Run Image Scan for Amazon CloudWatch Observability Helm Chart #94
Annotations
4 errors, 10 warnings, and 10 notices
Scan for vulnerabilities
CVE-2024-45337 - CRITICAL severity - golang.org/x/crypto/ssh: Misuse of ServerConfig.PublicKeyCallback may cause authorization bypass in golang.org/x/crypto vulnerability in golang.org/x/crypto
|
Scan for vulnerabilities
CVE-2024-45338 - HIGH severity - golang.org/x/net/html: Non-linear parsing of case-insensitive content in golang.org/x/net/html vulnerability in golang.org/x/net
|
Scan for vulnerabilities
CVE-2024-34156 - HIGH severity - encoding/gob: golang: Calling Decoder.Decode on a message which contains deeply nested structures can cause a panic due to stack exhaustion vulnerability in stdlib
|
Scan for vulnerabilities
Container image is unhealthy. Following your desired severity threshold (HIGH), the job has been marked as failed.
|
Scan for vulnerabilities
Dockerfile not provided. Skipping sarif scan result.
|
Scan for vulnerabilities
CVE-2023-4039 - MEDIUM severity - gcc: -fstack-protector fails to guard dynamic stack allocations on ARM64 vulnerability in gcc-12-base
|
Scan for vulnerabilities
CVE-2025-0395 - MEDIUM severity - glibc: buffer overflow in the GNU C Library's assert() vulnerability in libc-bin
|
Scan for vulnerabilities
CVE-2025-0395 - MEDIUM severity - glibc: buffer overflow in the GNU C Library's assert() vulnerability in libc6
|
Scan for vulnerabilities
CVE-2025-1390 - MEDIUM severity - libcap: pam_cap: Fix potential configuration parsing error vulnerability in libcap2
|
Scan for vulnerabilities
CVE-2025-1390 - MEDIUM severity - libcap: pam_cap: Fix potential configuration parsing error vulnerability in libcap2-bin
|
Scan for vulnerabilities
CVE-2023-4039 - MEDIUM severity - gcc: -fstack-protector fails to guard dynamic stack allocations on ARM64 vulnerability in libgcc-s1
|
Scan for vulnerabilities
CVE-2024-12243 - MEDIUM severity - gnutls: GnuTLS Impacted by Inefficient DER Decoding in libtasn1 Leading to Remote DoS vulnerability in libgnutls30
|
Scan for vulnerabilities
CVE-2024-3596 - MEDIUM severity - freeradius: forgery attack vulnerability in libgssapi-krb5-2
|
Scan for vulnerabilities
CVE-2024-37370 - MEDIUM severity - krb5: GSS message token handling vulnerability in libgssapi-krb5-2
|
Scan for vulnerabilities
CVE-2016-2781 - LOW severity - coreutils: Non-privileged session can escape to the parent session in chroot vulnerability in coreutils
|
Scan for vulnerabilities
CVE-2022-3219 - LOW severity - gnupg: denial of service issue (resource consumption) using compressed packets vulnerability in dirmngr
|
Scan for vulnerabilities
CVE-2022-27943 - LOW severity - binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows stack exhaustion in demangle_const vulnerability in gcc-12-base
|
Scan for vulnerabilities
CVE-2022-3219 - LOW severity - gnupg: denial of service issue (resource consumption) using compressed packets vulnerability in gnupg
|
Scan for vulnerabilities
CVE-2022-3219 - LOW severity - gnupg: denial of service issue (resource consumption) using compressed packets vulnerability in gnupg-l10n
|
Scan for vulnerabilities
CVE-2022-3219 - LOW severity - gnupg: denial of service issue (resource consumption) using compressed packets vulnerability in gnupg-utils
|
Scan for vulnerabilities
CVE-2022-3219 - LOW severity - gnupg: denial of service issue (resource consumption) using compressed packets vulnerability in gnupg2
|
Scan for vulnerabilities
CVE-2022-3219 - LOW severity - gnupg: denial of service issue (resource consumption) using compressed packets vulnerability in gpg
|
Scan for vulnerabilities
CVE-2022-3219 - LOW severity - gnupg: denial of service issue (resource consumption) using compressed packets vulnerability in gpg-agent
|
Scan for vulnerabilities
CVE-2022-3219 - LOW severity - gnupg: denial of service issue (resource consumption) using compressed packets vulnerability in gpg-wks-client
|
Loading