Current quay/clair version is not able to scan images based on Rocky Linux OS.
Hence one of our customer is having issues with billing application based on Rocky OS.
Clair uses the following vulnerability databases to report for issues in images:
- Ubuntu Oval database
- Debian Security Tracker
- Red Hat Enterprise Linux (RHEL) Oval database
- SUSE Oval database
- Oracle Oval database
- Alpine SecDB database
- VMWare Photon OS database
- Amazon Web Services (AWS) UpdateInfo
- Open Source Vulnerability (OSV) Database
Customer is requesting to add "Rocky Linux OS" in the list.