Skip to content

Vulnerable image mcr.microsoft.com/dotnet/sdk:6.0 #4568

@oronboni

Description

@oronboni

Describe the Bug

Base on Qualys scanning the image: mcr.microsoft.com/dotnet/sdk:6.0 has the following CVEs

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-0820
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-34716
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-8292
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-24112

Steps to Reproduce

Other Information

image

Output of docker version

Output of docker info

Metadata

Metadata

Assignees

No one assigned

    Labels

    area-dockerfilesConcerns the official .NET Dockerfiles or Dockerfile templatesuntriagedvulnerabilityReport of a known vulnerability in an image

    Type

    No type

    Projects

    Status

    Done

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions