-
Notifications
You must be signed in to change notification settings - Fork 73
Description
We are seeing below vulnerabilities reported for kube-arangodb 1.2.49
[5.6] [CVE-2025-5702] [libc6] [2.39-0ubuntu8.4]
[8.5] [CVE-2025-53547] [helm.sh/helm/v3] [v3.17.3]
[7.8] [CVE-2025-6020] [libpam0g] [1.5.3-5ubuntu5.1]
[3.3] [CVE-2022-3219] [gpgv] [2.4.4-2ubuntu17.2]
[7.5] [CVE-2016-20013] [libc6] [2.39-0ubuntu8.4]
[7.5] [CVE-2024-41996] [libssl3t64] [3.0.13-0ubuntu3.5]
[5.9] [CVE-2024-2236] [libgcrypt20] [1.10.3-2build1]
[6.5] [CVE-2016-2781] [coreutils] [9.4-3ubuntu6]
[3.6] [CVE-2024-56433] [passwd] [1:4.13+dfsg1-4ubuntu3.2]
[4.7] [CVE-2024-10041] [libpam0g] [1.5.3-5ubuntu5.1]
[7.4] [CVE-2024-10963] [libpam0g] [1.5.3-5ubuntu5.1]
[5.9] [CVE-2023-48795] [golang.org/x/crypto] [v0.14.0]
Tool used is aqua scan
We are using below docker image
https://hub.docker.com/r/arangodb/kube-arangodb/tags
docker pull arangodb/kube-arangodb:1.2.49
Let me know if any more info is required. Will update this ticket accordingly