Skip to content

Commit

Permalink
Update 2024-12-21
Browse files Browse the repository at this point in the history
  • Loading branch information
rancher-security-bot committed Dec 21, 2024
1 parent e7715de commit dc6e7f8
Show file tree
Hide file tree
Showing 15 changed files with 280 additions and 588 deletions.
21 changes: 14 additions & 7 deletions docs/csv/report-rancher-v2.8-head-cves.csv

Large diffs are not rendered by default.

2 changes: 1 addition & 1 deletion docs/csv/report-rancher-v2.8-head-stats.csv
Original file line number Diff line number Diff line change
Expand Up @@ -86,7 +86,7 @@ rancher/longhornio-csi-node-driver-registrar:v2.3.0,0,33,33
rancher/longhornio-csi-provisioner:v2.1.2,0,41,41
rancher/longhornio-csi-resizer:v1.2.0,0,35,35
rancher/machine:v0.15.0-rancher118,0,4,4
rancher/mirrored-amazon-aws-cli:2.9.14,2,134,136
rancher/mirrored-amazon-aws-cli:2.9.14,1,142,143
rancher/mirrored-appscode-kubed:v0.13.2,1,27,28
rancher/mirrored-bci-busybox:15.6.24.2,0,0,0
rancher/mirrored-bci-micro:15.6.24.2,0,0,0
Expand Down
21 changes: 14 additions & 7 deletions docs/csv/report-rancher-v2.8.11-cves.csv

Large diffs are not rendered by default.

2 changes: 1 addition & 1 deletion docs/csv/report-rancher-v2.8.11-stats.csv
Original file line number Diff line number Diff line change
Expand Up @@ -86,7 +86,7 @@ rancher/longhornio-csi-node-driver-registrar:v2.3.0,0,33,33
rancher/longhornio-csi-provisioner:v2.1.2,0,41,41
rancher/longhornio-csi-resizer:v1.2.0,0,35,35
rancher/machine:v0.15.0-rancher118,0,4,4
rancher/mirrored-amazon-aws-cli:2.9.14,2,134,136
rancher/mirrored-amazon-aws-cli:2.9.14,1,142,143
rancher/mirrored-appscode-kubed:v0.13.2,1,27,28
rancher/mirrored-bci-busybox:15.6.24.2,0,0,0
rancher/mirrored-bci-micro:15.6.24.2,0,0,0
Expand Down
24 changes: 5 additions & 19 deletions docs/csv/report-rke2-v1.29-cves.csv
Original file line number Diff line number Diff line change
@@ -1,27 +1,13 @@
image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification
rancher/hardened-addon-resizer:1.8.20-build20241001,rke2/v1.29,golang.org/x/net,v0.17.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,pod_nanny,0.33.0,false,affected,
rancher/hardened-calico:v3.29.0-build20241104,rke2/v1.29,libglib-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/hardened-calico:v3.29.0-build20241104 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/hardened-calico:v3.29.0-build20241104,rke2/v1.29,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,HIGH,https://avd.aquasec.com/nvd/cve-2024-45337,calicoctl,0.31.0,false,affected,severity_changed_due_to_suse_cvss_score
rancher/hardened-calico:v3.29.0-build20241104,rke2/v1.29,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,calicoctl,0.33.0,false,affected,
rancher/hardened-dns-node-cache:1.23.1-build20241008,rke2/v1.29,k8s.io/kubernetes,v1.26.10,gobinary,CVE-2023-5528,HIGH,https://avd.aquasec.com/nvd/cve-2023-5528,node-cache,"1.28.4, 1.27.8, 1.26.11, 1.25.16",false,affected,
rancher/hardened-dns-node-cache:1.23.1-build20241008,rke2/v1.29,k8s.io/kubernetes,v1.26.10,gobinary,CVE-2024-0793,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-0793,node-cache,1.27.0-alpha.1,false,affected,severity_changed_due_to_suse_cvss_score
rancher/hardened-dns-node-cache:1.23.1-build20241008,rke2/v1.29,k8s.io/kubernetes,v1.26.10,gobinary,CVE-2024-5321,HIGH,https://avd.aquasec.com/nvd/cve-2024-5321,node-cache,"1.27.16, 1.28.12, 1.29.7, 1.30.3",false,affected,
rancher/hardened-calico:v3.29.1-build20241211,rke2/v1.29,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,HIGH,https://avd.aquasec.com/nvd/cve-2024-45337,calicoctl,0.31.0,false,affected,severity_changed_due_to_suse_cvss_score
rancher/hardened-calico:v3.29.1-build20241211,rke2/v1.29,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,calicoctl,0.33.0,false,affected,
rancher/hardened-etcd:v3.5.16-k3s1-build20241106,rke2/v1.29,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,HIGH,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/etcd,0.31.0,false,affected,severity_changed_due_to_suse_cvss_score
rancher/hardened-etcd:v3.5.16-k3s1-build20241106,rke2/v1.29,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/etcd,0.33.0,false,affected,
rancher/hardened-etcd:v3.5.16-k3s1-build20241106,rke2/v1.29,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,HIGH,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/etcdctl,0.31.0,false,affected,severity_changed_due_to_suse_cvss_score
rancher/hardened-etcd:v3.5.16-k3s1-build20241106,rke2/v1.29,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/etcdctl,0.33.0,false,affected,
rancher/hardened-flannel:v0.26.0-build20241024,rke2/v1.29,glib2-tools,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/hardened-flannel:v0.26.0-build20241024 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/hardened-flannel:v0.26.0-build20241024,rke2/v1.29,libgio-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/hardened-flannel:v0.26.0-build20241024 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/hardened-flannel:v0.26.0-build20241024,rke2/v1.29,libglib-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/hardened-flannel:v0.26.0-build20241024 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/hardened-flannel:v0.26.0-build20241024,rke2/v1.29,libgmodule-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/hardened-flannel:v0.26.0-build20241024 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/hardened-flannel:v0.26.0-build20241024,rke2/v1.29,libgobject-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/hardened-flannel:v0.26.0-build20241024 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/hardened-flannel:v0.26.0-build20241024,rke2/v1.29,libsoup-2_4-1,2.74.3-150600.2.2,suse linux enterprise server,SUSE-SU-2024:4290-1,HIGH,,rancher/hardened-flannel:v0.26.0-build20241024 (suse linux enterprise server 15.6),2.74.3-150600.4.3.1,false,affected,
rancher/hardened-flannel:v0.26.1-build20241211,rke2/v1.29,libsoup-2_4-1,2.74.3-150600.2.2,suse linux enterprise server,SUSE-SU-2024:4290-1,HIGH,,rancher/hardened-flannel:v0.26.1-build20241211 (suse linux enterprise server 15.6),2.74.3-150600.4.3.1,false,affected,
rancher/mirrored-ingress-nginx-kube-webhook-certgen:v1.4.4,rke2/v1.29,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,kube-webhook-certgen,0.33.0,true,affected,
rancher/nginx-ingress-controller:v1.10.5-hardened4,rke2/v1.29,glib2-tools,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/nginx-ingress-controller:v1.10.5-hardened4 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/nginx-ingress-controller:v1.10.5-hardened4,rke2/v1.29,libgio-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/nginx-ingress-controller:v1.10.5-hardened4 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/nginx-ingress-controller:v1.10.5-hardened4,rke2/v1.29,libglib-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/nginx-ingress-controller:v1.10.5-hardened4 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/nginx-ingress-controller:v1.10.5-hardened4,rke2/v1.29,libgmodule-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/nginx-ingress-controller:v1.10.5-hardened4 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/nginx-ingress-controller:v1.10.5-hardened4,rke2/v1.29,libgobject-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/nginx-ingress-controller:v1.10.5-hardened4 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/nginx-ingress-controller:v1.10.5-hardened4,rke2/v1.29,golang.org/x/net,v0.29.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,nginx-ingress-controller,0.33.0,false,affected,
rancher/nginx-ingress-controller:v1.10.5-hardened6,rke2/v1.29,golang.org/x/net,v0.29.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,nginx-ingress-controller,0.33.0,false,affected,
rancher/rke2-cloud-provider:v1.29.10-0.20241016053521-9510ac25fefb-build20241016,rke2/v1.29,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/rke2-cloud-provider,0.33.0,false,affected,
rancher/rke2-runtime:v1.29.11-rke2r1,rke2/v1.29,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,affected,
rancher/rke2-runtime:v1.29.12-rke2r1,rke2/v1.29,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,affected,
16 changes: 8 additions & 8 deletions docs/csv/report-rke2-v1.29-stats.csv
Original file line number Diff line number Diff line change
@@ -1,19 +1,19 @@
image,critical,high,total
rancher/hardened-addon-resizer:1.8.20-build20241001,0,1,1
rancher/hardened-calico:v3.29.0-build20241104,0,3,3
rancher/hardened-cluster-autoscaler:v1.8.11-build20241014,0,0,0
rancher/hardened-coredns:v1.11.3-build20241018,0,0,0
rancher/hardened-dns-node-cache:1.23.1-build20241008,0,2,2
rancher/hardened-calico:v3.29.1-build20241211,0,2,2
rancher/hardened-cluster-autoscaler:v1.9.0-build20241126,0,0,0
rancher/hardened-coredns:v1.12.0-build20241126,0,0,0
rancher/hardened-dns-node-cache:1.24.0-build20241211,0,0,0
rancher/hardened-etcd:v3.5.16-k3s1-build20241106,0,4,4
rancher/hardened-flannel:v0.26.0-build20241024,0,6,6
rancher/hardened-flannel:v0.26.1-build20241211,0,1,1
rancher/hardened-k8s-metrics-server:v0.7.1-build20241008,0,0,0
rancher/hardened-kubernetes:v1.29.11-rke2r1-build20241202,0,0,0
rancher/hardened-kubernetes:v1.29.12-rke2r1-build20241212,0,0,0
rancher/klipper-helm:v0.9.3-build20241008,0,0,0
rancher/klipper-lb:v0.4.9,0,0,0
rancher/mirrored-ingress-nginx-kube-webhook-certgen:v1.4.4,0,1,1
rancher/mirrored-pause:3.6,0,0,0
rancher/mirrored-sig-storage-snapshot-controller:v8.1.0,0,0,0
rancher/mirrored-sig-storage-snapshot-validation-webhook:v8.1.0,0,0,0
rancher/nginx-ingress-controller:v1.10.5-hardened4,0,6,6
rancher/nginx-ingress-controller:v1.10.5-hardened6,0,1,1
rancher/rke2-cloud-provider:v1.29.10-0.20241016053521-9510ac25fefb-build20241016,0,1,1
rancher/rke2-runtime:v1.29.11-rke2r1,0,1,1
rancher/rke2-runtime:v1.29.12-rke2r1,0,1,1
26 changes: 6 additions & 20 deletions docs/csv/report-rke2-v1.30-cves.csv
Original file line number Diff line number Diff line change
@@ -1,28 +1,14 @@
image,release,package_name,package_version,type,vulnerability_id,severity,url,target,patched_version,mirrored,status,justification
rancher/hardened-addon-resizer:1.8.20-build20241001,rke2/v1.30,golang.org/x/net,v0.17.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,pod_nanny,0.33.0,false,affected,
rancher/hardened-calico:v3.29.0-build20241104,rke2/v1.30,libglib-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/hardened-calico:v3.29.0-build20241104 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/hardened-calico:v3.29.0-build20241104,rke2/v1.30,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,HIGH,https://avd.aquasec.com/nvd/cve-2024-45337,calicoctl,0.31.0,false,affected,severity_changed_due_to_suse_cvss_score
rancher/hardened-calico:v3.29.0-build20241104,rke2/v1.30,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,calicoctl,0.33.0,false,affected,
rancher/hardened-dns-node-cache:1.23.1-build20241008,rke2/v1.30,k8s.io/kubernetes,v1.26.10,gobinary,CVE-2023-5528,HIGH,https://avd.aquasec.com/nvd/cve-2023-5528,node-cache,"1.28.4, 1.27.8, 1.26.11, 1.25.16",false,affected,
rancher/hardened-dns-node-cache:1.23.1-build20241008,rke2/v1.30,k8s.io/kubernetes,v1.26.10,gobinary,CVE-2024-0793,MEDIUM,https://avd.aquasec.com/nvd/cve-2024-0793,node-cache,1.27.0-alpha.1,false,affected,severity_changed_due_to_suse_cvss_score
rancher/hardened-dns-node-cache:1.23.1-build20241008,rke2/v1.30,k8s.io/kubernetes,v1.26.10,gobinary,CVE-2024-5321,HIGH,https://avd.aquasec.com/nvd/cve-2024-5321,node-cache,"1.27.16, 1.28.12, 1.29.7, 1.30.3",false,affected,
rancher/hardened-calico:v3.29.1-build20241211,rke2/v1.30,golang.org/x/crypto,v0.24.0,gobinary,CVE-2024-45337,HIGH,https://avd.aquasec.com/nvd/cve-2024-45337,calicoctl,0.31.0,false,affected,severity_changed_due_to_suse_cvss_score
rancher/hardened-calico:v3.29.1-build20241211,rke2/v1.30,golang.org/x/net,v0.26.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,calicoctl,0.33.0,false,affected,
rancher/hardened-etcd:v3.5.16-k3s1-build20241106,rke2/v1.30,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,HIGH,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/etcd,0.31.0,false,affected,severity_changed_due_to_suse_cvss_score
rancher/hardened-etcd:v3.5.16-k3s1-build20241106,rke2/v1.30,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/etcd,0.33.0,false,affected,
rancher/hardened-etcd:v3.5.16-k3s1-build20241106,rke2/v1.30,golang.org/x/crypto,v0.21.0,gobinary,CVE-2024-45337,HIGH,https://avd.aquasec.com/nvd/cve-2024-45337,usr/local/bin/etcdctl,0.31.0,false,affected,severity_changed_due_to_suse_cvss_score
rancher/hardened-etcd:v3.5.16-k3s1-build20241106,rke2/v1.30,golang.org/x/net,v0.23.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/etcdctl,0.33.0,false,affected,
rancher/hardened-flannel:v0.26.0-build20241024,rke2/v1.30,glib2-tools,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/hardened-flannel:v0.26.0-build20241024 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/hardened-flannel:v0.26.0-build20241024,rke2/v1.30,libgio-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/hardened-flannel:v0.26.0-build20241024 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/hardened-flannel:v0.26.0-build20241024,rke2/v1.30,libglib-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/hardened-flannel:v0.26.0-build20241024 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/hardened-flannel:v0.26.0-build20241024,rke2/v1.30,libgmodule-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/hardened-flannel:v0.26.0-build20241024 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/hardened-flannel:v0.26.0-build20241024,rke2/v1.30,libgobject-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/hardened-flannel:v0.26.0-build20241024 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/hardened-flannel:v0.26.0-build20241024,rke2/v1.30,libsoup-2_4-1,2.74.3-150600.2.2,suse linux enterprise server,SUSE-SU-2024:4290-1,HIGH,,rancher/hardened-flannel:v0.26.0-build20241024 (suse linux enterprise server 15.6),2.74.3-150600.4.3.1,false,affected,
rancher/hardened-flannel:v0.26.1-build20241211,rke2/v1.30,libsoup-2_4-1,2.74.3-150600.2.2,suse linux enterprise server,SUSE-SU-2024:4290-1,HIGH,,rancher/hardened-flannel:v0.26.1-build20241211 (suse linux enterprise server 15.6),2.74.3-150600.4.3.1,false,affected,
rancher/mirrored-ingress-nginx-kube-webhook-certgen:v1.4.4,rke2/v1.30,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,kube-webhook-certgen,0.33.0,true,affected,
rancher/nginx-ingress-controller:v1.10.5-hardened4,rke2/v1.30,glib2-tools,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/nginx-ingress-controller:v1.10.5-hardened4 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/nginx-ingress-controller:v1.10.5-hardened4,rke2/v1.30,libgio-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/nginx-ingress-controller:v1.10.5-hardened4 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/nginx-ingress-controller:v1.10.5-hardened4,rke2/v1.30,libglib-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/nginx-ingress-controller:v1.10.5-hardened4 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/nginx-ingress-controller:v1.10.5-hardened4,rke2/v1.30,libgmodule-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/nginx-ingress-controller:v1.10.5-hardened4 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/nginx-ingress-controller:v1.10.5-hardened4,rke2/v1.30,libgobject-2_0-0,2.78.6-150600.4.3.1,suse linux enterprise server,SUSE-SU-2024:4254-1,HIGH,,rancher/nginx-ingress-controller:v1.10.5-hardened4 (suse linux enterprise server 15.6),2.78.6-150600.4.8.1,false,affected,
rancher/nginx-ingress-controller:v1.10.5-hardened4,rke2/v1.30,golang.org/x/net,v0.29.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,nginx-ingress-controller,0.33.0,false,affected,
rancher/nginx-ingress-controller:v1.10.5-hardened6,rke2/v1.30,golang.org/x/net,v0.29.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,nginx-ingress-controller,0.33.0,false,affected,
rancher/rke2-cloud-provider:v1.30.6-0.20241016053533-5ec454f50e7a-build20241016,rke2/v1.30,golang.org/x/net,v0.28.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,usr/local/bin/rke2-cloud-provider,0.33.0,false,affected,
rancher/rke2-runtime:v1.30.7-rke2r1,rke2/v1.30,k8s.io/kubernetes,v1.30.0,gobinary,CVE-2024-5321,HIGH,https://avd.aquasec.com/nvd/cve-2024-5321,bin/crictl,"1.27.16, 1.28.12, 1.29.7, 1.30.3",false,affected,
rancher/rke2-runtime:v1.30.7-rke2r1,rke2/v1.30,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,affected,
rancher/rke2-runtime:v1.30.8-rke2r1,rke2/v1.30,k8s.io/kubernetes,v1.30.0,gobinary,CVE-2024-5321,HIGH,https://avd.aquasec.com/nvd/cve-2024-5321,bin/crictl,"1.27.16, 1.28.12, 1.29.7, 1.30.3",false,affected,
rancher/rke2-runtime:v1.30.8-rke2r1,rke2/v1.30,golang.org/x/net,v0.24.0,gobinary,CVE-2024-45338,HIGH,https://avd.aquasec.com/nvd/cve-2024-45338,bin/runc,0.33.0,false,affected,
16 changes: 8 additions & 8 deletions docs/csv/report-rke2-v1.30-stats.csv
Original file line number Diff line number Diff line change
@@ -1,19 +1,19 @@
image,critical,high,total
rancher/hardened-addon-resizer:1.8.20-build20241001,0,1,1
rancher/hardened-calico:v3.29.0-build20241104,0,3,3
rancher/hardened-cluster-autoscaler:v1.8.11-build20241014,0,0,0
rancher/hardened-coredns:v1.11.3-build20241018,0,0,0
rancher/hardened-dns-node-cache:1.23.1-build20241008,0,2,2
rancher/hardened-calico:v3.29.1-build20241211,0,2,2
rancher/hardened-cluster-autoscaler:v1.9.0-build20241126,0,0,0
rancher/hardened-coredns:v1.12.0-build20241126,0,0,0
rancher/hardened-dns-node-cache:1.24.0-build20241211,0,0,0
rancher/hardened-etcd:v3.5.16-k3s1-build20241106,0,4,4
rancher/hardened-flannel:v0.26.0-build20241024,0,6,6
rancher/hardened-flannel:v0.26.1-build20241211,0,1,1
rancher/hardened-k8s-metrics-server:v0.7.1-build20241008,0,0,0
rancher/hardened-kubernetes:v1.30.7-rke2r1-build20241126,0,0,0
rancher/hardened-kubernetes:v1.30.8-rke2r1-build20241212,0,0,0
rancher/klipper-helm:v0.9.3-build20241008,0,0,0
rancher/klipper-lb:v0.4.9,0,0,0
rancher/mirrored-ingress-nginx-kube-webhook-certgen:v1.4.4,0,1,1
rancher/mirrored-pause:3.6,0,0,0
rancher/mirrored-sig-storage-snapshot-controller:v8.1.0,0,0,0
rancher/mirrored-sig-storage-snapshot-validation-webhook:v8.1.0,0,0,0
rancher/nginx-ingress-controller:v1.10.5-hardened4,0,6,6
rancher/nginx-ingress-controller:v1.10.5-hardened6,0,1,1
rancher/rke2-cloud-provider:v1.30.6-0.20241016053533-5ec454f50e7a-build20241016,0,1,1
rancher/rke2-runtime:v1.30.7-rke2r1,0,2,2
rancher/rke2-runtime:v1.30.8-rke2r1,0,2,2
Loading

0 comments on commit dc6e7f8

Please sign in to comment.