Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

Centos:7 image contains old kernel with security vulnerabilities #181

Open
generalova-kate opened this issue Mar 9, 2021 · 2 comments
Open

Comments

@generalova-kate
Copy link

generalova-kate commented Mar 9, 2021

Kernel-headers package (v3.10.0) contains some high CVEs, please look at the Snyk scan Could you update centos:7 image with the latest available kernel v5.4 to fix security vulnerabilities?
Docker image: centos :7 8652b9f0cb4c updated Feb 3, 2021
Kernel packages:
kernel.x86_64 3.10.0-1160.15.2.el7 updates
kernel-abi-whitelists.noarch 3.10.0-1160.15.2.el7 updates
kernel-debug.x86_64 3.10.0-1160.15.2.el7 updates
kernel-debug-devel.x86_64 3.10.0-1160.15.2.el7 updates
kernel-devel.x86_64 3.10.0-1160.15.2.el7 updates
kernel-doc.noarch 3.10.0-1160.15.2.el7 updates
kernel-headers.x86_64 3.10.0-1160.15.2.el7 updates
kernel-tools.x86_64 3.10.0-1160.15.2.el7 updates
kernel-tools-libs.x86_64 3.10.0-1160.15.2.el7 updates
kernel-tools-libs-devel.x86_64 3.10.0-1160.15.2.el7 updates

@jperrin @blalor could you address that issue?

@arielferdman
Copy link

Wow - hard to believe that this issue was not yet addressed.

@yangshenhuai
Copy link

Just asked the same question , will there a new image include these security issue fix?

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants