From 11ecdcfaa83cbbbc4884791dc78a8baf969a4a5e Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" <41898282+github-actions[bot]@users.noreply.github.com> Date: Mon, 27 May 2024 10:16:28 +0300 Subject: [PATCH] [Bot] docs: Update Snyk reports (#18413) Signed-off-by: CI Co-authored-by: CI Signed-off-by: Javier Solana Signed-off-by: Javier Solana --- docs/snyk/index.md | 61 +- docs/snyk/master/argocd-iac-install.html | 90 +- .../master/argocd-iac-namespace-install.html | 2 +- docs/snyk/master/argocd-test.html | 4 +- .../master/ghcr.io_dexidp_dex_v2.38.0.html | 2 +- ..._docker_library_haproxy_2.6.14-alpine.html | 2 +- ...ws_docker_library_redis_7.0.15-alpine.html | 625 +----- .../quay.io_argoproj_argocd_latest.html | 3 +- docs/snyk/master/redis_7.0.15-alpine.html | 625 +----- ...ws_docker_library_redis_7.0.15-alpine.html | 1097 ---------- docs/snyk/v2.10.10/redis_7.0.15-alpine.html | 1097 ---------- .../argocd-iac-install.html | 2 +- .../argocd-iac-namespace-install.html | 2 +- .../{v2.10.10 => v2.10.11}/argocd-test.html | 4 +- .../ghcr.io_dexidp_dex_v2.37.0.html | 2 +- .../haproxy_2.6.14-alpine.html} | 160 +- .../quay.io_argoproj_argocd_v2.10.11.html} | 409 ++-- docs/snyk/v2.10.11/redis_7.0.15-alpine.html | 484 +++++ ...ws_docker_library_redis_7.0.14-alpine.html | 1813 ----------------- .../argocd-iac-install.html | 2 +- .../argocd-iac-namespace-install.html | 2 +- .../{v2.11.1 => v2.11.2}/argocd-test.html | 4 +- .../ghcr.io_dexidp_dex_v2.38.0.html | 2 +- .../haproxy_2.6.14-alpine.html} | 160 +- .../quay.io_argoproj_argocd_v2.11.2.html} | 409 ++-- .../redis_7.0.14-alpine.html | 2 +- ...ws_docker_library_redis_7.0.15-alpine.html | 1097 ---------- docs/snyk/v2.9.15/redis_7.0.15-alpine.html | 1097 ---------- .../argocd-iac-install.html | 2 +- .../argocd-iac-namespace-install.html | 2 +- .../{v2.9.15 => v2.9.16}/argocd-test.html | 2 +- .../ghcr.io_dexidp_dex_v2.37.0.html | 2 +- .../haproxy_2.6.14-alpine.html} | 160 +- .../quay.io_argoproj_argocd_v2.9.16.html} | 411 ++-- docs/snyk/v2.9.16/redis_7.0.15-alpine.html | 484 +++++ 35 files changed, 1932 insertions(+), 8390 deletions(-) delete mode 100644 docs/snyk/v2.10.10/public.ecr.aws_docker_library_redis_7.0.15-alpine.html delete mode 100644 docs/snyk/v2.10.10/redis_7.0.15-alpine.html rename docs/snyk/{v2.10.10 => v2.10.11}/argocd-iac-install.html (99%) rename docs/snyk/{v2.10.10 => v2.10.11}/argocd-iac-namespace-install.html (99%) rename docs/snyk/{v2.10.10 => v2.10.11}/argocd-test.html (99%) rename docs/snyk/{v2.9.15 => v2.10.11}/ghcr.io_dexidp_dex_v2.37.0.html (99%) rename docs/snyk/{v2.9.15/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html => v2.10.11/haproxy_2.6.14-alpine.html} (91%) rename docs/snyk/{v2.10.10/quay.io_argoproj_argocd_v2.10.10.html => v2.10.11/quay.io_argoproj_argocd_v2.10.11.html} (97%) create mode 100644 docs/snyk/v2.10.11/redis_7.0.15-alpine.html delete mode 100644 docs/snyk/v2.11.1/public.ecr.aws_docker_library_redis_7.0.14-alpine.html rename docs/snyk/{v2.11.1 => v2.11.2}/argocd-iac-install.html (99%) rename docs/snyk/{v2.11.1 => v2.11.2}/argocd-iac-namespace-install.html (99%) rename docs/snyk/{v2.11.1 => v2.11.2}/argocd-test.html (99%) rename docs/snyk/{v2.11.1 => v2.11.2}/ghcr.io_dexidp_dex_v2.38.0.html (99%) rename docs/snyk/{v2.10.10/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html => v2.11.2/haproxy_2.6.14-alpine.html} (91%) rename docs/snyk/{v2.11.1/quay.io_argoproj_argocd_v2.11.1.html => v2.11.2/quay.io_argoproj_argocd_v2.11.2.html} (97%) rename docs/snyk/{v2.11.1 => v2.11.2}/redis_7.0.14-alpine.html (99%) delete mode 100644 docs/snyk/v2.9.15/public.ecr.aws_docker_library_redis_7.0.15-alpine.html delete mode 100644 docs/snyk/v2.9.15/redis_7.0.15-alpine.html rename docs/snyk/{v2.9.15 => v2.9.16}/argocd-iac-install.html (99%) rename docs/snyk/{v2.9.15 => v2.9.16}/argocd-iac-namespace-install.html (99%) rename docs/snyk/{v2.9.15 => v2.9.16}/argocd-test.html (99%) rename docs/snyk/{v2.10.10 => v2.9.16}/ghcr.io_dexidp_dex_v2.37.0.html (99%) rename docs/snyk/{v2.11.1/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html => v2.9.16/haproxy_2.6.14-alpine.html} (91%) rename docs/snyk/{v2.9.15/quay.io_argoproj_argocd_v2.9.15.html => v2.9.16/quay.io_argoproj_argocd_v2.9.16.html} (97%) create mode 100644 docs/snyk/v2.9.16/redis_7.0.15-alpine.html diff --git a/docs/snyk/index.md b/docs/snyk/index.md index d532fec3a34a3..1e02829a1cdf6 100644 --- a/docs/snyk/index.md +++ b/docs/snyk/index.md @@ -17,50 +17,47 @@ recent minor releases. | [ui/yarn.lock](master/argocd-test.html) | 0 | 0 | 1 | 0 | | [dex:v2.38.0](master/ghcr.io_dexidp_dex_v2.38.0.html) | 0 | 0 | 6 | 3 | | [haproxy:2.6.14-alpine](master/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html) | 0 | 1 | 4 | 3 | -| [redis:7.0.15-alpine](master/public.ecr.aws_docker_library_redis_7.0.15-alpine.html) | 0 | 0 | 4 | 1 | +| [redis:7.0.15-alpine](master/public.ecr.aws_docker_library_redis_7.0.15-alpine.html) | 0 | 0 | 0 | 0 | | [argocd:latest](master/quay.io_argoproj_argocd_latest.html) | 0 | 0 | 3 | 9 | -| [redis:7.0.15-alpine](master/redis_7.0.15-alpine.html) | 0 | 0 | 4 | 1 | +| [redis:7.0.15-alpine](master/redis_7.0.15-alpine.html) | 0 | 0 | 0 | 0 | | [install.yaml](master/argocd-iac-install.html) | - | - | - | - | | [namespace-install.yaml](master/argocd-iac-namespace-install.html) | - | - | - | - | -### v2.11.1 +### v2.11.2 | | Critical | High | Medium | Low | |---:|:--------:|:----:|:------:|:---:| -| [go.mod](v2.11.1/argocd-test.html) | 0 | 1 | 6 | 0 | -| [ui/yarn.lock](v2.11.1/argocd-test.html) | 0 | 0 | 1 | 0 | -| [dex:v2.38.0](v2.11.1/ghcr.io_dexidp_dex_v2.38.0.html) | 0 | 0 | 6 | 3 | -| [haproxy:2.6.14-alpine](v2.11.1/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html) | 0 | 1 | 4 | 3 | -| [redis:7.0.14-alpine](v2.11.1/public.ecr.aws_docker_library_redis_7.0.14-alpine.html) | 0 | 0 | 6 | 3 | -| [argocd:v2.11.1](v2.11.1/quay.io_argoproj_argocd_v2.11.1.html) | 0 | 0 | 3 | 16 | -| [redis:7.0.14-alpine](v2.11.1/redis_7.0.14-alpine.html) | 0 | 0 | 6 | 3 | -| [install.yaml](v2.11.1/argocd-iac-install.html) | - | - | - | - | -| [namespace-install.yaml](v2.11.1/argocd-iac-namespace-install.html) | - | - | - | - | +| [go.mod](v2.11.2/argocd-test.html) | 0 | 1 | 6 | 0 | +| [ui/yarn.lock](v2.11.2/argocd-test.html) | 0 | 0 | 1 | 0 | +| [dex:v2.38.0](v2.11.2/ghcr.io_dexidp_dex_v2.38.0.html) | 0 | 0 | 6 | 3 | +| [haproxy:2.6.14-alpine](v2.11.2/haproxy_2.6.14-alpine.html) | 0 | 1 | 4 | 3 | +| [argocd:v2.11.2](v2.11.2/quay.io_argoproj_argocd_v2.11.2.html) | 0 | 0 | 3 | 16 | +| [redis:7.0.14-alpine](v2.11.2/redis_7.0.14-alpine.html) | 0 | 0 | 6 | 3 | +| [install.yaml](v2.11.2/argocd-iac-install.html) | - | - | - | - | +| [namespace-install.yaml](v2.11.2/argocd-iac-namespace-install.html) | - | - | - | - | -### v2.10.10 +### v2.10.11 | | Critical | High | Medium | Low | |---:|:--------:|:----:|:------:|:---:| -| [go.mod](v2.10.10/argocd-test.html) | 0 | 1 | 7 | 0 | -| [ui/yarn.lock](v2.10.10/argocd-test.html) | 0 | 0 | 1 | 0 | -| [dex:v2.37.0](v2.10.10/ghcr.io_dexidp_dex_v2.37.0.html) | 1 | 1 | 7 | 3 | -| [haproxy:2.6.14-alpine](v2.10.10/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html) | 0 | 1 | 4 | 3 | -| [redis:7.0.15-alpine](v2.10.10/public.ecr.aws_docker_library_redis_7.0.15-alpine.html) | 0 | 0 | 4 | 1 | -| [argocd:v2.10.10](v2.10.10/quay.io_argoproj_argocd_v2.10.10.html) | 0 | 0 | 3 | 16 | -| [redis:7.0.15-alpine](v2.10.10/redis_7.0.15-alpine.html) | 0 | 0 | 4 | 1 | -| [install.yaml](v2.10.10/argocd-iac-install.html) | - | - | - | - | -| [namespace-install.yaml](v2.10.10/argocd-iac-namespace-install.html) | - | - | - | - | +| [go.mod](v2.10.11/argocd-test.html) | 0 | 1 | 7 | 0 | +| [ui/yarn.lock](v2.10.11/argocd-test.html) | 0 | 0 | 1 | 0 | +| [dex:v2.37.0](v2.10.11/ghcr.io_dexidp_dex_v2.37.0.html) | 1 | 1 | 7 | 3 | +| [haproxy:2.6.14-alpine](v2.10.11/haproxy_2.6.14-alpine.html) | 0 | 1 | 4 | 3 | +| [argocd:v2.10.11](v2.10.11/quay.io_argoproj_argocd_v2.10.11.html) | 0 | 0 | 3 | 16 | +| [redis:7.0.15-alpine](v2.10.11/redis_7.0.15-alpine.html) | 0 | 0 | 0 | 0 | +| [install.yaml](v2.10.11/argocd-iac-install.html) | - | - | - | - | +| [namespace-install.yaml](v2.10.11/argocd-iac-namespace-install.html) | - | - | - | - | -### v2.9.15 +### v2.9.16 | | Critical | High | Medium | Low | |---:|:--------:|:----:|:------:|:---:| -| [go.mod](v2.9.15/argocd-test.html) | 0 | 2 | 7 | 0 | -| [ui/yarn.lock](v2.9.15/argocd-test.html) | 0 | 0 | 1 | 0 | -| [dex:v2.37.0](v2.9.15/ghcr.io_dexidp_dex_v2.37.0.html) | 1 | 1 | 7 | 3 | -| [haproxy:2.6.14-alpine](v2.9.15/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html) | 0 | 1 | 4 | 3 | -| [redis:7.0.15-alpine](v2.9.15/public.ecr.aws_docker_library_redis_7.0.15-alpine.html) | 0 | 0 | 4 | 1 | -| [argocd:v2.9.15](v2.9.15/quay.io_argoproj_argocd_v2.9.15.html) | 0 | 0 | 3 | 16 | -| [redis:7.0.15-alpine](v2.9.15/redis_7.0.15-alpine.html) | 0 | 0 | 4 | 1 | -| [install.yaml](v2.9.15/argocd-iac-install.html) | - | - | - | - | -| [namespace-install.yaml](v2.9.15/argocd-iac-namespace-install.html) | - | - | - | - | +| [go.mod](v2.9.16/argocd-test.html) | 0 | 2 | 7 | 0 | +| [ui/yarn.lock](v2.9.16/argocd-test.html) | 0 | 0 | 1 | 0 | +| [dex:v2.37.0](v2.9.16/ghcr.io_dexidp_dex_v2.37.0.html) | 1 | 1 | 7 | 3 | +| [haproxy:2.6.14-alpine](v2.9.16/haproxy_2.6.14-alpine.html) | 0 | 1 | 4 | 3 | +| [argocd:v2.9.16](v2.9.16/quay.io_argoproj_argocd_v2.9.16.html) | 0 | 0 | 3 | 16 | +| [redis:7.0.15-alpine](v2.9.16/redis_7.0.15-alpine.html) | 0 | 0 | 0 | 0 | +| [install.yaml](v2.9.16/argocd-iac-install.html) | - | - | - | - | +| [namespace-install.yaml](v2.9.16/argocd-iac-namespace-install.html) | - | - | - | - | diff --git a/docs/snyk/master/argocd-iac-install.html b/docs/snyk/master/argocd-iac-install.html index 350d3d6b3f96f..b6717dac7c68b 100644 --- a/docs/snyk/master/argocd-iac-install.html +++ b/docs/snyk/master/argocd-iac-install.html @@ -456,7 +456,7 @@

Snyk test report

-

May 22nd 2024, 5:03:32 pm (UTC+00:00)

+

May 26th 2024, 12:17:52 am (UTC+00:00)

Scanned the following path: @@ -507,7 +507,7 @@

Role or ClusterRole with dangerous permissions

  • - Line number: 21094 + Line number: 21098
  • @@ -553,7 +553,7 @@

    Role or ClusterRole with dangerous permissions

  • - Line number: 20779 + Line number: 20783
  • @@ -599,7 +599,7 @@

    Role or ClusterRole with dangerous permissions

  • - Line number: 20864 + Line number: 20868
  • @@ -645,7 +645,7 @@

    Role or ClusterRole with dangerous permissions

  • - Line number: 20892 + Line number: 20896
  • @@ -691,7 +691,7 @@

    Role or ClusterRole with dangerous permissions

  • - Line number: 20922 + Line number: 20926
  • @@ -737,7 +737,7 @@

    Role or ClusterRole with dangerous permissions

  • - Line number: 20940 + Line number: 20944
  • @@ -783,7 +783,7 @@

    Role or ClusterRole with dangerous permissions

  • - Line number: 20958 + Line number: 20962
  • @@ -829,7 +829,7 @@

    Role or ClusterRole with dangerous permissions

  • - Line number: 20980 + Line number: 20984
  • @@ -881,7 +881,7 @@

    Container could be running with outdated image

  • - Line number: 22026 + Line number: 22030
  • @@ -933,7 +933,7 @@

    Container could be running with outdated image

  • - Line number: 22319 + Line number: 22323
  • @@ -991,7 +991,7 @@

    Container has no CPU limit

  • - Line number: 21587 + Line number: 21591
  • @@ -1049,7 +1049,7 @@

    Container has no CPU limit

  • - Line number: 21838 + Line number: 21842
  • @@ -1107,7 +1107,7 @@

    Container has no CPU limit

  • - Line number: 21804 + Line number: 21808
  • @@ -1165,7 +1165,7 @@

    Container has no CPU limit

  • - Line number: 21898 + Line number: 21902
  • @@ -1223,7 +1223,7 @@

    Container has no CPU limit

  • - Line number: 21997 + Line number: 22001
  • @@ -1281,7 +1281,7 @@

    Container has no CPU limit

  • - Line number: 22021 + Line number: 22025
  • @@ -1339,7 +1339,7 @@

    Container has no CPU limit

  • - Line number: 22319 + Line number: 22323
  • @@ -1397,7 +1397,7 @@

    Container has no CPU limit

  • - Line number: 22078 + Line number: 22082
  • @@ -1455,7 +1455,7 @@

    Container has no CPU limit

  • - Line number: 22404 + Line number: 22408
  • @@ -1513,7 +1513,7 @@

    Container has no CPU limit

  • - Line number: 22755 + Line number: 22759
  • @@ -1565,7 +1565,7 @@

    Container is running with multiple open ports

  • - Line number: 21818 + Line number: 21822
  • @@ -1617,7 +1617,7 @@

    Container is running without liveness probe

  • - Line number: 21587 + Line number: 21591
  • @@ -1669,7 +1669,7 @@

    Container is running without liveness probe

  • - Line number: 21804 + Line number: 21808
  • @@ -1721,7 +1721,7 @@

    Container is running without liveness probe

  • - Line number: 21997 + Line number: 22001
  • @@ -1779,7 +1779,7 @@

    Container is running without memory limit

  • - Line number: 21587 + Line number: 21591
  • @@ -1837,7 +1837,7 @@

    Container is running without memory limit

  • - Line number: 21804 + Line number: 21808
  • @@ -1895,7 +1895,7 @@

    Container is running without memory limit

  • - Line number: 21838 + Line number: 21842
  • @@ -1953,7 +1953,7 @@

    Container is running without memory limit

  • - Line number: 21898 + Line number: 21902
  • @@ -2011,7 +2011,7 @@

    Container is running without memory limit

  • - Line number: 21997 + Line number: 22001
  • @@ -2069,7 +2069,7 @@

    Container is running without memory limit

  • - Line number: 22021 + Line number: 22025
  • @@ -2127,7 +2127,7 @@

    Container is running without memory limit

  • - Line number: 22319 + Line number: 22323
  • @@ -2185,7 +2185,7 @@

    Container is running without memory limit

  • - Line number: 22078 + Line number: 22082
  • @@ -2243,7 +2243,7 @@

    Container is running without memory limit

  • - Line number: 22404 + Line number: 22408
  • @@ -2301,7 +2301,7 @@

    Container is running without memory limit

  • - Line number: 22755 + Line number: 22759
  • @@ -2357,7 +2357,7 @@

    Container's or Pod's UID could clash with hos
  • - Line number: 21728 + Line number: 21732
  • @@ -2413,7 +2413,7 @@

    Container's or Pod's UID could clash with hos
  • - Line number: 21846 + Line number: 21850
  • @@ -2469,7 +2469,7 @@

    Container's or Pod's UID could clash with hos
  • - Line number: 21821 + Line number: 21825
  • @@ -2525,7 +2525,7 @@

    Container's or Pod's UID could clash with hos
  • - Line number: 21931 + Line number: 21935
  • @@ -2581,7 +2581,7 @@

    Container's or Pod's UID could clash with hos
  • - Line number: 22014 + Line number: 22018
  • @@ -2637,7 +2637,7 @@

    Container's or Pod's UID could clash with hos
  • - Line number: 22028 + Line number: 22032
  • @@ -2693,7 +2693,7 @@

    Container's or Pod's UID could clash with hos
  • - Line number: 22326 + Line number: 22330
  • @@ -2749,7 +2749,7 @@

    Container's or Pod's UID could clash with hos
  • - Line number: 22292 + Line number: 22296
  • @@ -2805,7 +2805,7 @@

    Container's or Pod's UID could clash with hos
  • - Line number: 22665 + Line number: 22669
  • @@ -2861,7 +2861,7 @@

    Container's or Pod's UID could clash with hos
  • - Line number: 22956 + Line number: 22960
  • diff --git a/docs/snyk/master/argocd-iac-namespace-install.html b/docs/snyk/master/argocd-iac-namespace-install.html index 70695124c9889..54c52fab97d7f 100644 --- a/docs/snyk/master/argocd-iac-namespace-install.html +++ b/docs/snyk/master/argocd-iac-namespace-install.html @@ -456,7 +456,7 @@

    Snyk test report

    -

    May 22nd 2024, 5:03:42 pm (UTC+00:00)

    +

    May 26th 2024, 12:18:02 am (UTC+00:00)

    Scanned the following path: diff --git a/docs/snyk/master/argocd-test.html b/docs/snyk/master/argocd-test.html index f33e36bcbf52e..e01fc71d84551 100644 --- a/docs/snyk/master/argocd-test.html +++ b/docs/snyk/master/argocd-test.html @@ -456,7 +456,7 @@

    Snyk test report

    -

    May 22nd 2024, 5:01:16 pm (UTC+00:00)

    +

    May 26th 2024, 12:15:49 am (UTC+00:00)

    Scanned the following paths: @@ -469,7 +469,7 @@

    Snyk test report

    7 known vulnerabilities
    25 vulnerable dependency paths
    -
    2056 dependencies
    +
    2057 dependencies
    diff --git a/docs/snyk/master/ghcr.io_dexidp_dex_v2.38.0.html b/docs/snyk/master/ghcr.io_dexidp_dex_v2.38.0.html index b3412460159e8..4f9e44f66e9bd 100644 --- a/docs/snyk/master/ghcr.io_dexidp_dex_v2.38.0.html +++ b/docs/snyk/master/ghcr.io_dexidp_dex_v2.38.0.html @@ -456,7 +456,7 @@

    Snyk test report

    -

    May 22nd 2024, 5:01:30 pm (UTC+00:00)

    +

    May 26th 2024, 12:15:58 am (UTC+00:00)

    Scanned the following paths: diff --git a/docs/snyk/master/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html b/docs/snyk/master/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html index 5d3b26c504d2c..7ada82538ba93 100644 --- a/docs/snyk/master/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html +++ b/docs/snyk/master/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html @@ -456,7 +456,7 @@

    Snyk test report

    -

    May 22nd 2024, 5:01:37 pm (UTC+00:00)

    +

    May 26th 2024, 12:16:05 am (UTC+00:00)

    Scanned the following path: diff --git a/docs/snyk/master/public.ecr.aws_docker_library_redis_7.0.15-alpine.html b/docs/snyk/master/public.ecr.aws_docker_library_redis_7.0.15-alpine.html index da89cf9408af8..43905d3a524dd 100644 --- a/docs/snyk/master/public.ecr.aws_docker_library_redis_7.0.15-alpine.html +++ b/docs/snyk/master/public.ecr.aws_docker_library_redis_7.0.15-alpine.html @@ -7,7 +7,7 @@ Snyk test report - + @@ -456,7 +456,7 @@

    Snyk test report

    -

    May 22nd 2024, 5:01:45 pm (UTC+00:00)

    +

    May 26th 2024, 12:16:11 am (UTC+00:00)

    Scanned the following paths: @@ -467,629 +467,16 @@

    Snyk test report

    -
    5 known vulnerabilities
    -
    29 vulnerable dependency paths
    -
    19 dependencies
    +
    0 known vulnerabilities
    +
    0 vulnerable dependency paths
    +
    18 dependencies
    -
    -
    -

    Out-of-bounds Write

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A heap-buffer-overflow was discovered in BusyBox v.1.36.1 in the next_token function at awk.c:1159.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r16 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    Use After Free

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A use-after-free vulnerability was discovered in BusyBox v.1.36.1 via a crafted awk pattern in the awk.c copyvar function.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    Use After Free

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A use-after-free vulnerability in BusyBox v.1.36.1 allows attackers to cause a denial of service via a crafted awk pattern in the awk.c evaluate function.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    Use After Free

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A use-after-free vulnerability was discovered in xasprintf function in xfuncs_printf.c:344 in BusyBox v.1.36.1.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    CVE-2024-4603

    -
    - -
    - low severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - openssl/libcrypto3 -
    • - -
    • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and openssl/libcrypto3@3.1.4-r6 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libssl3@3.1.4-r6 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream openssl package and not the openssl package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    Issue summary: Checking excessively long DSA keys or parameters may be very - slow.

    -

    Impact summary: Applications that use the functions EVP_PKEY_param_check() - or EVP_PKEY_public_check() to check a DSA public key or DSA parameters may - experience long delays. Where the key or parameters that are being checked - have been obtained from an untrusted source this may lead to a Denial of - Service.

    -

    The functions EVP_PKEY_param_check() or EVP_PKEY_public_check() perform - various checks on DSA parameters. Some of those computations take a long time - if the modulus (p parameter) is too large.

    -

    Trying to use a very large modulus is slow and OpenSSL will not allow using - public keys with a modulus which is over 10,000 bits in length for signature - verification. However the key and parameter check functions do not limit - the modulus size when performing the checks.

    -

    An application that calls EVP_PKEY_param_check() or EVP_PKEY_public_check() - and supplies a key or parameters obtained from an untrusted source could be - vulnerable to a Denial of Service attack.

    -

    These functions are not called by OpenSSL itself on untrusted DSA keys so - only applications that directly call these functions may be vulnerable.

    -

    Also vulnerable are the OpenSSL pkey and pkeyparam command line applications - when using the -check option.

    -

    The OpenSSL SSL/TLS implementation is not affected by this issue.

    -

    The OpenSSL 3.0 and 3.1 FIPS providers are affected by this issue.

    -

    Remediation

    -

    Upgrade Alpine:3.19 openssl to version 3.1.5-r0 or higher.

    -

    References

    - - -
    - - - -
    -
    + No known vulnerabilities detected.
    diff --git a/docs/snyk/master/quay.io_argoproj_argocd_latest.html b/docs/snyk/master/quay.io_argoproj_argocd_latest.html index 9174104a92b1e..836b9fc9fd08e 100644 --- a/docs/snyk/master/quay.io_argoproj_argocd_latest.html +++ b/docs/snyk/master/quay.io_argoproj_argocd_latest.html @@ -456,7 +456,7 @@

    Snyk test report

    -

    May 22nd 2024, 5:02:03 pm (UTC+00:00)

    +

    May 26th 2024, 12:16:30 am (UTC+00:00)

    Scanned the following paths: @@ -1678,6 +1678,7 @@

    References

  • https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QHNBXGKJWISJETTTDTZKTBFIBJUOSLKL/
  • https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4GMDEG5PKONWNHOEYSUDRT6JEOISRMN2/
  • https://access.redhat.com/errata/RHSA-2024:2463
  • +
  • https://access.redhat.com/errata/RHSA-2024:3203

  • diff --git a/docs/snyk/master/redis_7.0.15-alpine.html b/docs/snyk/master/redis_7.0.15-alpine.html index 8c3aae4d38e19..45e9a02784a5a 100644 --- a/docs/snyk/master/redis_7.0.15-alpine.html +++ b/docs/snyk/master/redis_7.0.15-alpine.html @@ -7,7 +7,7 @@ Snyk test report - + @@ -456,7 +456,7 @@

    Snyk test report

    -

    May 22nd 2024, 5:02:08 pm (UTC+00:00)

    +

    May 26th 2024, 12:16:35 am (UTC+00:00)

    Scanned the following paths: @@ -467,629 +467,16 @@

    Snyk test report

    -
    5 known vulnerabilities
    -
    29 vulnerable dependency paths
    -
    19 dependencies
    +
    0 known vulnerabilities
    +
    0 vulnerable dependency paths
    +
    18 dependencies
    -
    -
    -

    Out-of-bounds Write

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A heap-buffer-overflow was discovered in BusyBox v.1.36.1 in the next_token function at awk.c:1159.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r16 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    Use After Free

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A use-after-free vulnerability was discovered in BusyBox v.1.36.1 via a crafted awk pattern in the awk.c copyvar function.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    Use After Free

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A use-after-free vulnerability in BusyBox v.1.36.1 allows attackers to cause a denial of service via a crafted awk pattern in the awk.c evaluate function.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    Use After Free

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A use-after-free vulnerability was discovered in xasprintf function in xfuncs_printf.c:344 in BusyBox v.1.36.1.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    CVE-2024-4603

    -
    - -
    - low severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - openssl/libcrypto3 -
    • - -
    • Introduced through: - - docker-image|redis@7.0.15-alpine and openssl/libcrypto3@3.1.4-r6 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libssl3@3.1.4-r6 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream openssl package and not the openssl package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    Issue summary: Checking excessively long DSA keys or parameters may be very - slow.

    -

    Impact summary: Applications that use the functions EVP_PKEY_param_check() - or EVP_PKEY_public_check() to check a DSA public key or DSA parameters may - experience long delays. Where the key or parameters that are being checked - have been obtained from an untrusted source this may lead to a Denial of - Service.

    -

    The functions EVP_PKEY_param_check() or EVP_PKEY_public_check() perform - various checks on DSA parameters. Some of those computations take a long time - if the modulus (p parameter) is too large.

    -

    Trying to use a very large modulus is slow and OpenSSL will not allow using - public keys with a modulus which is over 10,000 bits in length for signature - verification. However the key and parameter check functions do not limit - the modulus size when performing the checks.

    -

    An application that calls EVP_PKEY_param_check() or EVP_PKEY_public_check() - and supplies a key or parameters obtained from an untrusted source could be - vulnerable to a Denial of Service attack.

    -

    These functions are not called by OpenSSL itself on untrusted DSA keys so - only applications that directly call these functions may be vulnerable.

    -

    Also vulnerable are the OpenSSL pkey and pkeyparam command line applications - when using the -check option.

    -

    The OpenSSL SSL/TLS implementation is not affected by this issue.

    -

    The OpenSSL 3.0 and 3.1 FIPS providers are affected by this issue.

    -

    Remediation

    -

    Upgrade Alpine:3.19 openssl to version 3.1.5-r0 or higher.

    -

    References

    - - -
    - - - -
    -
    + No known vulnerabilities detected.
    diff --git a/docs/snyk/v2.10.10/public.ecr.aws_docker_library_redis_7.0.15-alpine.html b/docs/snyk/v2.10.10/public.ecr.aws_docker_library_redis_7.0.15-alpine.html deleted file mode 100644 index 61b90d45dcde7..0000000000000 --- a/docs/snyk/v2.10.10/public.ecr.aws_docker_library_redis_7.0.15-alpine.html +++ /dev/null @@ -1,1097 +0,0 @@ - - - - - - - - - Snyk test report - - - - - - - - - -
    -
    -
    -
    - - - Snyk - Open Source Security - - - - - - - -
    -

    Snyk test report

    - -

    May 22nd 2024, 5:06:40 pm (UTC+00:00)

    -
    -
    - Scanned the following paths: -
      -
    • public.ecr.aws/docker/library/redis:7.0.15-alpine/docker/library/redis (apk)
    • -
    • public.ecr.aws/docker/library/redis:7.0.15-alpine/tianon/gosu//usr/local/bin/gosu (gomodules)
    • -
    -
    - -
    -
    5 known vulnerabilities
    -
    29 vulnerable dependency paths
    -
    19 dependencies
    -
    -
    -
    -
    - -
    -
    -
    -

    Out-of-bounds Write

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A heap-buffer-overflow was discovered in BusyBox v.1.36.1 in the next_token function at awk.c:1159.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r16 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    Use After Free

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A use-after-free vulnerability was discovered in BusyBox v.1.36.1 via a crafted awk pattern in the awk.c copyvar function.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    Use After Free

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A use-after-free vulnerability in BusyBox v.1.36.1 allows attackers to cause a denial of service via a crafted awk pattern in the awk.c evaluate function.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    Use After Free

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A use-after-free vulnerability was discovered in xasprintf function in xfuncs_printf.c:344 in BusyBox v.1.36.1.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    CVE-2024-4603

    -
    - -
    - low severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - openssl/libcrypto3 -
    • - -
    • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and openssl/libcrypto3@3.1.4-r6 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libssl3@3.1.4-r6 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream openssl package and not the openssl package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    Issue summary: Checking excessively long DSA keys or parameters may be very - slow.

    -

    Impact summary: Applications that use the functions EVP_PKEY_param_check() - or EVP_PKEY_public_check() to check a DSA public key or DSA parameters may - experience long delays. Where the key or parameters that are being checked - have been obtained from an untrusted source this may lead to a Denial of - Service.

    -

    The functions EVP_PKEY_param_check() or EVP_PKEY_public_check() perform - various checks on DSA parameters. Some of those computations take a long time - if the modulus (p parameter) is too large.

    -

    Trying to use a very large modulus is slow and OpenSSL will not allow using - public keys with a modulus which is over 10,000 bits in length for signature - verification. However the key and parameter check functions do not limit - the modulus size when performing the checks.

    -

    An application that calls EVP_PKEY_param_check() or EVP_PKEY_public_check() - and supplies a key or parameters obtained from an untrusted source could be - vulnerable to a Denial of Service attack.

    -

    These functions are not called by OpenSSL itself on untrusted DSA keys so - only applications that directly call these functions may be vulnerable.

    -

    Also vulnerable are the OpenSSL pkey and pkeyparam command line applications - when using the -check option.

    -

    The OpenSSL SSL/TLS implementation is not affected by this issue.

    -

    The OpenSSL 3.0 and 3.1 FIPS providers are affected by this issue.

    -

    Remediation

    -

    Upgrade Alpine:3.19 openssl to version 3.1.5-r0 or higher.

    -

    References

    - - -
    - - - -
    -
    -
    -
    - - - diff --git a/docs/snyk/v2.10.10/redis_7.0.15-alpine.html b/docs/snyk/v2.10.10/redis_7.0.15-alpine.html deleted file mode 100644 index d53bee0d5f389..0000000000000 --- a/docs/snyk/v2.10.10/redis_7.0.15-alpine.html +++ /dev/null @@ -1,1097 +0,0 @@ - - - - - - - - - Snyk test report - - - - - - - - - -
    -
    -
    -
    - - - Snyk - Open Source Security - - - - - - - -
    -

    Snyk test report

    - -

    May 22nd 2024, 5:07:07 pm (UTC+00:00)

    -
    -
    - Scanned the following paths: -
      -
    • redis:7.0.15-alpine (apk)
    • -
    • redis:7.0.15-alpine/tianon/gosu//usr/local/bin/gosu (gomodules)
    • -
    -
    - -
    -
    5 known vulnerabilities
    -
    29 vulnerable dependency paths
    -
    19 dependencies
    -
    -
    -
    -
    - -
    -
    -
    -

    Out-of-bounds Write

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A heap-buffer-overflow was discovered in BusyBox v.1.36.1 in the next_token function at awk.c:1159.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r16 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    Use After Free

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A use-after-free vulnerability was discovered in BusyBox v.1.36.1 via a crafted awk pattern in the awk.c copyvar function.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    Use After Free

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A use-after-free vulnerability in BusyBox v.1.36.1 allows attackers to cause a denial of service via a crafted awk pattern in the awk.c evaluate function.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    Use After Free

    -
    - -
    - medium severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - busybox/busybox -
    • - -
    • Introduced through: - - docker-image|redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    A use-after-free vulnerability was discovered in xasprintf function in xfuncs_printf.c:344 in BusyBox v.1.36.1.

    -

    Remediation

    -

    Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

    -

    References

    - - -
    - - - -
    -
    -

    CVE-2024-4603

    -
    - -
    - low severity -
    - -
    - -
      -
    • - Package Manager: alpine:3.19 -
    • -
    • - Vulnerable module: - - openssl/libcrypto3 -
    • - -
    • Introduced through: - - docker-image|redis@7.0.15-alpine and openssl/libcrypto3@3.1.4-r6 - -
    • -
    - -
    - - -

    Detailed paths

    - -
      -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libssl3@3.1.4-r6 - - openssl/libcrypto3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libssl3@3.1.4-r6 - - - -
    • -
    - -
    - -
    - -

    NVD Description

    -

    Note: Versions mentioned in the description apply only to the upstream openssl package and not the openssl package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

    -

    Issue summary: Checking excessively long DSA keys or parameters may be very - slow.

    -

    Impact summary: Applications that use the functions EVP_PKEY_param_check() - or EVP_PKEY_public_check() to check a DSA public key or DSA parameters may - experience long delays. Where the key or parameters that are being checked - have been obtained from an untrusted source this may lead to a Denial of - Service.

    -

    The functions EVP_PKEY_param_check() or EVP_PKEY_public_check() perform - various checks on DSA parameters. Some of those computations take a long time - if the modulus (p parameter) is too large.

    -

    Trying to use a very large modulus is slow and OpenSSL will not allow using - public keys with a modulus which is over 10,000 bits in length for signature - verification. However the key and parameter check functions do not limit - the modulus size when performing the checks.

    -

    An application that calls EVP_PKEY_param_check() or EVP_PKEY_public_check() - and supplies a key or parameters obtained from an untrusted source could be - vulnerable to a Denial of Service attack.

    -

    These functions are not called by OpenSSL itself on untrusted DSA keys so - only applications that directly call these functions may be vulnerable.

    -

    Also vulnerable are the OpenSSL pkey and pkeyparam command line applications - when using the -check option.

    -

    The OpenSSL SSL/TLS implementation is not affected by this issue.

    -

    The OpenSSL 3.0 and 3.1 FIPS providers are affected by this issue.

    -

    Remediation

    -

    Upgrade Alpine:3.19 openssl to version 3.1.5-r0 or higher.

    -

    References

    - - -
    - - - -
    -
    -
    -
    - - - diff --git a/docs/snyk/v2.10.10/argocd-iac-install.html b/docs/snyk/v2.10.11/argocd-iac-install.html similarity index 99% rename from docs/snyk/v2.10.10/argocd-iac-install.html rename to docs/snyk/v2.10.11/argocd-iac-install.html index a283fc8a34845..e1e9d11316247 100644 --- a/docs/snyk/v2.10.10/argocd-iac-install.html +++ b/docs/snyk/v2.10.11/argocd-iac-install.html @@ -456,7 +456,7 @@

    Snyk test report

    -

    May 22nd 2024, 5:08:27 pm (UTC+00:00)

    +

    May 26th 2024, 12:22:28 am (UTC+00:00)

    Scanned the following path: diff --git a/docs/snyk/v2.10.10/argocd-iac-namespace-install.html b/docs/snyk/v2.10.11/argocd-iac-namespace-install.html similarity index 99% rename from docs/snyk/v2.10.10/argocd-iac-namespace-install.html rename to docs/snyk/v2.10.11/argocd-iac-namespace-install.html index 5dfb80f5030bf..25012a4cb5c64 100644 --- a/docs/snyk/v2.10.10/argocd-iac-namespace-install.html +++ b/docs/snyk/v2.10.11/argocd-iac-namespace-install.html @@ -456,7 +456,7 @@

    Snyk test report

    -

    May 22nd 2024, 5:08:38 pm (UTC+00:00)

    +

    May 26th 2024, 12:22:37 am (UTC+00:00)

    Scanned the following path: diff --git a/docs/snyk/v2.10.10/argocd-test.html b/docs/snyk/v2.10.11/argocd-test.html similarity index 99% rename from docs/snyk/v2.10.10/argocd-test.html rename to docs/snyk/v2.10.11/argocd-test.html index 70ec92d9d082e..c871aa7de7992 100644 --- a/docs/snyk/v2.10.10/argocd-test.html +++ b/docs/snyk/v2.10.11/argocd-test.html @@ -456,7 +456,7 @@

    Snyk test report

    -

    May 22nd 2024, 5:06:24 pm (UTC+00:00)

    +

    May 26th 2024, 12:20:34 am (UTC+00:00)

    Scanned the following paths: @@ -850,7 +850,7 @@

    Detailed paths

    Introduced through: github.com/argoproj/argo-cd/v2@0.0.0 - go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@0.42.0 + go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@0.46.1 google.golang.org/grpc@1.59.0 diff --git a/docs/snyk/v2.9.15/ghcr.io_dexidp_dex_v2.37.0.html b/docs/snyk/v2.10.11/ghcr.io_dexidp_dex_v2.37.0.html similarity index 99% rename from docs/snyk/v2.9.15/ghcr.io_dexidp_dex_v2.37.0.html rename to docs/snyk/v2.10.11/ghcr.io_dexidp_dex_v2.37.0.html index 6fd5710dc4f9e..d7efab9b56d31 100644 --- a/docs/snyk/v2.9.15/ghcr.io_dexidp_dex_v2.37.0.html +++ b/docs/snyk/v2.10.11/ghcr.io_dexidp_dex_v2.37.0.html @@ -456,7 +456,7 @@

    Snyk test report

    -

    May 22nd 2024, 5:09:03 pm (UTC+00:00)

    +

    May 26th 2024, 12:20:43 am (UTC+00:00)

    Scanned the following paths: diff --git a/docs/snyk/v2.9.15/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html b/docs/snyk/v2.10.11/haproxy_2.6.14-alpine.html similarity index 91% rename from docs/snyk/v2.9.15/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html rename to docs/snyk/v2.10.11/haproxy_2.6.14-alpine.html index 9e4431f35ff31..c44884db9d736 100644 --- a/docs/snyk/v2.9.15/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html +++ b/docs/snyk/v2.10.11/haproxy_2.6.14-alpine.html @@ -456,12 +456,12 @@

    Snyk test report

    -

    May 22nd 2024, 5:09:09 pm (UTC+00:00)

    +

    May 26th 2024, 12:20:47 am (UTC+00:00)

    Scanned the following path:
      -
    • public.ecr.aws/docker/library/haproxy:2.6.14-alpine/docker/library/haproxy (apk)
    • +
    • haproxy:2.6.14-alpine (apk)
    @@ -476,8 +476,8 @@

    Snyk test report

    - - + + @@ -507,7 +507,7 @@

    CVE-2023-5363

  • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
  • @@ -520,7 +520,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -529,7 +529,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -540,7 +540,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -551,7 +551,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -562,7 +562,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -575,7 +575,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -584,7 +584,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -595,7 +595,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -606,7 +606,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -699,7 +699,7 @@

      Improper Check for Unusual or Exceptional Conditions

      Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -712,7 +712,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -721,7 +721,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -732,7 +732,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -743,7 +743,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -754,7 +754,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -767,7 +767,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -776,7 +776,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -787,7 +787,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -798,7 +798,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -883,7 +883,7 @@

      Out-of-bounds Write

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -896,7 +896,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -905,7 +905,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -916,7 +916,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -927,7 +927,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -938,7 +938,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -951,7 +951,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -960,7 +960,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -971,7 +971,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -982,7 +982,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1072,7 +1072,7 @@

      CVE-2024-0727

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -1085,7 +1085,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -1094,7 +1094,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1105,7 +1105,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1116,7 +1116,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1127,7 +1127,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1140,7 +1140,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -1149,7 +1149,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1160,7 +1160,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1171,7 +1171,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1248,7 +1248,7 @@

      Out-of-bounds Write

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and busybox/busybox@1.36.1-r2 + docker-image|haproxy@2.6.14-alpine and busybox/busybox@1.36.1-r2
    @@ -1261,7 +1261,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/busybox@1.36.1-r2 @@ -1270,7 +1270,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine alpine-baselayout/alpine-baselayout@3.4.3-r1 @@ -1283,7 +1283,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/busybox-binsh@1.36.1-r2 @@ -1292,7 +1292,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine alpine-baselayout/alpine-baselayout@3.4.3-r1 @@ -1303,7 +1303,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1356,7 +1356,7 @@

      CVE-2023-6237

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -1369,7 +1369,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -1378,7 +1378,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1389,7 +1389,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1400,7 +1400,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1411,7 +1411,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1424,7 +1424,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -1433,7 +1433,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1444,7 +1444,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1455,7 +1455,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1533,7 +1533,7 @@

      CVE-2024-2511

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -1546,7 +1546,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -1555,7 +1555,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1566,7 +1566,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1577,7 +1577,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1588,7 +1588,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1601,7 +1601,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -1610,7 +1610,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1621,7 +1621,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1632,7 +1632,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1707,7 +1707,7 @@

      CVE-2024-4603

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -1720,7 +1720,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -1729,7 +1729,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1740,7 +1740,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1751,7 +1751,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1762,7 +1762,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1775,7 +1775,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -1784,7 +1784,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1795,7 +1795,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1806,7 +1806,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 diff --git a/docs/snyk/v2.10.10/quay.io_argoproj_argocd_v2.10.10.html b/docs/snyk/v2.10.11/quay.io_argoproj_argocd_v2.10.11.html similarity index 97% rename from docs/snyk/v2.10.10/quay.io_argoproj_argocd_v2.10.10.html rename to docs/snyk/v2.10.11/quay.io_argoproj_argocd_v2.10.11.html index 5d1ae7879d46c..3e89be0bbf5cc 100644 --- a/docs/snyk/v2.10.10/quay.io_argoproj_argocd_v2.10.10.html +++ b/docs/snyk/v2.10.11/quay.io_argoproj_argocd_v2.10.11.html @@ -456,16 +456,16 @@

      Snyk test report

      -

      May 22nd 2024, 5:07:01 pm (UTC+00:00)

      +

      May 26th 2024, 12:21:06 am (UTC+00:00)

      Scanned the following paths:
        -
      • quay.io/argoproj/argocd:v2.10.10/argoproj/argocd/Dockerfile (deb)
      • -
      • quay.io/argoproj/argocd:v2.10.10/argoproj/argo-cd/v2//usr/local/bin/argocd (gomodules)
      • -
      • quay.io/argoproj/argocd:v2.10.10//usr/local/bin/kustomize (gomodules)
      • -
      • quay.io/argoproj/argocd:v2.10.10/helm/v3//usr/local/bin/helm (gomodules)
      • -
      • quay.io/argoproj/argocd:v2.10.10/git-lfs/git-lfs//usr/bin/git-lfs (gomodules)
      • +
      • quay.io/argoproj/argocd:v2.10.11/argoproj/argocd/Dockerfile (deb)
      • +
      • quay.io/argoproj/argocd:v2.10.11/argoproj/argo-cd/v2//usr/local/bin/argocd (gomodules)
      • +
      • quay.io/argoproj/argocd:v2.10.11//usr/local/bin/kustomize (gomodules)
      • +
      • quay.io/argoproj/argocd:v2.10.11/helm/v3//usr/local/bin/helm (gomodules)
      • +
      • quay.io/argoproj/argocd:v2.10.11/git-lfs/git-lfs//usr/bin/git-lfs (gomodules)
      @@ -492,7 +492,7 @@

      Allocation of Resources Without Limits or Throttling

    • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argo-cd/v2 /usr/local/bin/argocd
    • Package Manager: golang @@ -572,7 +572,7 @@

      CVE-2020-22916

      • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
      • Package Manager: ubuntu:22.04 @@ -585,7 +585,7 @@

        CVE-2020-22916

      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and xz-utils/liblzma5@5.2.5-2ubuntu1 + docker-image|quay.io/argoproj/argocd@v2.10.11 and xz-utils/liblzma5@5.2.5-2ubuntu1
      @@ -598,7 +598,7 @@

      Detailed paths

      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 xz-utils/liblzma5@5.2.5-2ubuntu1 @@ -648,7 +648,7 @@

        Information Exposure

        • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
        • Package Manager: ubuntu:22.04 @@ -661,7 +661,7 @@

          Information Exposure

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and libgcrypt20@1.9.4-3ubuntu3 + docker-image|quay.io/argoproj/argocd@v2.10.11 and libgcrypt20@1.9.4-3ubuntu3
        @@ -674,7 +674,7 @@

        Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 libgcrypt20@1.9.4-3ubuntu3 @@ -683,7 +683,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/dirmngr@2.2.27-3ubuntu2.1 @@ -694,7 +694,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -705,7 +705,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 apt@2.4.12 @@ -718,7 +718,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 apt@2.4.12 @@ -731,7 +731,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -744,7 +744,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -757,7 +757,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -770,7 +770,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -783,7 +783,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -796,7 +796,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -809,7 +809,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 apt@2.4.12 @@ -861,7 +861,7 @@

          CVE-2024-26462

          • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
          • Package Manager: ubuntu:22.04 @@ -874,7 +874,7 @@

            CVE-2024-26462

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and krb5/libk5crypto3@1.19.2-2ubuntu0.3 + docker-image|quay.io/argoproj/argocd@v2.10.11 and krb5/libk5crypto3@1.19.2-2ubuntu0.3
          @@ -887,7 +887,7 @@

          Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libk5crypto3@1.19.2-2ubuntu0.3 @@ -896,7 +896,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -917,7 +917,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -940,7 +940,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libkrb5-3@1.19.2-2ubuntu0.3 @@ -949,7 +949,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -970,7 +970,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libgssapi-krb5-2@1.19.2-2ubuntu0.3 @@ -979,7 +979,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -990,7 +990,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 git@1:2.34.1-1ubuntu1.10 @@ -1003,7 +1003,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 git@1:2.34.1-1ubuntu1.10 @@ -1018,7 +1018,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -1037,7 +1037,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libkrb5support0@1.19.2-2ubuntu0.3 @@ -1082,7 +1082,7 @@

            LGPL-3.0 license

            • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argo-cd/v2 /usr/local/bin/argocd
            • Package Manager: golang @@ -1142,7 +1142,7 @@

              MPL-2.0 license

              • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argo-cd/v2 /usr/local/bin/argocd
              • Package Manager: golang @@ -1202,7 +1202,7 @@

                MPL-2.0 license

                • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argo-cd/v2 /usr/local/bin/argocd
                • Package Manager: golang @@ -1262,7 +1262,7 @@

                  MPL-2.0 license

                  • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argo-cd/v2 /usr/local/bin/argocd
                  • Package Manager: golang @@ -1322,7 +1322,7 @@

                    MPL-2.0 license

                    • - Manifest file: quay.io/argoproj/argocd:v2.10.10/helm/v3 /usr/local/bin/helm + Manifest file: quay.io/argoproj/argocd:v2.10.11/helm/v3 /usr/local/bin/helm
                    • Package Manager: golang @@ -1382,7 +1382,7 @@

                      MPL-2.0 license

                      • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argo-cd/v2 /usr/local/bin/argocd
                      • Package Manager: golang @@ -1442,7 +1442,7 @@

                        MPL-2.0 license

                        • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argo-cd/v2 /usr/local/bin/argocd
                        • Package Manager: golang @@ -1502,7 +1502,7 @@

                          CVE-2023-7008

                          • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                          • Package Manager: ubuntu:22.04 @@ -1515,7 +1515,7 @@

                            CVE-2023-7008

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and systemd/libsystemd0@249.11-0ubuntu3.12 + docker-image|quay.io/argoproj/argocd@v2.10.11 and systemd/libsystemd0@249.11-0ubuntu3.12
                          @@ -1528,7 +1528,7 @@

                          Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 systemd/libsystemd0@249.11-0ubuntu3.12 @@ -1537,7 +1537,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 apt@2.4.12 @@ -1548,7 +1548,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 procps/libprocps8@2:3.3.17-6ubuntu2.1 @@ -1559,7 +1559,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 util-linux@2.37.2-4ubuntu3.4 @@ -1570,7 +1570,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 util-linux/bsdutils@1:2.37.2-4ubuntu3.4 @@ -1581,7 +1581,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 apt@2.4.12 @@ -1594,7 +1594,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 systemd/libudev1@249.11-0ubuntu3.12 @@ -1603,7 +1603,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 libfido2/libfido2-1@1.10.0-1 @@ -1614,7 +1614,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 util-linux@2.37.2-4ubuntu3.4 @@ -1625,7 +1625,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 apt@2.4.12 @@ -1658,6 +1658,7 @@

                            References

                          • https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QHNBXGKJWISJETTTDTZKTBFIBJUOSLKL/
                          • https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4GMDEG5PKONWNHOEYSUDRT6JEOISRMN2/
                          • https://access.redhat.com/errata/RHSA-2024:2463
                          • +
                          • https://access.redhat.com/errata/RHSA-2024:3203

                          @@ -1679,7 +1680,7 @@

                          Arbitrary Code Injection

                          • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                          • Package Manager: ubuntu:22.04 @@ -1692,7 +1693,7 @@

                            Arbitrary Code Injection

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and shadow/passwd@1:4.8.1-2ubuntu2.2 + docker-image|quay.io/argoproj/argocd@v2.10.11 and shadow/passwd@1:4.8.1-2ubuntu2.2
                          @@ -1705,7 +1706,7 @@

                          Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 shadow/passwd@1:4.8.1-2ubuntu2.2 @@ -1714,7 +1715,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -1725,7 +1726,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -1736,7 +1737,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 shadow/login@1:4.8.1-2ubuntu2.2 @@ -1783,7 +1784,7 @@

                            Uncontrolled Recursion

                            • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                            • Package Manager: ubuntu:22.04 @@ -1796,7 +1797,7 @@

                              Uncontrolled Recursion

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and pcre3/libpcre3@2:8.39-13ubuntu0.22.04.1 + docker-image|quay.io/argoproj/argocd@v2.10.11 and pcre3/libpcre3@2:8.39-13ubuntu0.22.04.1
                            @@ -1809,7 +1810,7 @@

                            Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 pcre3/libpcre3@2:8.39-13ubuntu0.22.04.1 @@ -1818,7 +1819,7 @@

                              Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 grep@3.7-1build1 @@ -1871,7 +1872,7 @@

                              Release of Invalid Pointer or Reference

                              • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                              • Package Manager: ubuntu:22.04 @@ -1884,7 +1885,7 @@

                                Release of Invalid Pointer or Reference

                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and patch@2.7.6-7build2 + docker-image|quay.io/argoproj/argocd@v2.10.11 and patch@2.7.6-7build2
                              @@ -1897,7 +1898,7 @@

                              Detailed paths

                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 patch@2.7.6-7build2 @@ -1941,7 +1942,7 @@

                                Double Free

                                • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                                • Package Manager: ubuntu:22.04 @@ -1954,7 +1955,7 @@

                                  Double Free

                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and patch@2.7.6-7build2 + docker-image|quay.io/argoproj/argocd@v2.10.11 and patch@2.7.6-7build2
                                @@ -1967,7 +1968,7 @@

                                Detailed paths

                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 patch@2.7.6-7build2 @@ -2016,7 +2017,7 @@

                                  CVE-2023-50495

                                  • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                                  • Package Manager: ubuntu:22.04 @@ -2029,7 +2030,7 @@

                                    CVE-2023-50495

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and ncurses/libtinfo6@6.3-2ubuntu0.1 + docker-image|quay.io/argoproj/argocd@v2.10.11 and ncurses/libtinfo6@6.3-2ubuntu0.1
                                  @@ -2042,7 +2043,7 @@

                                  Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/libtinfo6@6.3-2ubuntu0.1 @@ -2051,7 +2052,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 bash@5.1-6ubuntu1.1 @@ -2062,7 +2063,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/libncursesw6@6.3-2ubuntu0.1 @@ -2073,7 +2074,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 less@590-1ubuntu0.22.04.3 @@ -2084,7 +2085,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 libedit/libedit2@3.1-20210910-1build1 @@ -2095,7 +2096,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/libncurses6@6.3-2ubuntu0.1 @@ -2106,7 +2107,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/ncurses-bin@6.3-2ubuntu0.1 @@ -2117,7 +2118,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 procps@2:3.3.17-6ubuntu2.1 @@ -2128,7 +2129,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 util-linux@2.37.2-4ubuntu3.4 @@ -2139,7 +2140,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -2154,7 +2155,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -2169,7 +2170,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/libncursesw6@6.3-2ubuntu0.1 @@ -2178,7 +2179,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 procps@2:3.3.17-6ubuntu2.1 @@ -2189,7 +2190,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -2204,7 +2205,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/libncurses6@6.3-2ubuntu0.1 @@ -2213,7 +2214,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 procps@2:3.3.17-6ubuntu2.1 @@ -2224,7 +2225,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/ncurses-base@6.3-2ubuntu0.1 @@ -2233,7 +2234,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/ncurses-bin@6.3-2ubuntu0.1 @@ -2280,7 +2281,7 @@

                                    CVE-2023-45918

                                    • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                                    • Package Manager: ubuntu:22.04 @@ -2293,7 +2294,7 @@

                                      CVE-2023-45918

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and ncurses/libtinfo6@6.3-2ubuntu0.1 + docker-image|quay.io/argoproj/argocd@v2.10.11 and ncurses/libtinfo6@6.3-2ubuntu0.1
                                    @@ -2306,7 +2307,7 @@

                                    Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/libtinfo6@6.3-2ubuntu0.1 @@ -2315,7 +2316,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 bash@5.1-6ubuntu1.1 @@ -2326,7 +2327,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/libncursesw6@6.3-2ubuntu0.1 @@ -2337,7 +2338,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 less@590-1ubuntu0.22.04.3 @@ -2348,7 +2349,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 libedit/libedit2@3.1-20210910-1build1 @@ -2359,7 +2360,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/libncurses6@6.3-2ubuntu0.1 @@ -2370,7 +2371,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/ncurses-bin@6.3-2ubuntu0.1 @@ -2381,7 +2382,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 procps@2:3.3.17-6ubuntu2.1 @@ -2392,7 +2393,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 util-linux@2.37.2-4ubuntu3.4 @@ -2403,7 +2404,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -2418,7 +2419,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -2433,7 +2434,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/libncursesw6@6.3-2ubuntu0.1 @@ -2442,7 +2443,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 procps@2:3.3.17-6ubuntu2.1 @@ -2453,7 +2454,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -2468,7 +2469,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/libncurses6@6.3-2ubuntu0.1 @@ -2477,7 +2478,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 procps@2:3.3.17-6ubuntu2.1 @@ -2488,7 +2489,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/ncurses-base@6.3-2ubuntu0.1 @@ -2497,7 +2498,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 ncurses/ncurses-bin@6.3-2ubuntu0.1 @@ -2542,7 +2543,7 @@

                                      Resource Exhaustion

                                      • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                                      • Package Manager: ubuntu:22.04 @@ -2555,7 +2556,7 @@

                                        Resource Exhaustion

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and libzstd/libzstd1@1.4.8+dfsg-3build1 + docker-image|quay.io/argoproj/argocd@v2.10.11 and libzstd/libzstd1@1.4.8+dfsg-3build1
                                      @@ -2568,7 +2569,7 @@

                                      Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 libzstd/libzstd1@1.4.8+dfsg-3build1 @@ -2619,7 +2620,7 @@

                                        Integer Overflow or Wraparound

                                        • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                                        • Package Manager: ubuntu:22.04 @@ -2632,7 +2633,7 @@

                                          Integer Overflow or Wraparound

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and krb5/libk5crypto3@1.19.2-2ubuntu0.3 + docker-image|quay.io/argoproj/argocd@v2.10.11 and krb5/libk5crypto3@1.19.2-2ubuntu0.3
                                        @@ -2645,7 +2646,7 @@

                                        Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libk5crypto3@1.19.2-2ubuntu0.3 @@ -2654,7 +2655,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -2675,7 +2676,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -2698,7 +2699,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libkrb5-3@1.19.2-2ubuntu0.3 @@ -2707,7 +2708,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -2728,7 +2729,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libgssapi-krb5-2@1.19.2-2ubuntu0.3 @@ -2737,7 +2738,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -2748,7 +2749,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 git@1:2.34.1-1ubuntu1.10 @@ -2761,7 +2762,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 git@1:2.34.1-1ubuntu1.10 @@ -2776,7 +2777,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -2795,7 +2796,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libkrb5support0@1.19.2-2ubuntu0.3 @@ -2843,7 +2844,7 @@

                                          CVE-2024-26461

                                          • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                                          • Package Manager: ubuntu:22.04 @@ -2856,7 +2857,7 @@

                                            CVE-2024-26461

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and krb5/libk5crypto3@1.19.2-2ubuntu0.3 + docker-image|quay.io/argoproj/argocd@v2.10.11 and krb5/libk5crypto3@1.19.2-2ubuntu0.3
                                          @@ -2869,7 +2870,7 @@

                                          Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libk5crypto3@1.19.2-2ubuntu0.3 @@ -2878,7 +2879,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -2899,7 +2900,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -2922,7 +2923,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libkrb5-3@1.19.2-2ubuntu0.3 @@ -2931,7 +2932,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -2952,7 +2953,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libgssapi-krb5-2@1.19.2-2ubuntu0.3 @@ -2961,7 +2962,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -2972,7 +2973,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 git@1:2.34.1-1ubuntu1.10 @@ -2985,7 +2986,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 git@1:2.34.1-1ubuntu1.10 @@ -3000,7 +3001,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -3019,7 +3020,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libkrb5support0@1.19.2-2ubuntu0.3 @@ -3064,7 +3065,7 @@

                                            CVE-2024-26458

                                            • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                                            • Package Manager: ubuntu:22.04 @@ -3077,7 +3078,7 @@

                                              CVE-2024-26458

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and krb5/libk5crypto3@1.19.2-2ubuntu0.3 + docker-image|quay.io/argoproj/argocd@v2.10.11 and krb5/libk5crypto3@1.19.2-2ubuntu0.3
                                            @@ -3090,7 +3091,7 @@

                                            Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libk5crypto3@1.19.2-2ubuntu0.3 @@ -3099,7 +3100,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -3120,7 +3121,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -3143,7 +3144,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libkrb5-3@1.19.2-2ubuntu0.3 @@ -3152,7 +3153,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -3173,7 +3174,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libgssapi-krb5-2@1.19.2-2ubuntu0.3 @@ -3182,7 +3183,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -3193,7 +3194,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 git@1:2.34.1-1ubuntu1.10 @@ -3206,7 +3207,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 git@1:2.34.1-1ubuntu1.10 @@ -3221,7 +3222,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 adduser@3.118ubuntu5 @@ -3240,7 +3241,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 krb5/libkrb5support0@1.19.2-2ubuntu0.3 @@ -3285,7 +3286,7 @@

                                              Out-of-bounds Write

                                              • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                                              • Package Manager: ubuntu:22.04 @@ -3298,7 +3299,7 @@

                                                Out-of-bounds Write

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and gnupg2/gpgv@2.2.27-3ubuntu2.1 + docker-image|quay.io/argoproj/argocd@v2.10.11 and gnupg2/gpgv@2.2.27-3ubuntu2.1
                                              @@ -3311,7 +3312,7 @@

                                              Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gpgv@2.2.27-3ubuntu2.1 @@ -3320,7 +3321,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 apt@2.4.12 @@ -3331,7 +3332,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3342,7 +3343,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/dirmngr@2.2.27-3ubuntu2.1 @@ -3353,7 +3354,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -3364,7 +3365,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3377,7 +3378,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3390,7 +3391,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/dirmngr@2.2.27-3ubuntu2.1 @@ -3399,7 +3400,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3410,7 +3411,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3423,7 +3424,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg-l10n@2.2.27-3ubuntu2.1 @@ -3432,7 +3433,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3443,7 +3444,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg-utils@2.2.27-3ubuntu2.1 @@ -3452,7 +3453,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3463,7 +3464,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -3472,7 +3473,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3483,7 +3484,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3496,7 +3497,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3509,7 +3510,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gpg-agent@2.2.27-3ubuntu2.1 @@ -3518,7 +3519,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3529,7 +3530,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3542,7 +3543,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3555,7 +3556,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gpg-wks-client@2.2.27-3ubuntu2.1 @@ -3564,7 +3565,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3575,7 +3576,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gpg-wks-server@2.2.27-3ubuntu2.1 @@ -3584,7 +3585,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3595,7 +3596,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gpgsm@2.2.27-3ubuntu2.1 @@ -3604,7 +3605,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3615,7 +3616,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3664,7 +3665,7 @@

                                                Allocation of Resources Without Limits or Throttling

                                              • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                                              • Package Manager: ubuntu:22.04 @@ -3677,7 +3678,7 @@

                                                Allocation of Resources Without Limits or Throttling

                                                Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and glibc/libc-bin@2.35-0ubuntu3.7 + docker-image|quay.io/argoproj/argocd@v2.10.11 and glibc/libc-bin@2.35-0ubuntu3.7
                                              @@ -3690,7 +3691,7 @@

                                              Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 glibc/libc-bin@2.35-0ubuntu3.7 @@ -3699,7 +3700,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 glibc/libc6@2.35-0ubuntu3.7 @@ -3745,7 +3746,7 @@

                                                Improper Input Validation

                                                • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                                                • Package Manager: ubuntu:22.04 @@ -3759,7 +3760,7 @@

                                                  Improper Input Validation

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10, git@1:2.34.1-1ubuntu1.10 and others + docker-image|quay.io/argoproj/argocd@v2.10.11, git@1:2.34.1-1ubuntu1.10 and others
                                                @@ -3771,7 +3772,7 @@

                                                Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 git@1:2.34.1-1ubuntu1.10 @@ -3782,7 +3783,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 git@1:2.34.1-1ubuntu1.10 @@ -3791,7 +3792,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 git-lfs@3.0.2-1ubuntu0.2 @@ -3838,7 +3839,7 @@

                                                  Uncontrolled Recursion

                                                  • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                                                  • Package Manager: ubuntu:22.04 @@ -3851,7 +3852,7 @@

                                                    Uncontrolled Recursion

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and gcc-12/libstdc++6@12.3.0-1ubuntu1~22.04 + docker-image|quay.io/argoproj/argocd@v2.10.11 and gcc-12/libstdc++6@12.3.0-1ubuntu1~22.04
                                                  @@ -3864,7 +3865,7 @@

                                                  Detailed paths

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gcc-12/libstdc++6@12.3.0-1ubuntu1~22.04 @@ -3873,7 +3874,7 @@

                                                    Detailed paths

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 apt@2.4.12 @@ -3884,7 +3885,7 @@

                                                    Detailed paths

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 apt@2.4.12 @@ -3897,7 +3898,7 @@

                                                    Detailed paths

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gcc-12/gcc-12-base@12.3.0-1ubuntu1~22.04 @@ -3906,7 +3907,7 @@

                                                    Detailed paths

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 gcc-12/libgcc-s1@12.3.0-1ubuntu1~22.04 @@ -3953,7 +3954,7 @@

                                                    Improper Input Validation

                                                    • - Manifest file: quay.io/argoproj/argocd:v2.10.10/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.10.11/argoproj/argocd Dockerfile
                                                    • Package Manager: ubuntu:22.04 @@ -3966,7 +3967,7 @@

                                                      Improper Input Validation

                                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 and coreutils@8.32-4.1ubuntu1.2 + docker-image|quay.io/argoproj/argocd@v2.10.11 and coreutils@8.32-4.1ubuntu1.2
                                                    @@ -3979,7 +3980,7 @@

                                                    Detailed paths

                                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.10.10 + docker-image|quay.io/argoproj/argocd@v2.10.11 coreutils@8.32-4.1ubuntu1.2 diff --git a/docs/snyk/v2.10.11/redis_7.0.15-alpine.html b/docs/snyk/v2.10.11/redis_7.0.15-alpine.html new file mode 100644 index 0000000000000..36a21565bec47 --- /dev/null +++ b/docs/snyk/v2.10.11/redis_7.0.15-alpine.html @@ -0,0 +1,484 @@ + + + + + + + + + Snyk test report + + + + + + + + + +
                                                      +
                                                      +
                                                      +
                                                      + + + Snyk - Open Source Security + + + + + + + +
                                                      +

                                                      Snyk test report

                                                      + +

                                                      May 26th 2024, 12:21:10 am (UTC+00:00)

                                                      +
                                                      +
                                                      + Scanned the following paths: +
                                                        +
                                                      • redis:7.0.15-alpine (apk)
                                                      • +
                                                      • redis:7.0.15-alpine/tianon/gosu//usr/local/bin/gosu (gomodules)
                                                      • +
                                                      +
                                                      + +
                                                      +
                                                      0 known vulnerabilities
                                                      +
                                                      0 vulnerable dependency paths
                                                      +
                                                      18 dependencies
                                                      +
                                                      +
                                                      +
                                                      +
                                                      + +
                                                      + No known vulnerabilities detected. +
                                                      +
                                                      + + + diff --git a/docs/snyk/v2.11.1/public.ecr.aws_docker_library_redis_7.0.14-alpine.html b/docs/snyk/v2.11.1/public.ecr.aws_docker_library_redis_7.0.14-alpine.html deleted file mode 100644 index 4d6f93607f673..0000000000000 --- a/docs/snyk/v2.11.1/public.ecr.aws_docker_library_redis_7.0.14-alpine.html +++ /dev/null @@ -1,1813 +0,0 @@ - - - - - - - - - Snyk test report - - - - - - - - - -
                                                      -
                                                      -
                                                      -
                                                      - - - Snyk - Open Source Security - - - - - - - -
                                                      -

                                                      Snyk test report

                                                      - -

                                                      May 22nd 2024, 5:04:13 pm (UTC+00:00)

                                                      -
                                                      -
                                                      - Scanned the following paths: -
                                                        -
                                                      • public.ecr.aws/docker/library/redis:7.0.14-alpine/docker/library/redis (apk)
                                                      • -
                                                      • public.ecr.aws/docker/library/redis:7.0.14-alpine/tianon/gosu//usr/local/bin/gosu (gomodules)
                                                      • -
                                                      -
                                                      - -
                                                      -
                                                      9 known vulnerabilities
                                                      -
                                                      65 vulnerable dependency paths
                                                      -
                                                      19 dependencies
                                                      -
                                                      -
                                                      -
                                                      -
                                                      - -
                                                      -
                                                      -
                                                      -

                                                      Out-of-bounds Write

                                                      -
                                                      - -
                                                      - medium severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - openssl/libcrypto3 -
                                                      • - -
                                                      • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine and openssl/libcrypto3@3.1.4-r2 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libssl3@3.1.4-r2 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream openssl package and not the openssl package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      Issue summary: The POLY1305 MAC (message authentication code) implementation - contains a bug that might corrupt the internal state of applications running - on PowerPC CPU based platforms if the CPU provides vector instructions.

                                                      -

                                                      Impact summary: If an attacker can influence whether the POLY1305 MAC - algorithm is used, the application state might be corrupted with various - application dependent consequences.

                                                      -

                                                      The POLY1305 MAC (message authentication code) implementation in OpenSSL for - PowerPC CPUs restores the contents of vector registers in a different order - than they are saved. Thus the contents of some of these vector registers - are corrupted when returning to the caller. The vulnerable code is used only - on newer PowerPC processors supporting the PowerISA 2.07 instructions.

                                                      -

                                                      The consequences of this kind of internal application state corruption can - be various - from no consequences, if the calling application does not - depend on the contents of non-volatile XMM registers at all, to the worst - consequences, where the attacker could get complete control of the application - process. However unless the compiler uses the vector registers for storing - pointers, the most likely consequence, if any, would be an incorrect result - of some application dependent calculations or a crash leading to a denial of - service.

                                                      -

                                                      The POLY1305 MAC algorithm is most frequently used as part of the - CHACHA20-POLY1305 AEAD (authenticated encryption with associated data) - algorithm. The most common usage of this AEAD cipher is with TLS protocol - versions 1.2 and 1.3. If this cipher is enabled on the server a malicious - client can influence whether this AEAD cipher is used. This implies that - TLS server applications using OpenSSL can be potentially impacted. However - we are currently not aware of any concrete application that would be affected - by this issue therefore we consider this a Low severity security issue.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 openssl to version 3.1.4-r3 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      CVE-2024-0727

                                                      -
                                                      - -
                                                      - medium severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - openssl/libcrypto3 -
                                                      • - -
                                                      • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine and openssl/libcrypto3@3.1.4-r2 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libssl3@3.1.4-r2 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream openssl package and not the openssl package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      Issue summary: Processing a maliciously formatted PKCS12 file may lead OpenSSL - to crash leading to a potential Denial of Service attack

                                                      -

                                                      Impact summary: Applications loading files in the PKCS12 format from untrusted - sources might terminate abruptly.

                                                      -

                                                      A file in PKCS12 format can contain certificates and keys and may come from an - untrusted source. The PKCS12 specification allows certain fields to be NULL, but - OpenSSL does not correctly check for this case. This can lead to a NULL pointer - dereference that results in OpenSSL crashing. If an application processes PKCS12 - files from an untrusted source using the OpenSSL APIs then that application will - be vulnerable to this issue.

                                                      -

                                                      OpenSSL APIs that are vulnerable to this are: PKCS12_parse(), - PKCS12_unpack_p7data(), PKCS12_unpack_p7encdata(), PKCS12_unpack_authsafes() - and PKCS12_newpass().

                                                      -

                                                      We have also fixed a similar issue in SMIME_write_PKCS7(). However since this - function is related to writing data we do not consider it security significant.

                                                      -

                                                      The FIPS modules in 3.2, 3.1 and 3.0 are not affected by this issue.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 openssl to version 3.1.4-r5 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      Out-of-bounds Write

                                                      -
                                                      - -
                                                      - medium severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - busybox/busybox -
                                                      • - -
                                                      • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine and busybox/busybox@1.36.1-r15 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      A heap-buffer-overflow was discovered in BusyBox v.1.36.1 in the next_token function at awk.c:1159.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 busybox to version 1.36.1-r16 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      Use After Free

                                                      -
                                                      - -
                                                      - medium severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - busybox/busybox -
                                                      • - -
                                                      • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine and busybox/busybox@1.36.1-r15 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      A use-after-free vulnerability was discovered in BusyBox v.1.36.1 via a crafted awk pattern in the awk.c copyvar function.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      Use After Free

                                                      -
                                                      - -
                                                      - medium severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - busybox/busybox -
                                                      • - -
                                                      • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine and busybox/busybox@1.36.1-r15 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      A use-after-free vulnerability in BusyBox v.1.36.1 allows attackers to cause a denial of service via a crafted awk pattern in the awk.c evaluate function.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      Use After Free

                                                      -
                                                      - -
                                                      - medium severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - busybox/busybox -
                                                      • - -
                                                      • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine and busybox/busybox@1.36.1-r15 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      A use-after-free vulnerability was discovered in xasprintf function in xfuncs_printf.c:344 in BusyBox v.1.36.1.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      CVE-2023-6237

                                                      -
                                                      - -
                                                      - low severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - openssl/libcrypto3 -
                                                      • - -
                                                      • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine and openssl/libcrypto3@3.1.4-r2 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libssl3@3.1.4-r2 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream openssl package and not the openssl package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      Issue summary: Checking excessively long invalid RSA public keys may take - a long time.

                                                      -

                                                      Impact summary: Applications that use the function EVP_PKEY_public_check() - to check RSA public keys may experience long delays. Where the key that - is being checked has been obtained from an untrusted source this may lead - to a Denial of Service.

                                                      -

                                                      When function EVP_PKEY_public_check() is called on RSA public keys, - a computation is done to confirm that the RSA modulus, n, is composite. - For valid RSA keys, n is a product of two or more large primes and this - computation completes quickly. However, if n is an overly large prime, - then this computation would take a long time.

                                                      -

                                                      An application that calls EVP_PKEY_public_check() and supplies an RSA key - obtained from an untrusted source could be vulnerable to a Denial of Service - attack.

                                                      -

                                                      The function EVP_PKEY_public_check() is not called from other OpenSSL - functions however it is called from the OpenSSL pkey command line - application. For that reason that application is also vulnerable if used - with the '-pubin' and '-check' options on untrusted data.

                                                      -

                                                      The OpenSSL SSL/TLS implementation is not affected by this issue.

                                                      -

                                                      The OpenSSL 3.0 and 3.1 FIPS providers are affected by this issue.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 openssl to version 3.1.4-r4 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      CVE-2024-2511

                                                      -
                                                      - -
                                                      - low severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - openssl/libcrypto3 -
                                                      • - -
                                                      • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine and openssl/libcrypto3@3.1.4-r2 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libssl3@3.1.4-r2 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream openssl package and not the openssl package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      Issue summary: Some non-default TLS server configurations can cause unbounded - memory growth when processing TLSv1.3 sessions

                                                      -

                                                      Impact summary: An attacker may exploit certain server configurations to trigger - unbounded memory growth that would lead to a Denial of Service

                                                      -

                                                      This problem can occur in TLSv1.3 if the non-default SSL_OP_NO_TICKET option is - being used (but not if early_data support is also configured and the default - anti-replay protection is in use). In this case, under certain conditions, the - session cache can get into an incorrect state and it will fail to flush properly - as it fills. The session cache will continue to grow in an unbounded manner. A - malicious client could deliberately create the scenario for this failure to - force a Denial of Service. It may also happen by accident in normal operation.

