ArgoCD ubuntu base image CVEs #17285
dmarquez-splunk
started this conversation in
General
Replies: 2 comments 2 replies
-
What Argo CD version are you running? |
Beta Was this translation helpful? Give feedback.
2 replies
-
@crenshaw-dev any updates on this that I can relay to our prodsec team? |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Hi,
We are currently receiving vulnerability reports from your internal prodsec team for vulnerabilities in ArgoCD's ubuntu base images. Are there any plans in the near future to upgrade the base image to the latest ubunut OS version? Below are some of the CVEs reported; I look forward to hearing any ideas on how we can best address these moving forward!
https://ubuntu.com/security/CVE-2018-1000021
https://ubuntu.com/security/CVE-2018-6952
https://ubuntu.com/security/CVE-2021-45261
https://ubuntu.com/security/CVE-2022-3219
https://ubuntu.com/security/CVE-2023-29383
https://ubuntu.com/security/CVE-2023-51767
https://ubuntu.com/security/CVE-2023-7008
Beta Was this translation helpful? Give feedback.
All reactions