Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

shapemapper Vulnerability Analysis #153

Open
github-actions bot opened this issue Feb 1, 2025 · 0 comments
Open

shapemapper Vulnerability Analysis #153

github-actions bot opened this issue Feb 1, 2025 · 0 comments

Comments

@github-actions
Copy link

github-actions bot commented Feb 1, 2025

Significant issues present in bwa, see quickview and recommendations below, but run CVE analysis locally.



  Target             │  getwilds/shapemapper:latest  │    1C    16H    21M    18L     1?   
    digest           │  d47c7fad47c9                 │                                     
  Base image         │  ubuntu:22.04                 │    0C     0H     4M    15L          
  Updated base image │  ubuntu:24.04                 │    0C     0H     3M     5L          
                     │                               │                  -1    -10          

What's next:
    View vulnerabilities → docker scout cves getwilds/shapemapper:latest
    View base image update recommendations → docker scout recommendations getwilds/shapemapper:latest
    Include policy results in your quickview by supplying an organization → docker scout quickview getwilds/shapemapper:latest --org <organization>



  Target   │  getwilds/shapemapper:latest   
    digest │  d47c7fad47c9                  

## Recommended fixes

  Base image is  ubuntu:22.04 

  Name            │  22.04                                                                     
  Digest          │  sha256:3d1556a8a18cf5307b121e0a98e93f1ddf1f3f8e092f1fddfd941254785b95d7   
  Vulnerabilities │    0C     0H     4M    15L                                                 
  Pushed          │ 4 months ago                                                               
  Size            │ 30 MB                                                                      
  Packages        │ 143                                                                        
  Flavor          │ ubuntu                                                                     
  OS              │ 22.04                                                                      

                                                                    
  │ The base image is also available under the supported tag(s)     
  │ `jammy`, `jammy-20240911.1`. If you want to display              
  │ recommendations specifically for a different tag, please re-run  
  │ the command using the `--tag` flag.                              



Refresh base image
  Rebuild the image using a newer base image version. Updating this may result in breaking changes.

  ✓ This image version is up to date.


Change base image
  The list displays new recommended tags in descending order, where the top results are rated as most suitable.


            Tag           │                        Details                         │    Pushed    │       Vulnerabilities        
──────────────────────────┼────────────────────────────────────────────────────────┼──────────────┼──────────────────────────────
   24.04                  │ Benefits:                                              │ 2 months ago │    0C     0H     3M     5L   
  Tag is latest           │ • Image contains 13 fewer packages                     │              │                  -1    -10   
  Also known as:          │ • Tag was pushed more recently                         │              │                              
  • noble                 │ • Image has similar size                               │              │                              
  • latest                │ • Tag is latest                                        │              │                              
  • noble-20241118.1      │ • Image introduces no new vulnerability but removes 11 │              │                              
                          │ • Major OS version update                              │              │                              
                          │                                                        │              │                              
                          │ Image details:                                         │              │                              
                          │ • Size: 30 MB                                          │              │                              
                          │ • OS: 24.04                                            │              │                              
                          │                                                        │              │                              
                          │                                                        │              │                              
                          │                                                        │              │                              
   25.04                  │ Benefits:                                              │ 1 month ago  │    0C     0H     0M     0L   
  Major OS version update │ • Image contains 11 fewer packages                     │              │                  -4    -15   
  Also known as:          │ • Tag was pushed more recently                         │              │                              
  • devel                 │ • Image has similar size                               │              │                              
  • plucky                │ • Image introduces no new vulnerability but removes 19 │              │                              
  • plucky-20241213       │ • Major OS version update                              │              │                              
                          │                                                        │              │                              
                          │ Image details:                                         │              │                              
                          │ • Size: 32 MB                                          │              │                              
                          │ • OS: 25.04                                            │              │                              
                          │                                                        │              │                              
                          │                                                        │              │                              
                          │                                                        │              │                              
   24.10                  │ Benefits:                                              │ 2 months ago │    0C     0H     0M     0L   
  Major OS version update │ • Image contains 11 fewer packages                     │              │                  -4    -15   
  Also known as:          │ • Tag was pushed more recently                         │              │                              
  • rolling               │ • Image has similar size                               │              │                              
  • oracular              │ • Image introduces no new vulnerability but removes 19 │              │                              
  • oracular-20241120     │ • Major OS version update                              │              │                              
                          │                                                        │              │                              
                          │ Image details:                                         │              │                              
                          │ • Size: 31 MB                                          │              │                              
                          │ • OS: 24.10                                            │              │                              
                          │                                                        │              │                              
                          │                                                        │              │                              
                          │                                                        │              │                              

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

0 participants