Uploaded image for project: 'Project Quay'
  1. Project Quay
  2. PROJQUAY-5203

Quay 3.8.4 High image vulnerability reported by Redhat ACS

    XMLWordPrintable

Details

    • Bug
    • Resolution: Unresolved
    • Major
    • None
    • quay-v3.8.4, quay-v3.9.0
    • quay
    • False
    • None
    • False
    • 0

    Description

      Description:

      This is an issue found in Quay 3.8.4, after deployed Quay 3.8.4, found Redhat ACS reported High Image vulnerability for Quay-redis, Quay-Clair_postgres and Quay-database Pods, pls review this issue.

      Fixable RHSA-2023:0625 (CVSS 9.8) (severity Important) found in component 'libksba' (version 1.3.5-8.el8_6.x86_64) in container 'redis-master', resolved by version 0:1.3.5-9.el8_7 
      
      Fixable RHSA-2023:0625 (CVSS 9.8) (severity Important) found in component 'libksba' (version 1.3.5-8.el8_6.x86_64) in container 'postgres', resolved by version 0:1.3.5-9.el8_7
      
      Fixable RHSA-2023:0625 (CVSS 9.8) (severity Important) found in component 'libksba' (version 1.3.5-8.el8_6.x86_64) in container 'postgres', resolved by version 0:1.3.5-9.el8_7

      Quay Image: quay-operator-bundle-container-v3.8.4-7

      oc get pod
      NAME                                               READY   STATUS      RESTARTS      AGE
      quay-operator.v3.8.4-5777cb87c-ntr25               1/1     Running     0             92m
      quayregistry-clair-app-5789cd6f84-bd76k            1/1     Running     0             80m
      quayregistry-clair-app-5789cd6f84-j7d8n            1/1     Running     0             83m
      quayregistry-clair-postgres-876cc87f5-fc52r        1/1     Running     1 (83m ago)   83m
      quayregistry-quay-app-66459f8c47-g9xql             1/1     Running     0             82m
      quayregistry-quay-app-66459f8c47-l8sbm             1/1     Running     0             82m
      quayregistry-quay-app-upgrade-7gbwj                0/1     Completed   0             83m
      quayregistry-quay-config-editor-86dff98448-24khp   1/1     Running     0             83m
      quayregistry-quay-database-dbbb6b5d4-rgp7c         1/1     Running     0             83m
      quayregistry-quay-mirror-7db44cd74b-7rv98          1/1     Running     0             82m
      quayregistry-quay-mirror-7db44cd74b-vwtfg          1/1     Running     0             82m
      quayregistry-quay-redis-787559f94b-2cvzw           1/1     Running     0             83m 
      Redhat ACS report High Image vulnerability:

       

      Attachments

        Activity

          People

            Unassigned Unassigned
            lzha1981 luffy zhang
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated: