Skip to content

Add image scanner to build process #2

Add image scanner to build process

Add image scanner to build process #2

Triggered via pull request September 10, 2024 07:45
Status Failure
Total duration 3m 33s
Artifacts

test.yml

on: pull_request
Build image  /  Build Docker image
3m 22s
Build image / Build Docker image
Fit to window
Zoom out
Zoom in

Annotations

10 errors, 14 warnings, and 10 notices
Build image / Build Docker image
CVE-2022-3715 - HIGH severity - bash: a heap-buffer-overflow in valid_parameter_transform vulnerability in bash
Build image / Build Docker image
CVE-2024-28085 - HIGH severity - util-linux: CVE-2024-28085: wall: escape sequence injection vulnerability in bsdutils
Build image / Build Docker image
CVE-2022-1304 - HIGH severity - e2fsprogs: out-of-bounds read/write via crafted filesystem vulnerability in comerr-dev
Build image / Build Docker image
CVE-2023-23914 - CRITICAL severity - curl: HSTS ignored on multiple requests vulnerability in curl
Build image / Build Docker image
CVE-2022-42916 - HIGH severity - curl: HSTS bypass via IDN vulnerability in curl
Build image / Build Docker image
CVE-2022-43551 - HIGH severity - curl: HSTS bypass via IDN vulnerability in curl
Build image / Build Docker image
CVE-2022-1664 - CRITICAL severity - Dpkg::Source::Archive in dpkg, the Debian package management system, b ... vulnerability in dpkg
Build image / Build Docker image
CVE-2022-1664 - CRITICAL severity - Dpkg::Source::Archive in dpkg, the Debian package management system, b ... vulnerability in dpkg-dev
Build image / Build Docker image
CVE-2022-1304 - HIGH severity - e2fsprogs: out-of-bounds read/write via crafted filesystem vulnerability in e2fsprogs
Build image / Build Docker image
CVE-2021-44648 - HIGH severity - gdk-pixbuf: heap-buffer overflow when decoding the lzw compressed stream of image data vulnerability in gir1.2-gdkpixbuf-2.0
Build image / Build Docker image
The following actions uses node12 which is deprecated and will be forced to run on node16: actions/checkout@v2. For more info: https://github.blog/changelog/2023-06-13-github-actions-all-actions-will-run-on-node16-instead-of-node12-by-default/
Build image / Build Docker image
The following actions use a deprecated Node.js version and will be forced to run on node20: actions/checkout@v2. For more info: https://github.blog/changelog/2024-03-07-github-actions-all-actions-will-run-on-node20-instead-of-node16-by-default/
Build image / Build Docker image
CVE-2021-3995 - MEDIUM severity - util-linux: Unauthorized unmount of FUSE filesystems belonging to users with similar uid vulnerability in bsdutils
Build image / Build Docker image
CVE-2021-3996 - MEDIUM severity - util-linux: Unauthorized unmount of filesystems in libmount vulnerability in bsdutils
Build image / Build Docker image
CVE-2023-4039 - MEDIUM severity - gcc: -fstack-protector fails to guard dynamic stack allocations on ARM64 vulnerability in cpp-10
Build image / Build Docker image
CVE-2023-23915 - MEDIUM severity - curl: HSTS amnesia with --parallel vulnerability in curl
Build image / Build Docker image
CVE-2023-46219 - MEDIUM severity - curl: excessively long file name may lead to unknown HSTS status vulnerability in curl
Build image / Build Docker image
CVE-2022-48554 - MEDIUM severity - file: stack-based buffer over-read in file_copystr in funcs.c vulnerability in file
Build image / Build Docker image
CVE-2023-4039 - MEDIUM severity - gcc: -fstack-protector fails to guard dynamic stack allocations on ARM64 vulnerability in g++-10
Build image / Build Docker image
CVE-2023-4039 - MEDIUM severity - gcc: -fstack-protector fails to guard dynamic stack allocations on ARM64 vulnerability in gcc-10
Build image / Build Docker image
CVE-2023-4039 - MEDIUM severity - gcc: -fstack-protector fails to guard dynamic stack allocations on ARM64 vulnerability in gcc-10-base
Build image / Build Docker image
CVE-2023-4039 - MEDIUM severity - gcc: -fstack-protector fails to guard dynamic stack allocations on ARM64 vulnerability in gcc-9-base
Build image / Build Docker image
The `set-output` command is deprecated and will be disabled soon. Please upgrade to using Environment Files. For more information see: https://github.blog/changelog/2022-10-11-github-actions-deprecating-save-state-and-set-output-commands/
Build image / Build Docker image
The `set-output` command is deprecated and will be disabled soon. Please upgrade to using Environment Files. For more information see: https://github.blog/changelog/2022-10-11-github-actions-deprecating-save-state-and-set-output-commands/
Build image / Build Docker image
CVE-2011-3374 - LOW severity - It was found that apt-key in apt, all versions, do not correctly valid ... vulnerability in apt
Build image / Build Docker image
CVE-2011-3374 - LOW severity - It was found that apt-key in apt, all versions, do not correctly valid ... vulnerability in apt-transport-https
Build image / Build Docker image
TEMP-0841856-B18BAF - LOW severity - [Privilege escalation possible to other user than root] vulnerability in bash
Build image / Build Docker image
CVE-2017-13716 - LOW severity - binutils: Memory leak with the C++ symbol demangler routine in libiberty vulnerability in binutils
Build image / Build Docker image
CVE-2018-18483 - LOW severity - binutils: Integer overflow in cplus-dem.c:get_count() allows for denial of service vulnerability in binutils
Build image / Build Docker image
CVE-2018-20673 - LOW severity - libiberty: Integer overflow in demangle_template() function vulnerability in binutils
Build image / Build Docker image
CVE-2018-20712 - LOW severity - libiberty: heap-based buffer over-read in d_expression_1 vulnerability in binutils
Build image / Build Docker image
CVE-2018-9996 - LOW severity - binutils: Stack-overflow in libiberty/cplus-dem.c causes crash vulnerability in binutils
Build image / Build Docker image
CVE-2019-1010204 - LOW severity - binutils: Improper Input Validation, Signed/Unsigned Comparison, Out-of-bounds Read in gold/fileread.cc and elfcpp/elfcpp_file.h leads to denial of service vulnerability in binutils
Build image / Build Docker image
CVE-2020-19726 - LOW severity - binutils: heap-based buffer overflow in bfd_getl32() in bfd/libbfd.c vulnerability in binutils