2@2.56.1-9.amzn2.0.2 -CVE-2018-16429 +expat +expat@2.1.0-15.amzn2.0.2 +CVE-2024-45490 HIGH affected @@ -22361,7 +22349,7 @@

How to use this page

Rancher v2.8.12 glib2 glib2@2.56.1-9.amzn2.0.2 -CVE-2020-35457 +CVE-2018-16428 HIGH affected @@ -22373,7 +22361,7 @@

How to use this page

Rancher v2.8.12 glib2 glib2@2.56.1-9.amzn2.0.2 -CVE-2021-28153 +CVE-2018-16429 HIGH affected @@ -22385,7 +22373,7 @@

How to use this page

Rancher v2.8.12 glib2 glib2@2.56.1-9.amzn2.0.2 -CVE-2021-3800 +CVE-2020-35457 HIGH affected @@ -22949,18 +22937,6 @@

How to use this page

Rancher v2.8.12 python python@2.7.18-1.amzn2.0.5 -CVE-2023-24329 -HIGH -affected - -amazon - - -rancher/mirrored-amazon-aws-cli:2.9.14 -true -Rancher v2.8.12 -python -python@2.7.18-1.amzn2.0.5 CVE-2023-27043 HIGH affected @@ -22997,18 +22973,6 @@

How to use this page

Rancher v2.8.12 python-libs python-libs@2.7.18-1.amzn2.0.5 -CVE-2023-24329 -HIGH -affected - -amazon - - -rancher/mirrored-amazon-aws-cli:2.9.14 -true -Rancher v2.8.12 -python-libs -python-libs@2.7.18-1.amzn2.0.5 CVE-2023-27043 HIGH affected @@ -23237,31 +23201,7 @@

How to use this page

Rancher v2.8.12 vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2022-47024 -HIGH -affected - -amazon - - -rancher/mirrored-amazon-aws-cli:2.9.14 -true -Rancher v2.8.12 -vim-data -vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-0051 -HIGH -affected - -amazon - - -rancher/mirrored-amazon-aws-cli:2.9.14 -true -Rancher v2.8.12 -vim-data -vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-0054 +CVE-2022-4141 HIGH affected @@ -23273,7 +23213,7 @@

How to use this page

Rancher v2.8.12 vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-0288 +CVE-2022-4292 HIGH affected @@ -23285,7 +23225,7 @@

How to use this page

Rancher v2.8.12 vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-0433 +CVE-2022-47024 HIGH affected @@ -23297,7 +23237,7 @@

How to use this page

Rancher v2.8.12 vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-0512 +CVE-2023-0049 HIGH affected @@ -23309,7 +23249,7 @@

How to use this page

Rancher v2.8.12 vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-1127 +CVE-2023-0051 HIGH affected @@ -23321,7 +23261,7 @@

How to use this page

Rancher v2.8.12 vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-1170 +CVE-2023-0054 HIGH affected @@ -23333,7 +23273,7 @@

How to use this page

Rancher v2.8.12 vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-1175 +CVE-2023-0288 HIGH affected @@ -23345,7 +23285,7 @@

How to use this page

Rancher v2.8.12 vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-1264 +CVE-2023-0433 HIGH affected @@ -23357,7 +23297,7 @@

How to use this page

Rancher v2.8.12 vim-data vim-data@2:9.0.828-1.amzn2.0.1 -CVE-2023-1355 +CVE-2023-0512 HIGH affected @@ -23693,31 +23633,7 @@

How to use this page

Rancher v2.8.12 vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2022-47024 -HIGH -affected - -amazon - - -rancher/mirrored-amazon-aws-cli:2.9.14 -true -Rancher v2.8.12 -vim-minimal -vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-0051 -HIGH -affected - -amazon - - -rancher/mirrored-amazon-aws-cli:2.9.14 -true -Rancher v2.8.12 -vim-minimal -vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-0054 +CVE-2022-4141 HIGH affected @@ -23729,7 +23645,7 @@

How to use this page

Rancher v2.8.12 vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-0288 +CVE-2022-4292 HIGH affected @@ -23741,7 +23657,7 @@

How to use this page

Rancher v2.8.12 vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-0433 +CVE-2022-47024 HIGH affected @@ -23753,7 +23669,7 @@

How to use this page

Rancher v2.8.12 vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-0512 +CVE-2023-0049 HIGH affected @@ -23765,7 +23681,7 @@

How to use this page

Rancher v2.8.12 vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-1127 +CVE-2023-0051 HIGH affected @@ -23777,7 +23693,7 @@

How to use this page

Rancher v2.8.12 vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-1170 +CVE-2023-0054 HIGH affected @@ -23789,7 +23705,7 @@

How to use this page

Rancher v2.8.12 vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-1175 +CVE-2023-0288 HIGH affected @@ -23801,7 +23717,7 @@

How to use this page

Rancher v2.8.12 vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-1264 +CVE-2023-0433 HIGH affected @@ -23813,7 +23729,7 @@

How to use this page

Rancher v2.8.12 vim-minimal vim-minimal@2:9.0.828-1.amzn2.0.1 -CVE-2023-1355 +CVE-2023-0512 HIGH affected @@ -51852,183 +51768,171 @@

How to use this page

gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8.12 -glib2-tools -glib2-tools@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 +csi-attacher +github.com/prometheus/client_golang@v1.9.0 +CVE-2022-21698 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8.12 -libgio-2_0-0 -libgio-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 +csi-attacher +golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 +CVE-2021-33194 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8.12 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 +csi-attacher +golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 +CVE-2022-27664 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8.12 -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 +csi-attacher +golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 +CVE-2022-41723 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8.12 -libgobject-2_0-0 -libgobject-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 +csi-attacher +golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 +CVE-2023-39325 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8.12 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH +csi-attacher +golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 +CVE-2024-45338 +
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8.12 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 +csi-attacher +golang.org/x/text@v0.3.6 +CVE-2021-38561 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8.12 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 +csi-attacher +golang.org/x/text@v0.3.6 +CVE-2022-32149 HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8.12 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 +csi-attacher +google.golang.org/grpc@v1.36.0 +GHSA-m425-mq94-257g HIGH affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8.12 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH +csi-attacher +gopkg.in/yaml.v3@v3.0.0-20210107192922-496545a6307b +CVE-2022-28948 +
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8.12 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH +csi-attacher +stdlib@v1.16 +CVE-2022-23806 +
HIGH*Severity modified based on SUSE's CVE database and CVSS rating
affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8.12 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH +csi-attacher +stdlib@v1.16 +CVE-2023-24538 +
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8.12 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH +csi-attacher +stdlib@v1.16 +CVE-2023-24540 +
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected -sles +gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 +rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.8.12 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH +csi-attacher +stdlib@v1.16 +CVE-2024-24790 +
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.8.12 -usr/local/bin/backing-image-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present gobinary @@ -52036,176 +51940,8 @@

How to use this page

true Rancher v2.8.12 csi-attacher -github.com/prometheus/client_golang@v1.9.0 -CVE-2022-21698 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8.12 -csi-attacher -golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 -CVE-2021-33194 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8.12 -csi-attacher -golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 -CVE-2022-27664 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8.12 -csi-attacher -golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 -CVE-2022-41723 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8.12 -csi-attacher -golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 -CVE-2023-39325 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8.12 -csi-attacher -golang.org/x/net@v0.0.0-20210410081132-afb366fc7cd1 -CVE-2024-45338 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8.12 -csi-attacher -golang.org/x/text@v0.3.6 -CVE-2021-38561 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8.12 -csi-attacher -golang.org/x/text@v0.3.6 -CVE-2022-32149 -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8.12 -csi-attacher -google.golang.org/grpc@v1.36.0 -GHSA-m425-mq94-257g -HIGH -affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8.12 -csi-attacher -gopkg.in/yaml.v3@v3.0.0-20210107192922-496545a6307b -CVE-2022-28948 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8.12 -csi-attacher -stdlib@v1.16 -CVE-2022-23806 -
HIGH*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8.12 -csi-attacher -stdlib@v1.16 -CVE-2023-24538 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8.12 -csi-attacher -stdlib@v1.16 -CVE-2023-24540 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8.12 -csi-attacher -stdlib@v1.16 -CVE-2024-24790 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v3.2.1 -true -Rancher v2.8.12 -csi-attacher -stdlib@v1.16 -CVE-2021-27918 +stdlib@v1.16 +CVE-2021-27918 HIGH affected @@ -52716,23 +52452,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-attacher:v4.7.0 -true -Rancher v2.8.12 -csi-attacher -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v4.7.0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0 true Rancher v2.8.12 csi-attacher -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -52740,23 +52464,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0 true Rancher v2.8.12 csi-node-driver-registrar -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0 -true -Rancher v2.8.12 -csi-node-driver-registrar -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -54168,19 +53880,7 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007 -true -Rancher v2.8.12 -csi-provisioner -stdlib@v1.21.13 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204 true Rancher v2.8.12 csi-provisioner @@ -54192,30 +53892,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-resizer:v1.12.0 -true -Rancher v2.8.12 -csi-resizer -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-resizer:v1.12.0 -true -Rancher v2.8.12 -csi-resizer -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - rancher/mirrored-longhornio-csi-resizer:v1.2.0 true Rancher v2.8.12 @@ -54900,19 +54576,7 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007 -true -Rancher v2.8.12 -csi-snapshotter -stdlib@v1.21.13 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204 true Rancher v2.8.12 csi-snapshotter @@ -54924,23 +54588,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-livenessprobe:v2.14.0 -true -Rancher v2.8.12 -livenessprobe -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-livenessprobe:v2.14.0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0 true Rancher v2.8.12 livenessprobe -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -54948,666 +54600,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -usr/local/bin/grpc_health_probe -stdlib@v1.22.4 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -usr/local/bin/grpc_health_probe -golang.org/x/crypto@v0.24.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -usr/local/bin/grpc_health_probe -golang.org/x/net@v0.26.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -usr/local/bin/longhorn -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.8.12 -usr/local/bin/longhorn-instance-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -usr/local/bin/grpc_health_probe -stdlib@v1.22.4 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -usr/local/bin/grpc_health_probe -golang.org/x/crypto@v0.24.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -usr/local/bin/grpc_health_probe -golang.org/x/net@v0.26.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.8.12 -usr/local/bin/longhorn-instance-manager -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.8.12 -bind-utils -bind-utils@9.18.28-150600.3.3.1 -SUSE-SU-2025:0355-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.8.12 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.8.12 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.8.12 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.8.12 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.8.12 -usr/local/sbin/longhorn-manager -golang.org/x/crypto@v0.28.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.8.12 -usr/local/sbin/longhorn-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.8.12 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.8.12 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.8.12 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.8.12 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.8.12 -longhorn-share-manager -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.8.12 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.8.12 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.8.12 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.8.12 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.8.12 -libxml2-tools -libxml2-tools@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.8.12 -nginx -nginx@1.21.5-150600.8.4 -SUSE-SU-2025:0283-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.8.12 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.8.12 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.8.12 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.8.12 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.8.12 -usr/bin/yq -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.8.12 -usr/bin/yq -golang.org/x/net@v0.27.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - rancher/mirrored-messagebird-sachet:0.3.1 true Rancher v2.8.12 diff --git a/docs/rancher-v2.9-head.html b/docs/rancher-v2.9-head.html index 8a823b4..b1a2a1f 100644 --- a/docs/rancher-v2.9-head.html +++ b/docs/rancher-v2.9-head.html @@ -17640,7 +17640,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kube-apiserver @@ -17652,7 +17652,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kube-apiserver @@ -17664,7 +17664,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kube-apiserver @@ -17676,19 +17676,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.9 head -usr/local/bin/kube-controller-manager -github.com/opencontainers/runc@v1.1.10 -CVE-2024-21626 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kube-controller-manager @@ -17700,7 +17688,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kube-controller-manager @@ -17712,7 +17700,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kube-controller-manager @@ -17724,19 +17712,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.9 head -usr/local/bin/kube-proxy -github.com/opencontainers/runc@v1.1.10 -CVE-2024-21626 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kube-proxy @@ -17748,7 +17724,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kube-proxy @@ -17760,7 +17736,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kube-proxy @@ -17772,7 +17748,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kube-scheduler @@ -17784,7 +17760,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kube-scheduler @@ -17796,7 +17772,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kube-scheduler @@ -17808,7 +17784,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kubectl @@ -17820,235 +17796,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.9 head -usr/local/bin/kubelet -github.com/docker/docker@v20.10.24+incompatible -CVE-2024-41110 -none -not affected -vulnerable code not present -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.9 head -usr/local/bin/kubelet -github.com/opencontainers/runc@v1.1.10 -CVE-2024-21626 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.9 head -usr/local/bin/kubelet -go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful@v0.42.0 -CVE-2023-45142 -none -not affected -vulnerable code not present -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.9 head -usr/local/bin/kubelet -go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 -CVE-2023-47108 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.9 head -usr/local/bin/kubelet -golang.org/x/crypto@v0.21.0 -CVE-2024-45337 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.29.13-rancher1 -false -Rancher v2.9 head -usr/local/bin/kubelet -golang.org/x/net@v0.23.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.9 head -usr/local/bin/kube-apiserver -go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 -CVE-2023-47108 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.9 head -usr/local/bin/kube-apiserver -golang.org/x/crypto@v0.21.0 -CVE-2024-45337 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.9 head -usr/local/bin/kube-apiserver -golang.org/x/net@v0.23.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.9 head -usr/local/bin/kube-controller-manager -go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 -CVE-2023-47108 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.9 head -usr/local/bin/kube-controller-manager -golang.org/x/crypto@v0.21.0 -CVE-2024-45337 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.9 head -usr/local/bin/kube-controller-manager -golang.org/x/net@v0.23.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.9 head -usr/local/bin/kube-proxy -go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 -CVE-2023-47108 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.9 head -usr/local/bin/kube-proxy -golang.org/x/crypto@v0.21.0 -CVE-2024-45337 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.9 head -usr/local/bin/kube-proxy -golang.org/x/net@v0.23.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.9 head -usr/local/bin/kube-scheduler -go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 -CVE-2023-47108 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.9 head -usr/local/bin/kube-scheduler -golang.org/x/crypto@v0.21.0 -CVE-2024-45337 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.9 head -usr/local/bin/kube-scheduler -golang.org/x/net@v0.23.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 -false -Rancher v2.9 head -usr/local/bin/kubectl -golang.org/x/net@v0.23.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kubelet @@ -18060,7 +17808,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kubelet @@ -18072,7 +17820,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kubelet @@ -18084,7 +17832,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kubelet @@ -18096,7 +17844,7 @@

How to use this page

gobinary -rancher/hyperkube:v1.30.9-rancher1 +rancher/hyperkube:v1.30.10-rancher1 false Rancher v2.9 head usr/local/bin/kubelet @@ -52656,186 +52404,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -glib2-tools -glib2-tools@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -libgio-2_0-0 -libgio-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -libgobject-2_0-0 -libgobject-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9 head -usr/local/bin/backing-image-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.9 head @@ -53520,23 +53088,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-attacher:v4.7.0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0 true Rancher v2.9 head csi-attacher -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v4.7.0 -true -Rancher v2.9 head -csi-attacher -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -53544,23 +53100,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0 -true -Rancher v2.9 head -csi-node-driver-registrar -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0 true Rancher v2.9 head csi-node-driver-registrar -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -54972,19 +54516,7 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007 -true -Rancher v2.9 head -csi-provisioner -stdlib@v1.21.13 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204 true Rancher v2.9 head csi-provisioner @@ -54996,30 +54528,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-resizer:v1.12.0 -true -Rancher v2.9 head -csi-resizer -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-resizer:v1.12.0 -true -Rancher v2.9 head -csi-resizer -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - rancher/mirrored-longhornio-csi-resizer:v1.2.0 true Rancher v2.9 head @@ -55704,19 +55212,7 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007 -true -Rancher v2.9 head -csi-snapshotter -stdlib@v1.21.13 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204 true Rancher v2.9 head csi-snapshotter @@ -55728,23 +55224,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-livenessprobe:v2.14.0 -true -Rancher v2.9 head -livenessprobe -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-livenessprobe:v2.14.0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0 true Rancher v2.9 head livenessprobe -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -55752,666 +55236,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -usr/local/bin/grpc_health_probe -stdlib@v1.22.4 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -usr/local/bin/grpc_health_probe -golang.org/x/crypto@v0.24.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -usr/local/bin/grpc_health_probe -golang.org/x/net@v0.26.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -usr/local/bin/longhorn -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9 head -usr/local/bin/longhorn-instance-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -usr/local/bin/grpc_health_probe -stdlib@v1.22.4 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -usr/local/bin/grpc_health_probe -golang.org/x/crypto@v0.24.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -usr/local/bin/grpc_health_probe -golang.org/x/net@v0.26.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9 head -usr/local/bin/longhorn-instance-manager -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.9 head -bind-utils -bind-utils@9.18.28-150600.3.3.1 -SUSE-SU-2025:0355-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.9 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.9 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.9 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.9 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.9 head -usr/local/sbin/longhorn-manager -golang.org/x/crypto@v0.28.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.9 head -usr/local/sbin/longhorn-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.9 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.9 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.9 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.9 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.9 head -longhorn-share-manager -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.9 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.9 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.9 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.9 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.9 head -libxml2-tools -libxml2-tools@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.9 head -nginx -nginx@1.21.5-150600.8.4 -SUSE-SU-2025:0283-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.9 head -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.9 head -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.9 head -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.9 head -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.9 head -usr/bin/yq -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.9 head -usr/bin/yq -golang.org/x/net@v0.27.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - rancher/mirrored-messagebird-sachet:0.3.1 true Rancher v2.9 head diff --git a/docs/rancher-v2.9.6.html b/docs/rancher-v2.9.6.html index 3a4794b..909bf95 100644 --- a/docs/rancher-v2.9.6.html +++ b/docs/rancher-v2.9.6.html @@ -52656,186 +52656,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -glib2-tools -glib2-tools@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -libgio-2_0-0 -libgio-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -libgobject-2_0-0 -libgobject-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-backing-image-manager:v1.7.2 -true -Rancher v2.9.6 -usr/local/bin/backing-image-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - rancher/mirrored-longhornio-csi-attacher:v3.2.1 true Rancher v2.9.6 @@ -53520,23 +53340,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-attacher:v4.7.0 -true -Rancher v2.9.6 -csi-attacher -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-attacher:v4.7.0 +rancher/mirrored-longhornio-csi-attacher:v4.8.0 true Rancher v2.9.6 csi-attacher -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -53544,23 +53352,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0 -true -Rancher v2.9.6 -csi-node-driver-registrar -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-node-driver-registrar:v2.12.0 +rancher/mirrored-longhornio-csi-node-driver-registrar:v2.13.0 true Rancher v2.9.6 csi-node-driver-registrar -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -54972,19 +54768,7 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007 -true -Rancher v2.9.6 -csi-provisioner -stdlib@v1.21.13 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20241007 +rancher/mirrored-longhornio-csi-provisioner:v4.0.1-20250204 true Rancher v2.9.6 csi-provisioner @@ -54996,30 +54780,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-resizer:v1.12.0 -true -Rancher v2.9.6 -csi-resizer -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-resizer:v1.12.0 -true -Rancher v2.9.6 -csi-resizer -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - rancher/mirrored-longhornio-csi-resizer:v1.2.0 true Rancher v2.9.6 @@ -55704,19 +55464,7 @@

How to use this page

gobinary -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007 -true -Rancher v2.9.6 -csi-snapshotter -stdlib@v1.21.13 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20241007 +rancher/mirrored-longhornio-csi-snapshotter:v7.0.2-20250204 true Rancher v2.9.6 csi-snapshotter @@ -55728,23 +55476,11 @@

How to use this page

gobinary -rancher/mirrored-longhornio-livenessprobe:v2.14.0 -true -Rancher v2.9.6 -livenessprobe -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-livenessprobe:v2.14.0 +rancher/mirrored-longhornio-livenessprobe:v2.15.0 true Rancher v2.9.6 livenessprobe -golang.org/x/net@v0.28.0 +golang.org/x/net@v0.32.0 CVE-2024-45338 none not affected @@ -55752,666 +55488,6 @@

How to use this page

gobinary -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -usr/local/bin/grpc_health_probe -stdlib@v1.22.4 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -usr/local/bin/grpc_health_probe -golang.org/x/crypto@v0.24.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -usr/local/bin/grpc_health_probe -golang.org/x/net@v0.26.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -usr/local/bin/longhorn -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-engine:v1.7.2 -true -Rancher v2.9.6 -usr/local/bin/longhorn-instance-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -libgmodule-2_0-0 -libgmodule-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -qemu-img -qemu-img@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -qemu-pr-helper -qemu-pr-helper@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:3744-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -qemu-tools -qemu-tools@8.2.6-150600.3.15.1 -SUSE-SU-2024:4094-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -usr/local/bin/grpc_health_probe -stdlib@v1.22.4 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -usr/local/bin/grpc_health_probe -golang.org/x/crypto@v0.24.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -usr/local/bin/grpc_health_probe -golang.org/x/net@v0.26.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-instance-manager:v1.7.2 -true -Rancher v2.9.6 -usr/local/bin/longhorn-instance-manager -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.9.6 -bind-utils -bind-utils@9.18.28-150600.3.3.1 -SUSE-SU-2025:0355-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.9.6 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.9.6 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.9.6 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.9.6 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.9.6 -usr/local/sbin/longhorn-manager -golang.org/x/crypto@v0.28.0 -CVE-2024-45337 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-manager:v1.7.2 -true -Rancher v2.9.6 -usr/local/sbin/longhorn-manager -golang.org/x/net@v0.30.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.9.6 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.9.6 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.9.6 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.9.6 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-share-manager:v1.7.2 -true -Rancher v2.9.6 -longhorn-share-manager -golang.org/x/net@v0.28.0 -CVE-2024-45338 -none -not affected -vulnerable code not present -gobinary - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.9.6 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.9.6 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.9.6 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.9.6 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.9.6 -libxml2-tools -libxml2-tools@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-longhorn-ui:v1.7.2 -true -Rancher v2.9.6 -nginx -nginx@1.21.5-150600.8.4 -SUSE-SU-2025:0283-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.9.6 -libglib-2_0-0 -libglib-2_0-0@2.78.6-150600.4.3.1 -SUSE-SU-2024:4254-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.9.6 -libtasn1 -libtasn1@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.9.6 -libtasn1-6 -libtasn1-6@4.13-150000.4.8.1 -SUSE-SU-2025:0548-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.9.6 -libxml2-2 -libxml2-2@2.10.3-150500.5.17.1 -SUSE-SU-2025:0348-1 -HIGH -affected - -sles - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.9.6 -usr/bin/yq -stdlib@v1.22.5 -CVE-2024-34156 -
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
-affected - -gobinary - - -rancher/mirrored-longhornio-support-bundle-kit:v0.0.45 -true -Rancher v2.9.6 -usr/bin/yq -golang.org/x/net@v0.27.0 -CVE-2024-45338 -none -not affected -vulnerable code not in execute path -gobinary - - rancher/mirrored-messagebird-sachet:0.3.1 true Rancher v2.9.6