                                                      -

                                                      This issue only affects TLS servers supporting TLSv1.3. It does not affect TLS - clients.

                                                      -

                                                      The FIPS modules in 3.2, 3.1 and 3.0 are not affected by this issue. OpenSSL - 1.0.2 is also not affected by this issue.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 openssl to version 3.1.4-r6 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      CVE-2024-4603

                                                      -
                                                      - -
                                                      - low severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - openssl/libcrypto3 -
                                                      • - -
                                                      • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine and openssl/libcrypto3@3.1.4-r2 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libssl3@3.1.4-r2 - - openssl/libcrypto3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - .redis-rundeps@20231208.201137 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.14-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libssl3@3.1.4-r2 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream openssl package and not the openssl package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      Issue summary: Checking excessively long DSA keys or parameters may be very - slow.

                                                      -

                                                      Impact summary: Applications that use the functions EVP_PKEY_param_check() - or EVP_PKEY_public_check() to check a DSA public key or DSA parameters may - experience long delays. Where the key or parameters that are being checked - have been obtained from an untrusted source this may lead to a Denial of - Service.

                                                      -

                                                      The functions EVP_PKEY_param_check() or EVP_PKEY_public_check() perform - various checks on DSA parameters. Some of those computations take a long time - if the modulus (p parameter) is too large.

                                                      -

                                                      Trying to use a very large modulus is slow and OpenSSL will not allow using - public keys with a modulus which is over 10,000 bits in length for signature - verification. However the key and parameter check functions do not limit - the modulus size when performing the checks.

                                                      -

                                                      An application that calls EVP_PKEY_param_check() or EVP_PKEY_public_check() - and supplies a key or parameters obtained from an untrusted source could be - vulnerable to a Denial of Service attack.

                                                      -

                                                      These functions are not called by OpenSSL itself on untrusted DSA keys so - only applications that directly call these functions may be vulnerable.

                                                      -

                                                      Also vulnerable are the OpenSSL pkey and pkeyparam command line applications - when using the -check option.

                                                      -

                                                      The OpenSSL SSL/TLS implementation is not affected by this issue.

                                                      -

                                                      The OpenSSL 3.0 and 3.1 FIPS providers are affected by this issue.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 openssl to version 3.1.5-r0 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -
                                                      -
                                                      - - - diff --git a/docs/snyk/v2.11.1/argocd-iac-install.html b/docs/snyk/v2.11.2/argocd-iac-install.html similarity index 99% rename from docs/snyk/v2.11.1/argocd-iac-install.html rename to docs/snyk/v2.11.2/argocd-iac-install.html index 43e1bb6da2011..e9aa73593e7d4 100644 --- a/docs/snyk/v2.11.1/argocd-iac-install.html +++ b/docs/snyk/v2.11.2/argocd-iac-install.html @@ -456,7 +456,7 @@

                                                      Snyk test report

                                                      -

                                                      May 22nd 2024, 5:06:03 pm (UTC+00:00)

                                                      +

                                                      May 26th 2024, 12:20:14 am (UTC+00:00)

                                                      Scanned the following path: diff --git a/docs/snyk/v2.11.1/argocd-iac-namespace-install.html b/docs/snyk/v2.11.2/argocd-iac-namespace-install.html similarity index 99% rename from docs/snyk/v2.11.1/argocd-iac-namespace-install.html rename to docs/snyk/v2.11.2/argocd-iac-namespace-install.html index df45b709a2003..7c7bc8e617fe1 100644 --- a/docs/snyk/v2.11.1/argocd-iac-namespace-install.html +++ b/docs/snyk/v2.11.2/argocd-iac-namespace-install.html @@ -456,7 +456,7 @@

                                                      Snyk test report

                                                      -

                                                      May 22nd 2024, 5:06:13 pm (UTC+00:00)

                                                      +

                                                      May 26th 2024, 12:20:24 am (UTC+00:00)

                                                      Scanned the following path: diff --git a/docs/snyk/v2.11.1/argocd-test.html b/docs/snyk/v2.11.2/argocd-test.html similarity index 99% rename from docs/snyk/v2.11.1/argocd-test.html rename to docs/snyk/v2.11.2/argocd-test.html index 29b797e4401b5..db586c815ba6f 100644 --- a/docs/snyk/v2.11.1/argocd-test.html +++ b/docs/snyk/v2.11.2/argocd-test.html @@ -456,7 +456,7 @@

                                                      Snyk test report

                                                      -

                                                      May 22nd 2024, 5:03:55 pm (UTC+00:00)

                                                      +

                                                      May 26th 2024, 12:18:19 am (UTC+00:00)

                                                      Scanned the following paths: @@ -850,7 +850,7 @@

                                                      Detailed paths

                                                      Introduced through: github.com/argoproj/argo-cd/v2@0.0.0 - go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@0.42.0 + go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@0.46.1 google.golang.org/grpc@1.59.0 diff --git a/docs/snyk/v2.11.1/ghcr.io_dexidp_dex_v2.38.0.html b/docs/snyk/v2.11.2/ghcr.io_dexidp_dex_v2.38.0.html similarity index 99% rename from docs/snyk/v2.11.1/ghcr.io_dexidp_dex_v2.38.0.html rename to docs/snyk/v2.11.2/ghcr.io_dexidp_dex_v2.38.0.html index 48ac534757e8f..16ae63ba60417 100644 --- a/docs/snyk/v2.11.1/ghcr.io_dexidp_dex_v2.38.0.html +++ b/docs/snyk/v2.11.2/ghcr.io_dexidp_dex_v2.38.0.html @@ -456,7 +456,7 @@

                                                      Snyk test report

                                                      -

                                                      May 22nd 2024, 5:04:02 pm (UTC+00:00)

                                                      +

                                                      May 26th 2024, 12:18:25 am (UTC+00:00)

                                                      Scanned the following paths: diff --git a/docs/snyk/v2.10.10/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html b/docs/snyk/v2.11.2/haproxy_2.6.14-alpine.html similarity index 91% rename from docs/snyk/v2.10.10/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html rename to docs/snyk/v2.11.2/haproxy_2.6.14-alpine.html index 5cb279b8e6bc2..c8004911a599e 100644 --- a/docs/snyk/v2.10.10/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html +++ b/docs/snyk/v2.11.2/haproxy_2.6.14-alpine.html @@ -456,12 +456,12 @@

                                                      Snyk test report

                                                      -

                                                      May 22nd 2024, 5:06:36 pm (UTC+00:00)

                                                      +

                                                      May 26th 2024, 12:18:30 am (UTC+00:00)

                                                      Scanned the following path:
                                                        -
                                                      • public.ecr.aws/docker/library/haproxy:2.6.14-alpine/docker/library/haproxy (apk)
                                                      • +
                                                      • haproxy:2.6.14-alpine (apk)
                                                      @@ -476,8 +476,8 @@

                                                      Snyk test report

    Project docker-image|public.ecr.aws/docker/library/haproxy
    Path public.ecr.aws/docker/library/haproxy:2.6.14-alpine/docker/library/haproxy
    Project docker-image|haproxy
    Path haproxy:2.6.14-alpine
    Package Manager apk
    - - + + @@ -507,7 +507,7 @@

    CVE-2023-5363

  • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
  • @@ -520,7 +520,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -529,7 +529,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -540,7 +540,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -551,7 +551,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -562,7 +562,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -575,7 +575,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -584,7 +584,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -595,7 +595,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -606,7 +606,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -699,7 +699,7 @@

      Improper Check for Unusual or Exceptional Conditions

      Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -712,7 +712,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -721,7 +721,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -732,7 +732,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -743,7 +743,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -754,7 +754,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -767,7 +767,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -776,7 +776,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -787,7 +787,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -798,7 +798,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -883,7 +883,7 @@

      Out-of-bounds Write

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -896,7 +896,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -905,7 +905,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -916,7 +916,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -927,7 +927,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -938,7 +938,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -951,7 +951,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -960,7 +960,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -971,7 +971,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -982,7 +982,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1072,7 +1072,7 @@

      CVE-2024-0727

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -1085,7 +1085,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -1094,7 +1094,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1105,7 +1105,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1116,7 +1116,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1127,7 +1127,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1140,7 +1140,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -1149,7 +1149,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1160,7 +1160,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1171,7 +1171,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1248,7 +1248,7 @@

      Out-of-bounds Write

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and busybox/busybox@1.36.1-r2 + docker-image|haproxy@2.6.14-alpine and busybox/busybox@1.36.1-r2
    @@ -1261,7 +1261,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/busybox@1.36.1-r2 @@ -1270,7 +1270,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine alpine-baselayout/alpine-baselayout@3.4.3-r1 @@ -1283,7 +1283,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/busybox-binsh@1.36.1-r2 @@ -1292,7 +1292,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine alpine-baselayout/alpine-baselayout@3.4.3-r1 @@ -1303,7 +1303,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1356,7 +1356,7 @@

      CVE-2023-6237

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -1369,7 +1369,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -1378,7 +1378,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1389,7 +1389,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1400,7 +1400,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1411,7 +1411,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1424,7 +1424,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -1433,7 +1433,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1444,7 +1444,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1455,7 +1455,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1533,7 +1533,7 @@

      CVE-2024-2511

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -1546,7 +1546,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -1555,7 +1555,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1566,7 +1566,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1577,7 +1577,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1588,7 +1588,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1601,7 +1601,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -1610,7 +1610,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1621,7 +1621,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1632,7 +1632,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1707,7 +1707,7 @@

      CVE-2024-4603

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -1720,7 +1720,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -1729,7 +1729,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1740,7 +1740,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1751,7 +1751,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1762,7 +1762,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1775,7 +1775,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -1784,7 +1784,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1795,7 +1795,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1806,7 +1806,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 diff --git a/docs/snyk/v2.11.1/quay.io_argoproj_argocd_v2.11.1.html b/docs/snyk/v2.11.2/quay.io_argoproj_argocd_v2.11.2.html similarity index 97% rename from docs/snyk/v2.11.1/quay.io_argoproj_argocd_v2.11.1.html rename to docs/snyk/v2.11.2/quay.io_argoproj_argocd_v2.11.2.html index 0089daab5c89e..35a6842410700 100644 --- a/docs/snyk/v2.11.1/quay.io_argoproj_argocd_v2.11.1.html +++ b/docs/snyk/v2.11.2/quay.io_argoproj_argocd_v2.11.2.html @@ -456,16 +456,16 @@

      Snyk test report

      -

      May 22nd 2024, 5:04:33 pm (UTC+00:00)

      +

      May 26th 2024, 12:18:49 am (UTC+00:00)

      Scanned the following paths:
        -
      • quay.io/argoproj/argocd:v2.11.1/argoproj/argocd/Dockerfile (deb)
      • -
      • quay.io/argoproj/argocd:v2.11.1/argoproj/argo-cd/v2//usr/local/bin/argocd (gomodules)
      • -
      • quay.io/argoproj/argocd:v2.11.1//usr/local/bin/kustomize (gomodules)
      • -
      • quay.io/argoproj/argocd:v2.11.1/helm/v3//usr/local/bin/helm (gomodules)
      • -
      • quay.io/argoproj/argocd:v2.11.1/git-lfs/git-lfs//usr/bin/git-lfs (gomodules)
      • +
      • quay.io/argoproj/argocd:v2.11.2/argoproj/argocd/Dockerfile (deb)
      • +
      • quay.io/argoproj/argocd:v2.11.2/argoproj/argo-cd/v2//usr/local/bin/argocd (gomodules)
      • +
      • quay.io/argoproj/argocd:v2.11.2//usr/local/bin/kustomize (gomodules)
      • +
      • quay.io/argoproj/argocd:v2.11.2/helm/v3//usr/local/bin/helm (gomodules)
      • +
      • quay.io/argoproj/argocd:v2.11.2/git-lfs/git-lfs//usr/bin/git-lfs (gomodules)
      @@ -492,7 +492,7 @@

      Allocation of Resources Without Limits or Throttling

    • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argo-cd/v2 /usr/local/bin/argocd
    • Package Manager: golang @@ -572,7 +572,7 @@

      CVE-2020-22916

      • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
      • Package Manager: ubuntu:22.04 @@ -585,7 +585,7 @@

        CVE-2020-22916

      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and xz-utils/liblzma5@5.2.5-2ubuntu1 + docker-image|quay.io/argoproj/argocd@v2.11.2 and xz-utils/liblzma5@5.2.5-2ubuntu1
      @@ -598,7 +598,7 @@

      Detailed paths

      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 xz-utils/liblzma5@5.2.5-2ubuntu1 @@ -648,7 +648,7 @@

        Information Exposure

        • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
        • Package Manager: ubuntu:22.04 @@ -661,7 +661,7 @@

          Information Exposure

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and libgcrypt20@1.9.4-3ubuntu3 + docker-image|quay.io/argoproj/argocd@v2.11.2 and libgcrypt20@1.9.4-3ubuntu3
        @@ -674,7 +674,7 @@

        Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 libgcrypt20@1.9.4-3ubuntu3 @@ -683,7 +683,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/dirmngr@2.2.27-3ubuntu2.1 @@ -694,7 +694,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -705,7 +705,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 apt@2.4.12 @@ -718,7 +718,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 apt@2.4.12 @@ -731,7 +731,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -744,7 +744,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -757,7 +757,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -770,7 +770,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -783,7 +783,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -796,7 +796,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -809,7 +809,7 @@

          Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 apt@2.4.12 @@ -861,7 +861,7 @@

          CVE-2024-26462

          • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
          • Package Manager: ubuntu:22.04 @@ -874,7 +874,7 @@

            CVE-2024-26462

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and krb5/libk5crypto3@1.19.2-2ubuntu0.3 + docker-image|quay.io/argoproj/argocd@v2.11.2 and krb5/libk5crypto3@1.19.2-2ubuntu0.3
          @@ -887,7 +887,7 @@

          Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libk5crypto3@1.19.2-2ubuntu0.3 @@ -896,7 +896,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -917,7 +917,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -940,7 +940,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libkrb5-3@1.19.2-2ubuntu0.3 @@ -949,7 +949,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -970,7 +970,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libgssapi-krb5-2@1.19.2-2ubuntu0.3 @@ -979,7 +979,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -990,7 +990,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 git@1:2.34.1-1ubuntu1.10 @@ -1003,7 +1003,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 git@1:2.34.1-1ubuntu1.10 @@ -1018,7 +1018,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -1037,7 +1037,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libkrb5support0@1.19.2-2ubuntu0.3 @@ -1082,7 +1082,7 @@

            LGPL-3.0 license

            • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argo-cd/v2 /usr/local/bin/argocd
            • Package Manager: golang @@ -1142,7 +1142,7 @@

              MPL-2.0 license

              • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argo-cd/v2 /usr/local/bin/argocd
              • Package Manager: golang @@ -1202,7 +1202,7 @@

                MPL-2.0 license

                • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argo-cd/v2 /usr/local/bin/argocd
                • Package Manager: golang @@ -1262,7 +1262,7 @@

                  MPL-2.0 license

                  • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argo-cd/v2 /usr/local/bin/argocd
                  • Package Manager: golang @@ -1322,7 +1322,7 @@

                    MPL-2.0 license

                    • - Manifest file: quay.io/argoproj/argocd:v2.11.1/helm/v3 /usr/local/bin/helm + Manifest file: quay.io/argoproj/argocd:v2.11.2/helm/v3 /usr/local/bin/helm
                    • Package Manager: golang @@ -1382,7 +1382,7 @@

                      MPL-2.0 license

                      • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argo-cd/v2 /usr/local/bin/argocd
                      • Package Manager: golang @@ -1442,7 +1442,7 @@

                        MPL-2.0 license

                        • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argo-cd/v2 /usr/local/bin/argocd
                        • Package Manager: golang @@ -1502,7 +1502,7 @@

                          CVE-2023-7008

                          • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                          • Package Manager: ubuntu:22.04 @@ -1515,7 +1515,7 @@

                            CVE-2023-7008

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and systemd/libsystemd0@249.11-0ubuntu3.12 + docker-image|quay.io/argoproj/argocd@v2.11.2 and systemd/libsystemd0@249.11-0ubuntu3.12
                          @@ -1528,7 +1528,7 @@

                          Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 systemd/libsystemd0@249.11-0ubuntu3.12 @@ -1537,7 +1537,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 apt@2.4.12 @@ -1548,7 +1548,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 procps/libprocps8@2:3.3.17-6ubuntu2.1 @@ -1559,7 +1559,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 util-linux@2.37.2-4ubuntu3.4 @@ -1570,7 +1570,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 util-linux/bsdutils@1:2.37.2-4ubuntu3.4 @@ -1581,7 +1581,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 apt@2.4.12 @@ -1594,7 +1594,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 systemd/libudev1@249.11-0ubuntu3.12 @@ -1603,7 +1603,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 libfido2/libfido2-1@1.10.0-1 @@ -1614,7 +1614,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 util-linux@2.37.2-4ubuntu3.4 @@ -1625,7 +1625,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 apt@2.4.12 @@ -1658,6 +1658,7 @@

                            References

                          • https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QHNBXGKJWISJETTTDTZKTBFIBJUOSLKL/
                          • https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4GMDEG5PKONWNHOEYSUDRT6JEOISRMN2/
                          • https://access.redhat.com/errata/RHSA-2024:2463
                          • +
                          • https://access.redhat.com/errata/RHSA-2024:3203

                          @@ -1679,7 +1680,7 @@

                          Arbitrary Code Injection

                          • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                          • Package Manager: ubuntu:22.04 @@ -1692,7 +1693,7 @@

                            Arbitrary Code Injection

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and shadow/passwd@1:4.8.1-2ubuntu2.2 + docker-image|quay.io/argoproj/argocd@v2.11.2 and shadow/passwd@1:4.8.1-2ubuntu2.2
                          @@ -1705,7 +1706,7 @@

                          Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 shadow/passwd@1:4.8.1-2ubuntu2.2 @@ -1714,7 +1715,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -1725,7 +1726,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -1736,7 +1737,7 @@

                            Detailed paths

                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 shadow/login@1:4.8.1-2ubuntu2.2 @@ -1783,7 +1784,7 @@

                            Uncontrolled Recursion

                            • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                            • Package Manager: ubuntu:22.04 @@ -1796,7 +1797,7 @@

                              Uncontrolled Recursion

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and pcre3/libpcre3@2:8.39-13ubuntu0.22.04.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 and pcre3/libpcre3@2:8.39-13ubuntu0.22.04.1
                            @@ -1809,7 +1810,7 @@

                            Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 pcre3/libpcre3@2:8.39-13ubuntu0.22.04.1 @@ -1818,7 +1819,7 @@

                              Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 grep@3.7-1build1 @@ -1871,7 +1872,7 @@

                              Release of Invalid Pointer or Reference

                              • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                              • Package Manager: ubuntu:22.04 @@ -1884,7 +1885,7 @@

                                Release of Invalid Pointer or Reference

                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and patch@2.7.6-7build2 + docker-image|quay.io/argoproj/argocd@v2.11.2 and patch@2.7.6-7build2
                              @@ -1897,7 +1898,7 @@

                              Detailed paths

                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 patch@2.7.6-7build2 @@ -1941,7 +1942,7 @@

                                Double Free

                                • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                                • Package Manager: ubuntu:22.04 @@ -1954,7 +1955,7 @@

                                  Double Free

                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and patch@2.7.6-7build2 + docker-image|quay.io/argoproj/argocd@v2.11.2 and patch@2.7.6-7build2
                                @@ -1967,7 +1968,7 @@

                                Detailed paths

                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 patch@2.7.6-7build2 @@ -2016,7 +2017,7 @@

                                  CVE-2023-50495

                                  • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                                  • Package Manager: ubuntu:22.04 @@ -2029,7 +2030,7 @@

                                    CVE-2023-50495

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and ncurses/libtinfo6@6.3-2ubuntu0.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 and ncurses/libtinfo6@6.3-2ubuntu0.1
                                  @@ -2042,7 +2043,7 @@

                                  Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/libtinfo6@6.3-2ubuntu0.1 @@ -2051,7 +2052,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 bash@5.1-6ubuntu1.1 @@ -2062,7 +2063,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/libncursesw6@6.3-2ubuntu0.1 @@ -2073,7 +2074,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 less@590-1ubuntu0.22.04.3 @@ -2084,7 +2085,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 libedit/libedit2@3.1-20210910-1build1 @@ -2095,7 +2096,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/libncurses6@6.3-2ubuntu0.1 @@ -2106,7 +2107,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/ncurses-bin@6.3-2ubuntu0.1 @@ -2117,7 +2118,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 procps@2:3.3.17-6ubuntu2.1 @@ -2128,7 +2129,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 util-linux@2.37.2-4ubuntu3.4 @@ -2139,7 +2140,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -2154,7 +2155,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -2169,7 +2170,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/libncursesw6@6.3-2ubuntu0.1 @@ -2178,7 +2179,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 procps@2:3.3.17-6ubuntu2.1 @@ -2189,7 +2190,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -2204,7 +2205,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/libncurses6@6.3-2ubuntu0.1 @@ -2213,7 +2214,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 procps@2:3.3.17-6ubuntu2.1 @@ -2224,7 +2225,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/ncurses-base@6.3-2ubuntu0.1 @@ -2233,7 +2234,7 @@

                                    Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/ncurses-bin@6.3-2ubuntu0.1 @@ -2280,7 +2281,7 @@

                                    CVE-2023-45918

                                    • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                                    • Package Manager: ubuntu:22.04 @@ -2293,7 +2294,7 @@

                                      CVE-2023-45918

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and ncurses/libtinfo6@6.3-2ubuntu0.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 and ncurses/libtinfo6@6.3-2ubuntu0.1
                                    @@ -2306,7 +2307,7 @@

                                    Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/libtinfo6@6.3-2ubuntu0.1 @@ -2315,7 +2316,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 bash@5.1-6ubuntu1.1 @@ -2326,7 +2327,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/libncursesw6@6.3-2ubuntu0.1 @@ -2337,7 +2338,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 less@590-1ubuntu0.22.04.3 @@ -2348,7 +2349,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 libedit/libedit2@3.1-20210910-1build1 @@ -2359,7 +2360,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/libncurses6@6.3-2ubuntu0.1 @@ -2370,7 +2371,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/ncurses-bin@6.3-2ubuntu0.1 @@ -2381,7 +2382,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 procps@2:3.3.17-6ubuntu2.1 @@ -2392,7 +2393,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 util-linux@2.37.2-4ubuntu3.4 @@ -2403,7 +2404,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -2418,7 +2419,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -2433,7 +2434,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/libncursesw6@6.3-2ubuntu0.1 @@ -2442,7 +2443,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 procps@2:3.3.17-6ubuntu2.1 @@ -2453,7 +2454,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -2468,7 +2469,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/libncurses6@6.3-2ubuntu0.1 @@ -2477,7 +2478,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 procps@2:3.3.17-6ubuntu2.1 @@ -2488,7 +2489,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/ncurses-base@6.3-2ubuntu0.1 @@ -2497,7 +2498,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 ncurses/ncurses-bin@6.3-2ubuntu0.1 @@ -2542,7 +2543,7 @@

                                      Resource Exhaustion

                                      • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                                      • Package Manager: ubuntu:22.04 @@ -2555,7 +2556,7 @@

                                        Resource Exhaustion

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and libzstd/libzstd1@1.4.8+dfsg-3build1 + docker-image|quay.io/argoproj/argocd@v2.11.2 and libzstd/libzstd1@1.4.8+dfsg-3build1
                                      @@ -2568,7 +2569,7 @@

                                      Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 libzstd/libzstd1@1.4.8+dfsg-3build1 @@ -2619,7 +2620,7 @@

                                        Integer Overflow or Wraparound

                                        • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                                        • Package Manager: ubuntu:22.04 @@ -2632,7 +2633,7 @@

                                          Integer Overflow or Wraparound

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and krb5/libk5crypto3@1.19.2-2ubuntu0.3 + docker-image|quay.io/argoproj/argocd@v2.11.2 and krb5/libk5crypto3@1.19.2-2ubuntu0.3
                                        @@ -2645,7 +2646,7 @@

                                        Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libk5crypto3@1.19.2-2ubuntu0.3 @@ -2654,7 +2655,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -2675,7 +2676,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -2698,7 +2699,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libkrb5-3@1.19.2-2ubuntu0.3 @@ -2707,7 +2708,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -2728,7 +2729,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libgssapi-krb5-2@1.19.2-2ubuntu0.3 @@ -2737,7 +2738,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -2748,7 +2749,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 git@1:2.34.1-1ubuntu1.10 @@ -2761,7 +2762,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 git@1:2.34.1-1ubuntu1.10 @@ -2776,7 +2777,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -2795,7 +2796,7 @@

                                          Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libkrb5support0@1.19.2-2ubuntu0.3 @@ -2843,7 +2844,7 @@

                                          CVE-2024-26461

                                          • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                                          • Package Manager: ubuntu:22.04 @@ -2856,7 +2857,7 @@

                                            CVE-2024-26461

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and krb5/libk5crypto3@1.19.2-2ubuntu0.3 + docker-image|quay.io/argoproj/argocd@v2.11.2 and krb5/libk5crypto3@1.19.2-2ubuntu0.3
                                          @@ -2869,7 +2870,7 @@

                                          Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libk5crypto3@1.19.2-2ubuntu0.3 @@ -2878,7 +2879,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -2899,7 +2900,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -2922,7 +2923,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libkrb5-3@1.19.2-2ubuntu0.3 @@ -2931,7 +2932,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -2952,7 +2953,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libgssapi-krb5-2@1.19.2-2ubuntu0.3 @@ -2961,7 +2962,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -2972,7 +2973,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 git@1:2.34.1-1ubuntu1.10 @@ -2985,7 +2986,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 git@1:2.34.1-1ubuntu1.10 @@ -3000,7 +3001,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -3019,7 +3020,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libkrb5support0@1.19.2-2ubuntu0.3 @@ -3064,7 +3065,7 @@

                                            CVE-2024-26458

                                            • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                                            • Package Manager: ubuntu:22.04 @@ -3077,7 +3078,7 @@

                                              CVE-2024-26458

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and krb5/libk5crypto3@1.19.2-2ubuntu0.3 + docker-image|quay.io/argoproj/argocd@v2.11.2 and krb5/libk5crypto3@1.19.2-2ubuntu0.3
                                            @@ -3090,7 +3091,7 @@

                                            Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libk5crypto3@1.19.2-2ubuntu0.3 @@ -3099,7 +3100,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -3120,7 +3121,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -3143,7 +3144,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libkrb5-3@1.19.2-2ubuntu0.3 @@ -3152,7 +3153,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -3173,7 +3174,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libgssapi-krb5-2@1.19.2-2ubuntu0.3 @@ -3182,7 +3183,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -3193,7 +3194,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 git@1:2.34.1-1ubuntu1.10 @@ -3206,7 +3207,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 git@1:2.34.1-1ubuntu1.10 @@ -3221,7 +3222,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 adduser@3.118ubuntu5 @@ -3240,7 +3241,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 krb5/libkrb5support0@1.19.2-2ubuntu0.3 @@ -3285,7 +3286,7 @@

                                              Out-of-bounds Write

                                              • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                                              • Package Manager: ubuntu:22.04 @@ -3298,7 +3299,7 @@

                                                Out-of-bounds Write

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and gnupg2/gpgv@2.2.27-3ubuntu2.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 and gnupg2/gpgv@2.2.27-3ubuntu2.1
                                              @@ -3311,7 +3312,7 @@

                                              Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gpgv@2.2.27-3ubuntu2.1 @@ -3320,7 +3321,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 apt@2.4.12 @@ -3331,7 +3332,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3342,7 +3343,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/dirmngr@2.2.27-3ubuntu2.1 @@ -3353,7 +3354,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -3364,7 +3365,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3377,7 +3378,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3390,7 +3391,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/dirmngr@2.2.27-3ubuntu2.1 @@ -3399,7 +3400,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3410,7 +3411,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3423,7 +3424,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg-l10n@2.2.27-3ubuntu2.1 @@ -3432,7 +3433,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3443,7 +3444,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg-utils@2.2.27-3ubuntu2.1 @@ -3452,7 +3453,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3463,7 +3464,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -3472,7 +3473,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3483,7 +3484,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3496,7 +3497,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3509,7 +3510,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gpg-agent@2.2.27-3ubuntu2.1 @@ -3518,7 +3519,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3529,7 +3530,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3542,7 +3543,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3555,7 +3556,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gpg-wks-client@2.2.27-3ubuntu2.1 @@ -3564,7 +3565,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3575,7 +3576,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gpg-wks-server@2.2.27-3ubuntu2.1 @@ -3584,7 +3585,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3595,7 +3596,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gpgsm@2.2.27-3ubuntu2.1 @@ -3604,7 +3605,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3615,7 +3616,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3664,7 +3665,7 @@

                                                Allocation of Resources Without Limits or Throttling

                                              • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                                              • Package Manager: ubuntu:22.04 @@ -3677,7 +3678,7 @@

                                                Allocation of Resources Without Limits or Throttling

                                                Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and glibc/libc-bin@2.35-0ubuntu3.7 + docker-image|quay.io/argoproj/argocd@v2.11.2 and glibc/libc-bin@2.35-0ubuntu3.7
                                              @@ -3690,7 +3691,7 @@

                                              Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 glibc/libc-bin@2.35-0ubuntu3.7 @@ -3699,7 +3700,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 glibc/libc6@2.35-0ubuntu3.7 @@ -3745,7 +3746,7 @@

                                                Improper Input Validation

                                                • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                                                • Package Manager: ubuntu:22.04 @@ -3759,7 +3760,7 @@

                                                  Improper Input Validation

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1, git@1:2.34.1-1ubuntu1.10 and others + docker-image|quay.io/argoproj/argocd@v2.11.2, git@1:2.34.1-1ubuntu1.10 and others
                                                @@ -3771,7 +3772,7 @@

                                                Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 git@1:2.34.1-1ubuntu1.10 @@ -3782,7 +3783,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 git@1:2.34.1-1ubuntu1.10 @@ -3791,7 +3792,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 git-lfs@3.0.2-1ubuntu0.2 @@ -3838,7 +3839,7 @@

                                                  Uncontrolled Recursion

                                                  • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                                                  • Package Manager: ubuntu:22.04 @@ -3851,7 +3852,7 @@

                                                    Uncontrolled Recursion

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and gcc-12/libstdc++6@12.3.0-1ubuntu1~22.04 + docker-image|quay.io/argoproj/argocd@v2.11.2 and gcc-12/libstdc++6@12.3.0-1ubuntu1~22.04
                                                  @@ -3864,7 +3865,7 @@

                                                  Detailed paths

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gcc-12/libstdc++6@12.3.0-1ubuntu1~22.04 @@ -3873,7 +3874,7 @@

                                                    Detailed paths

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 apt@2.4.12 @@ -3884,7 +3885,7 @@

                                                    Detailed paths

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 apt@2.4.12 @@ -3897,7 +3898,7 @@

                                                    Detailed paths

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gcc-12/gcc-12-base@12.3.0-1ubuntu1~22.04 @@ -3906,7 +3907,7 @@

                                                    Detailed paths

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 gcc-12/libgcc-s1@12.3.0-1ubuntu1~22.04 @@ -3953,7 +3954,7 @@

                                                    Improper Input Validation

                                                    • - Manifest file: quay.io/argoproj/argocd:v2.11.1/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.11.2/argoproj/argocd Dockerfile
                                                    • Package Manager: ubuntu:22.04 @@ -3966,7 +3967,7 @@

                                                      Improper Input Validation

                                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 and coreutils@8.32-4.1ubuntu1.2 + docker-image|quay.io/argoproj/argocd@v2.11.2 and coreutils@8.32-4.1ubuntu1.2
                                                    @@ -3979,7 +3980,7 @@

                                                    Detailed paths

                                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.11.1 + docker-image|quay.io/argoproj/argocd@v2.11.2 coreutils@8.32-4.1ubuntu1.2 diff --git a/docs/snyk/v2.11.1/redis_7.0.14-alpine.html b/docs/snyk/v2.11.2/redis_7.0.14-alpine.html similarity index 99% rename from docs/snyk/v2.11.1/redis_7.0.14-alpine.html rename to docs/snyk/v2.11.2/redis_7.0.14-alpine.html index e9aa587faee1d..3a21ad48629a4 100644 --- a/docs/snyk/v2.11.1/redis_7.0.14-alpine.html +++ b/docs/snyk/v2.11.2/redis_7.0.14-alpine.html @@ -456,7 +456,7 @@

                                                      Snyk test report

                                                      -

                                                      May 22nd 2024, 5:04:41 pm (UTC+00:00)

                                                      +

                                                      May 26th 2024, 12:18:55 am (UTC+00:00)

                                                      Scanned the following paths: diff --git a/docs/snyk/v2.9.15/public.ecr.aws_docker_library_redis_7.0.15-alpine.html b/docs/snyk/v2.9.15/public.ecr.aws_docker_library_redis_7.0.15-alpine.html deleted file mode 100644 index 7299d28a94ccf..0000000000000 --- a/docs/snyk/v2.9.15/public.ecr.aws_docker_library_redis_7.0.15-alpine.html +++ /dev/null @@ -1,1097 +0,0 @@ - - - - - - - - - Snyk test report - - - - - - - - - -
                                                      -
                                                      -
                                                      -
                                                      - - - Snyk - Open Source Security - - - - - - - -
                                                      -

                                                      Snyk test report

                                                      - -

                                                      May 22nd 2024, 5:09:14 pm (UTC+00:00)

                                                      -
                                                      -
                                                      - Scanned the following paths: -
                                                        -
                                                      • public.ecr.aws/docker/library/redis:7.0.15-alpine/docker/library/redis (apk)
                                                      • -
                                                      • public.ecr.aws/docker/library/redis:7.0.15-alpine/tianon/gosu//usr/local/bin/gosu (gomodules)
                                                      • -
                                                      -
                                                      - -
                                                      -
                                                      5 known vulnerabilities
                                                      -
                                                      29 vulnerable dependency paths
                                                      -
                                                      19 dependencies
                                                      -
                                                      -
                                                      -
                                                      -
                                                      - -
                                                      -
                                                      -
                                                      -

                                                      Out-of-bounds Write

                                                      -
                                                      - -
                                                      - medium severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - busybox/busybox -
                                                      • - -
                                                      • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      A heap-buffer-overflow was discovered in BusyBox v.1.36.1 in the next_token function at awk.c:1159.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 busybox to version 1.36.1-r16 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      Use After Free

                                                      -
                                                      - -
                                                      - medium severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - busybox/busybox -
                                                      • - -
                                                      • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      A use-after-free vulnerability was discovered in BusyBox v.1.36.1 via a crafted awk pattern in the awk.c copyvar function.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      Use After Free

                                                      -
                                                      - -
                                                      - medium severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - busybox/busybox -
                                                      • - -
                                                      • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      A use-after-free vulnerability in BusyBox v.1.36.1 allows attackers to cause a denial of service via a crafted awk pattern in the awk.c evaluate function.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      Use After Free

                                                      -
                                                      - -
                                                      - medium severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - busybox/busybox -
                                                      • - -
                                                      • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      A use-after-free vulnerability was discovered in xasprintf function in xfuncs_printf.c:344 in BusyBox v.1.36.1.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      CVE-2024-4603

                                                      -
                                                      - -
                                                      - low severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - openssl/libcrypto3 -
                                                      • - -
                                                      • Introduced through: - - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine and openssl/libcrypto3@3.1.4-r6 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - openssl/libcrypto3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libcrypto3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libcrypto3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libcrypto3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libssl3@3.1.4-r6 - - openssl/libcrypto3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - openssl/libssl3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libssl3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libssl3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|public.ecr.aws/docker/library/redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libssl3@3.1.4-r6 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream openssl package and not the openssl package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      Issue summary: Checking excessively long DSA keys or parameters may be very - slow.

                                                      -

                                                      Impact summary: Applications that use the functions EVP_PKEY_param_check() - or EVP_PKEY_public_check() to check a DSA public key or DSA parameters may - experience long delays. Where the key or parameters that are being checked - have been obtained from an untrusted source this may lead to a Denial of - Service.

                                                      -

                                                      The functions EVP_PKEY_param_check() or EVP_PKEY_public_check() perform - various checks on DSA parameters. Some of those computations take a long time - if the modulus (p parameter) is too large.

                                                      -

                                                      Trying to use a very large modulus is slow and OpenSSL will not allow using - public keys with a modulus which is over 10,000 bits in length for signature - verification. However the key and parameter check functions do not limit - the modulus size when performing the checks.

                                                      -

                                                      An application that calls EVP_PKEY_param_check() or EVP_PKEY_public_check() - and supplies a key or parameters obtained from an untrusted source could be - vulnerable to a Denial of Service attack.

                                                      -

                                                      These functions are not called by OpenSSL itself on untrusted DSA keys so - only applications that directly call these functions may be vulnerable.

                                                      -

                                                      Also vulnerable are the OpenSSL pkey and pkeyparam command line applications - when using the -check option.

                                                      -

                                                      The OpenSSL SSL/TLS implementation is not affected by this issue.

                                                      -

                                                      The OpenSSL 3.0 and 3.1 FIPS providers are affected by this issue.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 openssl to version 3.1.5-r0 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -
                                                      -
                                                      - - - diff --git a/docs/snyk/v2.9.15/redis_7.0.15-alpine.html b/docs/snyk/v2.9.15/redis_7.0.15-alpine.html deleted file mode 100644 index 1272257dd9a37..0000000000000 --- a/docs/snyk/v2.9.15/redis_7.0.15-alpine.html +++ /dev/null @@ -1,1097 +0,0 @@ - - - - - - - - - Snyk test report - - - - - - - - - -
                                                      -
                                                      -
                                                      -
                                                      - - - Snyk - Open Source Security - - - - - - - -
                                                      -

                                                      Snyk test report

                                                      - -

                                                      May 22nd 2024, 5:09:37 pm (UTC+00:00)

                                                      -
                                                      -
                                                      - Scanned the following paths: -
                                                        -
                                                      • redis:7.0.15-alpine (apk)
                                                      • -
                                                      • redis:7.0.15-alpine/tianon/gosu//usr/local/bin/gosu (gomodules)
                                                      • -
                                                      -
                                                      - -
                                                      -
                                                      5 known vulnerabilities
                                                      -
                                                      29 vulnerable dependency paths
                                                      -
                                                      19 dependencies
                                                      -
                                                      -
                                                      -
                                                      -
                                                      - -
                                                      -
                                                      -
                                                      -

                                                      Out-of-bounds Write

                                                      -
                                                      - -
                                                      - medium severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - busybox/busybox -
                                                      • - -
                                                      • Introduced through: - - docker-image|redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      A heap-buffer-overflow was discovered in BusyBox v.1.36.1 in the next_token function at awk.c:1159.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 busybox to version 1.36.1-r16 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      Use After Free

                                                      -
                                                      - -
                                                      - medium severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - busybox/busybox -
                                                      • - -
                                                      • Introduced through: - - docker-image|redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      A use-after-free vulnerability was discovered in BusyBox v.1.36.1 via a crafted awk pattern in the awk.c copyvar function.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      Use After Free

                                                      -
                                                      - -
                                                      - medium severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - busybox/busybox -
                                                      • - -
                                                      • Introduced through: - - docker-image|redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      A use-after-free vulnerability in BusyBox v.1.36.1 allows attackers to cause a denial of service via a crafted awk pattern in the awk.c evaluate function.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      Use After Free

                                                      -
                                                      - -
                                                      - medium severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - busybox/busybox -
                                                      • - -
                                                      • Introduced through: - - docker-image|redis@7.0.15-alpine and busybox/busybox@1.36.1-r15 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - busybox/busybox@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - alpine-baselayout/alpine-baselayout@3.4.3-r2 - - busybox/busybox-binsh@1.36.1-r15 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream busybox package and not the busybox package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      A use-after-free vulnerability was discovered in xasprintf function in xfuncs_printf.c:344 in BusyBox v.1.36.1.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 busybox to version 1.36.1-r17 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -

                                                      CVE-2024-4603

                                                      -
                                                      - -
                                                      - low severity -
                                                      - -
                                                      - -
                                                        -
                                                      • - Package Manager: alpine:3.19 -
                                                      • -
                                                      • - Vulnerable module: - - openssl/libcrypto3 -
                                                      • - -
                                                      • Introduced through: - - docker-image|redis@7.0.15-alpine and openssl/libcrypto3@3.1.4-r6 - -
                                                      • -
                                                      - -
                                                      - - -

                                                      Detailed paths

                                                      - -
                                                        -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - openssl/libcrypto3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libcrypto3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libcrypto3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libcrypto3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libssl3@3.1.4-r6 - - openssl/libcrypto3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - openssl/libssl3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - .redis-rundeps@20240517.225231 - - openssl/libssl3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - apk-tools/apk-tools@2.14.0-r5 - - openssl/libssl3@3.1.4-r6 - - - -
                                                      • -
                                                      • - Introduced through: - docker-image|redis@7.0.15-alpine - - busybox/ssl_client@1.36.1-r15 - - openssl/libssl3@3.1.4-r6 - - - -
                                                      • -
                                                      - -
                                                      - -
                                                      - -

                                                      NVD Description

                                                      -

                                                      Note: Versions mentioned in the description apply only to the upstream openssl package and not the openssl package as distributed by Alpine. - See How to fix? for Alpine:3.19 relevant fixed versions and status.

                                                      -

                                                      Issue summary: Checking excessively long DSA keys or parameters may be very - slow.

                                                      -

                                                      Impact summary: Applications that use the functions EVP_PKEY_param_check() - or EVP_PKEY_public_check() to check a DSA public key or DSA parameters may - experience long delays. Where the key or parameters that are being checked - have been obtained from an untrusted source this may lead to a Denial of - Service.

                                                      -

                                                      The functions EVP_PKEY_param_check() or EVP_PKEY_public_check() perform - various checks on DSA parameters. Some of those computations take a long time - if the modulus (p parameter) is too large.

                                                      -

                                                      Trying to use a very large modulus is slow and OpenSSL will not allow using - public keys with a modulus which is over 10,000 bits in length for signature - verification. However the key and parameter check functions do not limit - the modulus size when performing the checks.

                                                      -

                                                      An application that calls EVP_PKEY_param_check() or EVP_PKEY_public_check() - and supplies a key or parameters obtained from an untrusted source could be - vulnerable to a Denial of Service attack.

                                                      -

                                                      These functions are not called by OpenSSL itself on untrusted DSA keys so - only applications that directly call these functions may be vulnerable.

                                                      -

                                                      Also vulnerable are the OpenSSL pkey and pkeyparam command line applications - when using the -check option.

                                                      -

                                                      The OpenSSL SSL/TLS implementation is not affected by this issue.

                                                      -

                                                      The OpenSSL 3.0 and 3.1 FIPS providers are affected by this issue.

                                                      -

                                                      Remediation

                                                      -

                                                      Upgrade Alpine:3.19 openssl to version 3.1.5-r0 or higher.

                                                      -

                                                      References

                                                      - - -
                                                      - - - -
                                                      -
                                                      -
                                                      -
                                                      - - - diff --git a/docs/snyk/v2.9.15/argocd-iac-install.html b/docs/snyk/v2.9.16/argocd-iac-install.html similarity index 99% rename from docs/snyk/v2.9.15/argocd-iac-install.html rename to docs/snyk/v2.9.16/argocd-iac-install.html index 0b5a39cb59647..0b546c7f0f290 100644 --- a/docs/snyk/v2.9.15/argocd-iac-install.html +++ b/docs/snyk/v2.9.16/argocd-iac-install.html @@ -456,7 +456,7 @@

                                                      Snyk test report

                                                      -

                                                      May 22nd 2024, 5:10:54 pm (UTC+00:00)

                                                      +

                                                      May 26th 2024, 12:24:54 am (UTC+00:00)

                                                      Scanned the following path: diff --git a/docs/snyk/v2.9.15/argocd-iac-namespace-install.html b/docs/snyk/v2.9.16/argocd-iac-namespace-install.html similarity index 99% rename from docs/snyk/v2.9.15/argocd-iac-namespace-install.html rename to docs/snyk/v2.9.16/argocd-iac-namespace-install.html index 34e6f9cd32163..b671bdf60d6c3 100644 --- a/docs/snyk/v2.9.15/argocd-iac-namespace-install.html +++ b/docs/snyk/v2.9.16/argocd-iac-namespace-install.html @@ -456,7 +456,7 @@

                                                      Snyk test report

                                                      -

                                                      May 22nd 2024, 5:11:04 pm (UTC+00:00)

                                                      +

                                                      May 26th 2024, 12:25:04 am (UTC+00:00)

                                                      Scanned the following path: diff --git a/docs/snyk/v2.9.15/argocd-test.html b/docs/snyk/v2.9.16/argocd-test.html similarity index 99% rename from docs/snyk/v2.9.15/argocd-test.html rename to docs/snyk/v2.9.16/argocd-test.html index 821b947b7b1de..a1e0515fe2965 100644 --- a/docs/snyk/v2.9.15/argocd-test.html +++ b/docs/snyk/v2.9.16/argocd-test.html @@ -456,7 +456,7 @@

                                                      Snyk test report

                                                      -

                                                      May 22nd 2024, 5:08:56 pm (UTC+00:00)

                                                      +

                                                      May 26th 2024, 12:22:59 am (UTC+00:00)

                                                      Scanned the following paths: diff --git a/docs/snyk/v2.10.10/ghcr.io_dexidp_dex_v2.37.0.html b/docs/snyk/v2.9.16/ghcr.io_dexidp_dex_v2.37.0.html similarity index 99% rename from docs/snyk/v2.10.10/ghcr.io_dexidp_dex_v2.37.0.html rename to docs/snyk/v2.9.16/ghcr.io_dexidp_dex_v2.37.0.html index f4e309f100513..ca5ef437303df 100644 --- a/docs/snyk/v2.10.10/ghcr.io_dexidp_dex_v2.37.0.html +++ b/docs/snyk/v2.9.16/ghcr.io_dexidp_dex_v2.37.0.html @@ -456,7 +456,7 @@

                                                      Snyk test report

                                                      -

                                                      May 22nd 2024, 5:06:31 pm (UTC+00:00)

                                                      +

                                                      May 26th 2024, 12:23:06 am (UTC+00:00)

                                                      Scanned the following paths: diff --git a/docs/snyk/v2.11.1/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html b/docs/snyk/v2.9.16/haproxy_2.6.14-alpine.html similarity index 91% rename from docs/snyk/v2.11.1/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html rename to docs/snyk/v2.9.16/haproxy_2.6.14-alpine.html index 29ef9c7fffcfc..e92c7d4b77a33 100644 --- a/docs/snyk/v2.11.1/public.ecr.aws_docker_library_haproxy_2.6.14-alpine.html +++ b/docs/snyk/v2.9.16/haproxy_2.6.14-alpine.html @@ -456,12 +456,12 @@

                                                      Snyk test report

                                                      -

                                                      May 22nd 2024, 5:04:06 pm (UTC+00:00)

                                                      +

                                                      May 26th 2024, 12:23:10 am (UTC+00:00)

                                                      Scanned the following path:
                                                        -
                                                      • public.ecr.aws/docker/library/haproxy:2.6.14-alpine/docker/library/haproxy (apk)
                                                      • +
                                                      • haproxy:2.6.14-alpine (apk)
                                                      @@ -476,8 +476,8 @@

                                                      Snyk test report

    Project docker-image|public.ecr.aws/docker/library/haproxy
    Path public.ecr.aws/docker/library/haproxy:2.6.14-alpine/docker/library/haproxy
    Project docker-image|haproxy
    Path haproxy:2.6.14-alpine
    Package Manager apk
    - - + + @@ -507,7 +507,7 @@

    CVE-2023-5363

  • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
  • @@ -520,7 +520,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -529,7 +529,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -540,7 +540,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -551,7 +551,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -562,7 +562,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -575,7 +575,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -584,7 +584,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -595,7 +595,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -606,7 +606,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -699,7 +699,7 @@

      Improper Check for Unusual or Exceptional Conditions

      Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -712,7 +712,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -721,7 +721,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -732,7 +732,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -743,7 +743,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -754,7 +754,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -767,7 +767,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -776,7 +776,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -787,7 +787,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -798,7 +798,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -883,7 +883,7 @@

      Out-of-bounds Write

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -896,7 +896,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -905,7 +905,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -916,7 +916,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -927,7 +927,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -938,7 +938,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -951,7 +951,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -960,7 +960,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -971,7 +971,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -982,7 +982,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1072,7 +1072,7 @@

      CVE-2024-0727

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -1085,7 +1085,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -1094,7 +1094,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1105,7 +1105,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1116,7 +1116,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1127,7 +1127,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1140,7 +1140,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -1149,7 +1149,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1160,7 +1160,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1171,7 +1171,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1248,7 +1248,7 @@

      Out-of-bounds Write

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and busybox/busybox@1.36.1-r2 + docker-image|haproxy@2.6.14-alpine and busybox/busybox@1.36.1-r2
    @@ -1261,7 +1261,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/busybox@1.36.1-r2 @@ -1270,7 +1270,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine alpine-baselayout/alpine-baselayout@3.4.3-r1 @@ -1283,7 +1283,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/busybox-binsh@1.36.1-r2 @@ -1292,7 +1292,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine alpine-baselayout/alpine-baselayout@3.4.3-r1 @@ -1303,7 +1303,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1356,7 +1356,7 @@

      CVE-2023-6237

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -1369,7 +1369,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -1378,7 +1378,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1389,7 +1389,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1400,7 +1400,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1411,7 +1411,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1424,7 +1424,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -1433,7 +1433,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1444,7 +1444,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1455,7 +1455,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1533,7 +1533,7 @@

      CVE-2024-2511

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -1546,7 +1546,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -1555,7 +1555,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1566,7 +1566,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1577,7 +1577,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1588,7 +1588,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1601,7 +1601,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -1610,7 +1610,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1621,7 +1621,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1632,7 +1632,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1707,7 +1707,7 @@

      CVE-2024-4603

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0 + docker-image|haproxy@2.6.14-alpine and openssl/libcrypto3@3.1.2-r0
    @@ -1720,7 +1720,7 @@

    Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libcrypto3@3.1.2-r0 @@ -1729,7 +1729,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1740,7 +1740,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1751,7 +1751,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 @@ -1762,7 +1762,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1775,7 +1775,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine openssl/libssl3@3.1.2-r0 @@ -1784,7 +1784,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine .haproxy-rundeps@20230809.001942 @@ -1795,7 +1795,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine apk-tools/apk-tools@2.14.0-r2 @@ -1806,7 +1806,7 @@

      Detailed paths

    • Introduced through: - docker-image|public.ecr.aws/docker/library/haproxy@2.6.14-alpine + docker-image|haproxy@2.6.14-alpine busybox/ssl_client@1.36.1-r2 diff --git a/docs/snyk/v2.9.15/quay.io_argoproj_argocd_v2.9.15.html b/docs/snyk/v2.9.16/quay.io_argoproj_argocd_v2.9.16.html similarity index 97% rename from docs/snyk/v2.9.15/quay.io_argoproj_argocd_v2.9.15.html rename to docs/snyk/v2.9.16/quay.io_argoproj_argocd_v2.9.16.html index 095dfc7e40fb1..e45a7cc8e2c99 100644 --- a/docs/snyk/v2.9.15/quay.io_argoproj_argocd_v2.9.15.html +++ b/docs/snyk/v2.9.16/quay.io_argoproj_argocd_v2.9.16.html @@ -456,16 +456,16 @@

      Snyk test report

      -

      May 22nd 2024, 5:09:33 pm (UTC+00:00)

      +

      May 26th 2024, 12:23:31 am (UTC+00:00)

      Scanned the following paths:
        -
      • quay.io/argoproj/argocd:v2.9.15/argoproj/argocd/Dockerfile (deb)
      • -
      • quay.io/argoproj/argocd:v2.9.15/argoproj/argo-cd/v2//usr/local/bin/argocd (gomodules)
      • -
      • quay.io/argoproj/argocd:v2.9.15//usr/local/bin/kustomize (gomodules)
      • -
      • quay.io/argoproj/argocd:v2.9.15/helm/v3//usr/local/bin/helm (gomodules)
      • -
      • quay.io/argoproj/argocd:v2.9.15/git-lfs/git-lfs//usr/bin/git-lfs (gomodules)
      • +
      • quay.io/argoproj/argocd:v2.9.16/argoproj/argocd/Dockerfile (deb)
      • +
      • quay.io/argoproj/argocd:v2.9.16/argoproj/argo-cd/v2//usr/local/bin/argocd (gomodules)
      • +
      • quay.io/argoproj/argocd:v2.9.16//usr/local/bin/kustomize (gomodules)
      • +
      • quay.io/argoproj/argocd:v2.9.16/helm/v3//usr/local/bin/helm (gomodules)
      • +
      • quay.io/argoproj/argocd:v2.9.16/git-lfs/git-lfs//usr/bin/git-lfs (gomodules)
      @@ -492,7 +492,7 @@

      Denial of Service (DoS)

      • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argo-cd/v2 /usr/local/bin/argocd
      • Package Manager: golang @@ -574,7 +574,7 @@

        Allocation of Resources Without Limits or Throttling

      • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argo-cd/v2 /usr/local/bin/argocd
      • Package Manager: golang @@ -654,7 +654,7 @@

        CVE-2020-22916

        • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
        • Package Manager: ubuntu:22.04 @@ -667,7 +667,7 @@

          CVE-2020-22916

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and xz-utils/liblzma5@5.2.5-2ubuntu1 + docker-image|quay.io/argoproj/argocd@v2.9.16 and xz-utils/liblzma5@5.2.5-2ubuntu1
        @@ -680,7 +680,7 @@

        Detailed paths

        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 xz-utils/liblzma5@5.2.5-2ubuntu1 @@ -730,7 +730,7 @@

          Information Exposure

          • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
          • Package Manager: ubuntu:22.04 @@ -743,7 +743,7 @@

            Information Exposure

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and libgcrypt20@1.9.4-3ubuntu3 + docker-image|quay.io/argoproj/argocd@v2.9.16 and libgcrypt20@1.9.4-3ubuntu3
          @@ -756,7 +756,7 @@

          Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 libgcrypt20@1.9.4-3ubuntu3 @@ -765,7 +765,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/dirmngr@2.2.27-3ubuntu2.1 @@ -776,7 +776,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -787,7 +787,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 apt@2.4.12 @@ -800,7 +800,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 apt@2.4.12 @@ -813,7 +813,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -826,7 +826,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -839,7 +839,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -852,7 +852,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -865,7 +865,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -878,7 +878,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -891,7 +891,7 @@

            Detailed paths

          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 apt@2.4.12 @@ -943,7 +943,7 @@

            CVE-2024-26462

            • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
            • Package Manager: ubuntu:22.04 @@ -956,7 +956,7 @@

              CVE-2024-26462

            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and krb5/libk5crypto3@1.19.2-2ubuntu0.3 + docker-image|quay.io/argoproj/argocd@v2.9.16 and krb5/libk5crypto3@1.19.2-2ubuntu0.3
            @@ -969,7 +969,7 @@

            Detailed paths

            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libk5crypto3@1.19.2-2ubuntu0.3 @@ -978,7 +978,7 @@

              Detailed paths

            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -999,7 +999,7 @@

              Detailed paths

            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -1022,7 +1022,7 @@

              Detailed paths

            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libkrb5-3@1.19.2-2ubuntu0.3 @@ -1031,7 +1031,7 @@

              Detailed paths

            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -1052,7 +1052,7 @@

              Detailed paths

            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libgssapi-krb5-2@1.19.2-2ubuntu0.3 @@ -1061,7 +1061,7 @@

              Detailed paths

            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -1072,7 +1072,7 @@

              Detailed paths

            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 git@1:2.34.1-1ubuntu1.10 @@ -1085,7 +1085,7 @@

              Detailed paths

            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 git@1:2.34.1-1ubuntu1.10 @@ -1100,7 +1100,7 @@

              Detailed paths

            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -1119,7 +1119,7 @@

              Detailed paths

            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libkrb5support0@1.19.2-2ubuntu0.3 @@ -1164,7 +1164,7 @@

              LGPL-3.0 license

              • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argo-cd/v2 /usr/local/bin/argocd
              • Package Manager: golang @@ -1224,7 +1224,7 @@

                MPL-2.0 license

                • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argo-cd/v2 /usr/local/bin/argocd
                • Package Manager: golang @@ -1284,7 +1284,7 @@

                  MPL-2.0 license

                  • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argo-cd/v2 /usr/local/bin/argocd
                  • Package Manager: golang @@ -1344,7 +1344,7 @@

                    MPL-2.0 license

                    • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argo-cd/v2 /usr/local/bin/argocd
                    • Package Manager: golang @@ -1404,7 +1404,7 @@

                      MPL-2.0 license

                      • - Manifest file: quay.io/argoproj/argocd:v2.9.15/helm/v3 /usr/local/bin/helm + Manifest file: quay.io/argoproj/argocd:v2.9.16/helm/v3 /usr/local/bin/helm
                      • Package Manager: golang @@ -1464,7 +1464,7 @@

                        MPL-2.0 license

                        • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argo-cd/v2 /usr/local/bin/argocd
                        • Package Manager: golang @@ -1524,7 +1524,7 @@

                          MPL-2.0 license

                          • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argo-cd/v2 /usr/local/bin/argocd + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argo-cd/v2 /usr/local/bin/argocd
                          • Package Manager: golang @@ -1584,7 +1584,7 @@

                            CVE-2023-7008

                            • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                            • Package Manager: ubuntu:22.04 @@ -1597,7 +1597,7 @@

                              CVE-2023-7008

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and systemd/libsystemd0@249.11-0ubuntu3.12 + docker-image|quay.io/argoproj/argocd@v2.9.16 and systemd/libsystemd0@249.11-0ubuntu3.12
                            @@ -1610,7 +1610,7 @@

                            Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 systemd/libsystemd0@249.11-0ubuntu3.12 @@ -1619,7 +1619,7 @@

                              Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 apt@2.4.12 @@ -1630,7 +1630,7 @@

                              Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 procps/libprocps8@2:3.3.17-6ubuntu2.1 @@ -1641,7 +1641,7 @@

                              Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 util-linux@2.37.2-4ubuntu3.4 @@ -1652,7 +1652,7 @@

                              Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 util-linux/bsdutils@1:2.37.2-4ubuntu3.4 @@ -1663,7 +1663,7 @@

                              Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 apt@2.4.12 @@ -1676,7 +1676,7 @@

                              Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 systemd/libudev1@249.11-0ubuntu3.12 @@ -1685,7 +1685,7 @@

                              Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 libfido2/libfido2-1@1.10.0-1 @@ -1696,7 +1696,7 @@

                              Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 util-linux@2.37.2-4ubuntu3.4 @@ -1707,7 +1707,7 @@

                              Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 apt@2.4.12 @@ -1740,6 +1740,7 @@

                              References

                            • https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QHNBXGKJWISJETTTDTZKTBFIBJUOSLKL/
                            • https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4GMDEG5PKONWNHOEYSUDRT6JEOISRMN2/
                            • https://access.redhat.com/errata/RHSA-2024:2463
                            • +
                            • https://access.redhat.com/errata/RHSA-2024:3203

                            @@ -1761,7 +1762,7 @@

                            Arbitrary Code Injection

                            • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                            • Package Manager: ubuntu:22.04 @@ -1774,7 +1775,7 @@

                              Arbitrary Code Injection

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and shadow/passwd@1:4.8.1-2ubuntu2.2 + docker-image|quay.io/argoproj/argocd@v2.9.16 and shadow/passwd@1:4.8.1-2ubuntu2.2
                            @@ -1787,7 +1788,7 @@

                            Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 shadow/passwd@1:4.8.1-2ubuntu2.2 @@ -1796,7 +1797,7 @@

                              Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -1807,7 +1808,7 @@

                              Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -1818,7 +1819,7 @@

                              Detailed paths

                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 shadow/login@1:4.8.1-2ubuntu2.2 @@ -1865,7 +1866,7 @@

                              Uncontrolled Recursion

                              • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                              • Package Manager: ubuntu:22.04 @@ -1878,7 +1879,7 @@

                                Uncontrolled Recursion

                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and pcre3/libpcre3@2:8.39-13ubuntu0.22.04.1 + docker-image|quay.io/argoproj/argocd@v2.9.16 and pcre3/libpcre3@2:8.39-13ubuntu0.22.04.1
                              @@ -1891,7 +1892,7 @@

                              Detailed paths

                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 pcre3/libpcre3@2:8.39-13ubuntu0.22.04.1 @@ -1900,7 +1901,7 @@

                                Detailed paths

                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 grep@3.7-1build1 @@ -1953,7 +1954,7 @@

                                Release of Invalid Pointer or Reference

                                • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                                • Package Manager: ubuntu:22.04 @@ -1966,7 +1967,7 @@

                                  Release of Invalid Pointer or Reference

                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and patch@2.7.6-7build2 + docker-image|quay.io/argoproj/argocd@v2.9.16 and patch@2.7.6-7build2
                                @@ -1979,7 +1980,7 @@

                                Detailed paths

                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 patch@2.7.6-7build2 @@ -2023,7 +2024,7 @@

                                  Double Free

                                  • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                                  • Package Manager: ubuntu:22.04 @@ -2036,7 +2037,7 @@

                                    Double Free

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and patch@2.7.6-7build2 + docker-image|quay.io/argoproj/argocd@v2.9.16 and patch@2.7.6-7build2
                                  @@ -2049,7 +2050,7 @@

                                  Detailed paths

                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 patch@2.7.6-7build2 @@ -2098,7 +2099,7 @@

                                    CVE-2023-50495

                                    • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                                    • Package Manager: ubuntu:22.04 @@ -2111,7 +2112,7 @@

                                      CVE-2023-50495

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and ncurses/libtinfo6@6.3-2ubuntu0.1 + docker-image|quay.io/argoproj/argocd@v2.9.16 and ncurses/libtinfo6@6.3-2ubuntu0.1
                                    @@ -2124,7 +2125,7 @@

                                    Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/libtinfo6@6.3-2ubuntu0.1 @@ -2133,7 +2134,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 bash@5.1-6ubuntu1.1 @@ -2144,7 +2145,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/libncursesw6@6.3-2ubuntu0.1 @@ -2155,7 +2156,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 less@590-1ubuntu0.22.04.3 @@ -2166,7 +2167,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 libedit/libedit2@3.1-20210910-1build1 @@ -2177,7 +2178,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/libncurses6@6.3-2ubuntu0.1 @@ -2188,7 +2189,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/ncurses-bin@6.3-2ubuntu0.1 @@ -2199,7 +2200,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 procps@2:3.3.17-6ubuntu2.1 @@ -2210,7 +2211,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 util-linux@2.37.2-4ubuntu3.4 @@ -2221,7 +2222,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -2236,7 +2237,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -2251,7 +2252,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/libncursesw6@6.3-2ubuntu0.1 @@ -2260,7 +2261,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 procps@2:3.3.17-6ubuntu2.1 @@ -2271,7 +2272,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -2286,7 +2287,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/libncurses6@6.3-2ubuntu0.1 @@ -2295,7 +2296,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 procps@2:3.3.17-6ubuntu2.1 @@ -2306,7 +2307,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/ncurses-base@6.3-2ubuntu0.1 @@ -2315,7 +2316,7 @@

                                      Detailed paths

                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/ncurses-bin@6.3-2ubuntu0.1 @@ -2362,7 +2363,7 @@

                                      CVE-2023-45918

                                      • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                                      • Package Manager: ubuntu:22.04 @@ -2375,7 +2376,7 @@

                                        CVE-2023-45918

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and ncurses/libtinfo6@6.3-2ubuntu0.1 + docker-image|quay.io/argoproj/argocd@v2.9.16 and ncurses/libtinfo6@6.3-2ubuntu0.1
                                      @@ -2388,7 +2389,7 @@

                                      Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/libtinfo6@6.3-2ubuntu0.1 @@ -2397,7 +2398,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 bash@5.1-6ubuntu1.1 @@ -2408,7 +2409,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/libncursesw6@6.3-2ubuntu0.1 @@ -2419,7 +2420,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 less@590-1ubuntu0.22.04.3 @@ -2430,7 +2431,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 libedit/libedit2@3.1-20210910-1build1 @@ -2441,7 +2442,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/libncurses6@6.3-2ubuntu0.1 @@ -2452,7 +2453,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/ncurses-bin@6.3-2ubuntu0.1 @@ -2463,7 +2464,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 procps@2:3.3.17-6ubuntu2.1 @@ -2474,7 +2475,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 util-linux@2.37.2-4ubuntu3.4 @@ -2485,7 +2486,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -2500,7 +2501,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -2515,7 +2516,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/libncursesw6@6.3-2ubuntu0.1 @@ -2524,7 +2525,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 procps@2:3.3.17-6ubuntu2.1 @@ -2535,7 +2536,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -2550,7 +2551,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/libncurses6@6.3-2ubuntu0.1 @@ -2559,7 +2560,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 procps@2:3.3.17-6ubuntu2.1 @@ -2570,7 +2571,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/ncurses-base@6.3-2ubuntu0.1 @@ -2579,7 +2580,7 @@

                                        Detailed paths

                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 ncurses/ncurses-bin@6.3-2ubuntu0.1 @@ -2624,7 +2625,7 @@

                                        Resource Exhaustion

                                        • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                                        • Package Manager: ubuntu:22.04 @@ -2637,7 +2638,7 @@

                                          Resource Exhaustion

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and libzstd/libzstd1@1.4.8+dfsg-3build1 + docker-image|quay.io/argoproj/argocd@v2.9.16 and libzstd/libzstd1@1.4.8+dfsg-3build1
                                        @@ -2650,7 +2651,7 @@

                                        Detailed paths

                                        • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 libzstd/libzstd1@1.4.8+dfsg-3build1 @@ -2701,7 +2702,7 @@

                                          Integer Overflow or Wraparound

                                          • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                                          • Package Manager: ubuntu:22.04 @@ -2714,7 +2715,7 @@

                                            Integer Overflow or Wraparound

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and krb5/libk5crypto3@1.19.2-2ubuntu0.3 + docker-image|quay.io/argoproj/argocd@v2.9.16 and krb5/libk5crypto3@1.19.2-2ubuntu0.3
                                          @@ -2727,7 +2728,7 @@

                                          Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libk5crypto3@1.19.2-2ubuntu0.3 @@ -2736,7 +2737,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -2757,7 +2758,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -2780,7 +2781,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libkrb5-3@1.19.2-2ubuntu0.3 @@ -2789,7 +2790,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -2810,7 +2811,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libgssapi-krb5-2@1.19.2-2ubuntu0.3 @@ -2819,7 +2820,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -2830,7 +2831,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 git@1:2.34.1-1ubuntu1.10 @@ -2843,7 +2844,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 git@1:2.34.1-1ubuntu1.10 @@ -2858,7 +2859,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -2877,7 +2878,7 @@

                                            Detailed paths

                                          • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libkrb5support0@1.19.2-2ubuntu0.3 @@ -2925,7 +2926,7 @@

                                            CVE-2024-26461

                                            • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                                            • Package Manager: ubuntu:22.04 @@ -2938,7 +2939,7 @@

                                              CVE-2024-26461

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and krb5/libk5crypto3@1.19.2-2ubuntu0.3 + docker-image|quay.io/argoproj/argocd@v2.9.16 and krb5/libk5crypto3@1.19.2-2ubuntu0.3
                                            @@ -2951,7 +2952,7 @@

                                            Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libk5crypto3@1.19.2-2ubuntu0.3 @@ -2960,7 +2961,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -2981,7 +2982,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -3004,7 +3005,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libkrb5-3@1.19.2-2ubuntu0.3 @@ -3013,7 +3014,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -3034,7 +3035,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libgssapi-krb5-2@1.19.2-2ubuntu0.3 @@ -3043,7 +3044,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -3054,7 +3055,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 git@1:2.34.1-1ubuntu1.10 @@ -3067,7 +3068,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 git@1:2.34.1-1ubuntu1.10 @@ -3082,7 +3083,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -3101,7 +3102,7 @@

                                              Detailed paths

                                            • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libkrb5support0@1.19.2-2ubuntu0.3 @@ -3146,7 +3147,7 @@

                                              CVE-2024-26458

                                              • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                                              • Package Manager: ubuntu:22.04 @@ -3159,7 +3160,7 @@

                                                CVE-2024-26458

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and krb5/libk5crypto3@1.19.2-2ubuntu0.3 + docker-image|quay.io/argoproj/argocd@v2.9.16 and krb5/libk5crypto3@1.19.2-2ubuntu0.3
                                              @@ -3172,7 +3173,7 @@

                                              Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libk5crypto3@1.19.2-2ubuntu0.3 @@ -3181,7 +3182,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -3202,7 +3203,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -3225,7 +3226,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libkrb5-3@1.19.2-2ubuntu0.3 @@ -3234,7 +3235,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -3255,7 +3256,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libgssapi-krb5-2@1.19.2-2ubuntu0.3 @@ -3264,7 +3265,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 openssh/openssh-client@1:8.9p1-3ubuntu0.7 @@ -3275,7 +3276,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 git@1:2.34.1-1ubuntu1.10 @@ -3288,7 +3289,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 git@1:2.34.1-1ubuntu1.10 @@ -3303,7 +3304,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 adduser@3.118ubuntu5 @@ -3322,7 +3323,7 @@

                                                Detailed paths

                                              • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 krb5/libkrb5support0@1.19.2-2ubuntu0.3 @@ -3367,7 +3368,7 @@

                                                Out-of-bounds Write

                                                • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                                                • Package Manager: ubuntu:22.04 @@ -3380,7 +3381,7 @@

                                                  Out-of-bounds Write

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and gnupg2/gpgv@2.2.27-3ubuntu2.1 + docker-image|quay.io/argoproj/argocd@v2.9.16 and gnupg2/gpgv@2.2.27-3ubuntu2.1
                                                @@ -3393,7 +3394,7 @@

                                                Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gpgv@2.2.27-3ubuntu2.1 @@ -3402,7 +3403,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 apt@2.4.12 @@ -3413,7 +3414,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3424,7 +3425,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/dirmngr@2.2.27-3ubuntu2.1 @@ -3435,7 +3436,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -3446,7 +3447,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3459,7 +3460,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3472,7 +3473,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/dirmngr@2.2.27-3ubuntu2.1 @@ -3481,7 +3482,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3492,7 +3493,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3505,7 +3506,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg-l10n@2.2.27-3ubuntu2.1 @@ -3514,7 +3515,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3525,7 +3526,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg-utils@2.2.27-3ubuntu2.1 @@ -3534,7 +3535,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3545,7 +3546,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gpg@2.2.27-3ubuntu2.1 @@ -3554,7 +3555,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3565,7 +3566,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3578,7 +3579,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3591,7 +3592,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gpg-agent@2.2.27-3ubuntu2.1 @@ -3600,7 +3601,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3611,7 +3612,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3624,7 +3625,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3637,7 +3638,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gpg-wks-client@2.2.27-3ubuntu2.1 @@ -3646,7 +3647,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3657,7 +3658,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gpg-wks-server@2.2.27-3ubuntu2.1 @@ -3666,7 +3667,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3677,7 +3678,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gpgsm@2.2.27-3ubuntu2.1 @@ -3686,7 +3687,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3697,7 +3698,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gnupg2/gnupg@2.2.27-3ubuntu2.1 @@ -3746,7 +3747,7 @@

                                                  Allocation of Resources Without Limits or Throttling

                                                • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                                                • Package Manager: ubuntu:22.04 @@ -3759,7 +3760,7 @@

                                                  Allocation of Resources Without Limits or Throttling

                                                  Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and glibc/libc-bin@2.35-0ubuntu3.7 + docker-image|quay.io/argoproj/argocd@v2.9.16 and glibc/libc-bin@2.35-0ubuntu3.7
                                                @@ -3772,7 +3773,7 @@

                                                Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 glibc/libc-bin@2.35-0ubuntu3.7 @@ -3781,7 +3782,7 @@

                                                  Detailed paths

                                                • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 glibc/libc6@2.35-0ubuntu3.7 @@ -3827,7 +3828,7 @@

                                                  Improper Input Validation

                                                  • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                                                  • Package Manager: ubuntu:22.04 @@ -3841,7 +3842,7 @@

                                                    Improper Input Validation

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15, git@1:2.34.1-1ubuntu1.10 and others + docker-image|quay.io/argoproj/argocd@v2.9.16, git@1:2.34.1-1ubuntu1.10 and others
                                                  @@ -3853,7 +3854,7 @@

                                                  Detailed paths

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 git@1:2.34.1-1ubuntu1.10 @@ -3864,7 +3865,7 @@

                                                    Detailed paths

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 git@1:2.34.1-1ubuntu1.10 @@ -3873,7 +3874,7 @@

                                                    Detailed paths

                                                  • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 git-lfs@3.0.2-1ubuntu0.2 @@ -3920,7 +3921,7 @@

                                                    Uncontrolled Recursion

                                                    • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                                                    • Package Manager: ubuntu:22.04 @@ -3933,7 +3934,7 @@

                                                      Uncontrolled Recursion

                                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and gcc-12/libstdc++6@12.3.0-1ubuntu1~22.04 + docker-image|quay.io/argoproj/argocd@v2.9.16 and gcc-12/libstdc++6@12.3.0-1ubuntu1~22.04
                                                    @@ -3946,7 +3947,7 @@

                                                    Detailed paths

                                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gcc-12/libstdc++6@12.3.0-1ubuntu1~22.04 @@ -3955,7 +3956,7 @@

                                                      Detailed paths

                                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 apt@2.4.12 @@ -3966,7 +3967,7 @@

                                                      Detailed paths

                                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 apt@2.4.12 @@ -3979,7 +3980,7 @@

                                                      Detailed paths

                                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gcc-12/gcc-12-base@12.3.0-1ubuntu1~22.04 @@ -3988,7 +3989,7 @@

                                                      Detailed paths

                                                    • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 gcc-12/libgcc-s1@12.3.0-1ubuntu1~22.04 @@ -4035,7 +4036,7 @@

                                                      Improper Input Validation

                                                      • - Manifest file: quay.io/argoproj/argocd:v2.9.15/argoproj/argocd Dockerfile + Manifest file: quay.io/argoproj/argocd:v2.9.16/argoproj/argocd Dockerfile
                                                      • Package Manager: ubuntu:22.04 @@ -4048,7 +4049,7 @@

                                                        Improper Input Validation

                                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 and coreutils@8.32-4.1ubuntu1.2 + docker-image|quay.io/argoproj/argocd@v2.9.16 and coreutils@8.32-4.1ubuntu1.2
                                                      @@ -4061,7 +4062,7 @@

                                                      Detailed paths

                                                      • Introduced through: - docker-image|quay.io/argoproj/argocd@v2.9.15 + docker-image|quay.io/argoproj/argocd@v2.9.16 coreutils@8.32-4.1ubuntu1.2 diff --git a/docs/snyk/v2.9.16/redis_7.0.15-alpine.html b/docs/snyk/v2.9.16/redis_7.0.15-alpine.html new file mode 100644 index 0000000000000..cbeaee86c57d8 --- /dev/null +++ b/docs/snyk/v2.9.16/redis_7.0.15-alpine.html @@ -0,0 +1,484 @@ + + + + + + + + + Snyk test report + + + + + + + + + +
                                                        +
                                                        +
                                                        +
                                                        + + + Snyk - Open Source Security + + + + + + + +
                                                        +

                                                        Snyk test report

                                                        + +

                                                        May 26th 2024, 12:23:38 am (UTC+00:00)

                                                        +
                                                        +
                                                        + Scanned the following paths: +
                                                          +
                                                        • redis:7.0.15-alpine (apk)
                                                        • +
                                                        • redis:7.0.15-alpine/tianon/gosu//usr/local/bin/gosu (gomodules)
                                                        • +
                                                        +
                                                        + +
                                                        +
                                                        0 known vulnerabilities
                                                        +
                                                        0 vulnerable dependency paths
                                                        +
                                                        18 dependencies
                                                        +
                                                        +
                                                        +
                                                        +
                                                        + +
                                                        + No known vulnerabilities detected. +
                                                        +
                                                        + + +
    Project docker-image|public.ecr.aws/docker/library/haproxy
    Path public.ecr.aws/docker/library/haproxy:2.6.14-alpine/docker/library/haproxy
    Project docker-image|haproxy
    Path haproxy:2.6.14-alpine
    Package Manager apk