Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

250+ CVEs In Red Hat Linux Splunk Docker Image #616

Open
Subrhamanya opened this issue Aug 2, 2023 · 6 comments
Open

250+ CVEs In Red Hat Linux Splunk Docker Image #616

Subrhamanya opened this issue Aug 2, 2023 · 6 comments

Comments

@Subrhamanya
Copy link

Subrhamanya commented Aug 2, 2023

Recently splunk official image scanned with one of our scanners (Prisma Cloud) and it's showing 250+ CVEs in it.

image

We are using splunk docker from https://hub.docker.com/r/splunk/splunk/tags?page=1

Is this image legitimate and offcial?

Can anybody help with it? So many CVEs in one image is confusing us...

@aakarshsingh
Copy link

Critical: 20
High: 93
Medium: 60
Low: 108

Total: 281

@yaroslav-nakonechnikov
Copy link

yaroslav-nakonechnikov commented Aug 18, 2023

jyst fyi: splunk support case: 3276273 with results from ORCA

ps. fixing base image may also fix problem with journald, which was also reported in 3270730

@yaroslav-nakonechnikov
Copy link

#576

@yaroslav-nakonechnikov
Copy link

#518

@yaroslav-nakonechnikov
Copy link

#602

@yaroslav-nakonechnikov
Copy link

#589

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants