-
-
Notifications
You must be signed in to change notification settings - Fork 5.1k
Fix of CVE-2025-9230 in Docker Image 1.71.1 #8899
Copy link
Copy link
Closed
Labels
P0 - CriticalPotential data loss, data corruption, or active security exploit (e.g., remote code execution).Potential data loss, data corruption, or active security exploit (e.g., remote code execution).securityPotential security problemPotential security problem
Metadata
Metadata
Assignees
Labels
P0 - CriticalPotential data loss, data corruption, or active security exploit (e.g., remote code execution).Potential data loss, data corruption, or active security exploit (e.g., remote code execution).securityPotential security problemPotential security problem
Hi there,
one of my customers is using the rclone docker image and can currently not import the container image in his environment due to security CVE scans. We tried it with the container Image 1.71.1 from Dockerhub (clone/rclone:1.71.1) and sysdig finds this critical Security issue:
--> CVE-2025-9230 (VulnDB Score 9.8):
Affected Packages and Versions
Would it be possible to update these packages in the next version?