Merge pull request #39 from pascaliske/renovate/alpine-3.x #114
Annotations
10 errors and 11 warnings
Run crazy-max/ghaction-container-scan@v3
CVE-2022-3094 - HIGH severity - bind: flooding with UPDATE requests may lead to DoS vulnerability in bind-libs
|
Run crazy-max/ghaction-container-scan@v3
CVE-2022-3736 - HIGH severity - sending specific queries to the resolver may cause a DoS vulnerability in bind-libs
|
Run crazy-max/ghaction-container-scan@v3
CVE-2022-3924 - HIGH severity - sending specific queries to the resolver may cause a DoS vulnerability in bind-libs
|
Run crazy-max/ghaction-container-scan@v3
CVE-2023-3341 - HIGH severity - bind: stack exhaustion in control channel code may lead to DoS vulnerability in bind-libs
|
Run crazy-max/ghaction-container-scan@v3
CVE-2023-4236 - HIGH severity - an assertion failure may lead to DoS vulnerability in bind-libs
|
Run crazy-max/ghaction-container-scan@v3
CVE-2022-3094 - HIGH severity - bind: flooding with UPDATE requests may lead to DoS vulnerability in bind-tools
|
Run crazy-max/ghaction-container-scan@v3
CVE-2022-3736 - HIGH severity - sending specific queries to the resolver may cause a DoS vulnerability in bind-tools
|
Run crazy-max/ghaction-container-scan@v3
CVE-2022-3924 - HIGH severity - sending specific queries to the resolver may cause a DoS vulnerability in bind-tools
|
Run crazy-max/ghaction-container-scan@v3
CVE-2023-3341 - HIGH severity - bind: stack exhaustion in control channel code may lead to DoS vulnerability in bind-tools
|
Run crazy-max/ghaction-container-scan@v3
CVE-2023-4236 - HIGH severity - an assertion failure may lead to DoS vulnerability in bind-tools
|
Build image name
The `set-output` command is deprecated and will be disabled soon. Please upgrade to using Environment Files. For more information see: https://github.blog/changelog/2022-10-11-github-actions-deprecating-save-state-and-set-output-commands/
|
Run crazy-max/ghaction-container-scan@v3
CVE-2022-4203 - MEDIUM severity - openssl: read buffer overflow in X.509 certificate verification vulnerability in libcrypto3
|
Run crazy-max/ghaction-container-scan@v3
CVE-2022-4304 - MEDIUM severity - openssl: timing attack in RSA Decryption implementation vulnerability in libcrypto3
|
Run crazy-max/ghaction-container-scan@v3
CVE-2023-0465 - MEDIUM severity - openssl: Invalid certificate policies in leaf certificates are silently ignored vulnerability in libcrypto3
|
Run crazy-max/ghaction-container-scan@v3
CVE-2023-0466 - MEDIUM severity - openssl: Certificate policy check not enabled vulnerability in libcrypto3
|
Run crazy-max/ghaction-container-scan@v3
CVE-2023-1255 - MEDIUM severity - openssl: Input buffer over-read in AES-XTS implementation on 64 bit ARM vulnerability in libcrypto3
|
Run crazy-max/ghaction-container-scan@v3
CVE-2023-2650 - MEDIUM severity - openssl: Possible DoS translating ASN.1 object identifiers vulnerability in libcrypto3
|
Run crazy-max/ghaction-container-scan@v3
CVE-2023-2975 - MEDIUM severity - openssl: AES-SIV cipher implementation contains a bug that causes it to ignore empty associated data entries vulnerability in libcrypto3
|
Run crazy-max/ghaction-container-scan@v3
CVE-2023-3446 - MEDIUM severity - openssl: Excessive time spent checking DH keys and parameters vulnerability in libcrypto3
|
Run crazy-max/ghaction-container-scan@v3
CVE-2023-3817 - MEDIUM severity - OpenSSL: Excessive time spent checking DH q parameter value vulnerability in libcrypto3
|
Run crazy-max/ghaction-container-scan@v3
CVE-2023-5678 - MEDIUM severity - openssl: Generating excessively long X9.42 DH keys or checking excessively long X9.42 DH keys or parameters may be very slow vulnerability in libcrypto3
|
The logs for this run have expired and are no longer available.
Loading