-
Notifications
You must be signed in to change notification settings - Fork 2k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
"This image has vulnerabilities" on Docker Hub #242
Comments
fpm-7-alpine: libxml2, sqlite3 3.0.0, file 5.5, file 5.4, file 5.2, pcre 8.38 are listed to have several major and severe vulnerabilities |
Is anyone looking into this issue...? |
Sorry for missing this one -- we get these reports quite often, and they usually involve a large amount of digging which ends up in very little which is actionable. See docker-library/official-images#2740 for a fairly recent example where @yosifkit dove into a lot of these reports and found most of them to be either false positives or out of our hands (because Debian upstream hasn't patched the vulnerabilities either, for whatever reason, although usually because they looked into it and deemed it to be a minor issue). If there are actionable items we can resolve, we're happy to do so (and do so actively). Thanks! |
No description provided.
The text was updated successfully, but these errors were encountered: