Uploaded image for project: 'Project Quay'
  1. Project Quay
  2. PROJQUAY-1303

Request for SRE/Eng to correct severity of CVE-2017-8804 in quay.io database

XMLWordPrintable

    • Icon: Task Task
    • Resolution: Won't Do
    • Icon: Major Major
    • None
    • None
    • quay.io
    • None
    • False
    • False
    • Undefined
    • 0

      This vulnerability has been disputed and appears to an application error rather than a glibc error per: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-8804

      This disputed CVE appears on quay.io in repositories as High Sev which causes confusion for quay.io users. There is no way for users to dismiss this individually.

      This CVE should removed or marked as Low Sev in the quay.io db.

            Unassigned Unassigned
            kybrown@redhat.com Kyle Brown (Inactive)
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: