UNCLASSIFIED - NO CUI

Skip to content

chore(findings): big-bang/dind-alpine (arm64)

Summary

big-bang/dind-alpine (arm64) has 122 new findings discovered during continuous monitoring.

More information can be found in the VAT located here: https://vat.dso.mil/vat/image?imageName=big-bang/dind-alpine&tag=28.5.1-dind-alpine3.22-arm64&branch=master

EPSS (Exploit Prediction Scoring System) provides an estimate of the likelihood that a vulnerability will be exploited in the wild.

KEV (Known Exploited Vulnerabilities) indicates whether a vulnerability is actively being exploited according to CISA.

id source severity package impact workaround epss_score kev
CVE-2024-10041 Anchore CVE Medium linux-pam-1.7.0-r4 0.00032 false
CVE-2025-58050 Twistlock CVE Critical pcre2-10.43-r1 0.00030 false
CVE-2025-58050 Anchore CVE Critical pcre2-10.43-r1 0.00030 false
CVE-2024-58251 Anchore CVE Low busybox-binsh-1.37.0-r18 0.00017 false
CVE-2024-58251 Anchore CVE Low busybox-1.37.0-r18 0.00017 false
CVE-2024-58251 Anchore CVE Low ssl_client-1.37.0-r18 0.00017 false
CVE-2025-46394 Twistlock CVE Low busybox-1.37.0-r18 0.00015 false
CVE-2025-46394 Anchore CVE Low ssl_client-1.37.0-r18 0.00015 false
CVE-2025-46394 Anchore CVE Low busybox-1.37.0-r18 0.00015 false
CVE-2025-46394 Anchore CVE Low busybox-binsh-1.37.0-r18 0.00015 false
CVE-2025-61725 Twistlock CVE Low net/mail-1.24.7 N/A false
CVE-2025-61725 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61725 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61725 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61725 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61725 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61725 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61725 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61725 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61725 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61724 Twistlock CVE Low net/textproto-1.24.7 N/A false
CVE-2025-61724 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-61724 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-61724 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-61724 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-61724 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-61724 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-61724 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-61724 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-61724 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-61723 Twistlock CVE Low encoding/pem-1.24.7 N/A false
CVE-2025-61723 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61723 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61723 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61723 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61723 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61723 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61723 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61723 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-61723 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58189 Twistlock CVE Low crypto/tls-1.24.7 N/A false
CVE-2025-58189 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58189 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58189 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58189 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58189 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58189 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58189 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58189 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58189 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58188 Twistlock CVE Low crypto/x509-1.24.7 N/A false
CVE-2025-58188 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58188 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58188 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58188 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58188 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58188 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58188 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58188 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58188 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58187 Twistlock CVE Low crypto/x509-1.24.7 N/A false
CVE-2025-58187 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58187 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58187 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58187 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58187 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58187 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58187 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58187 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58187 Anchore CVE High stdlib-go1.24.7 N/A false
CVE-2025-58186 Twistlock CVE Low net/http-1.24.7 N/A false
CVE-2025-58186 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58186 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58186 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58186 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58186 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58186 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58186 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58186 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58186 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58185 Twistlock CVE Low encoding/asn1-1.24.7 N/A false
CVE-2025-58185 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58185 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58185 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58185 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58185 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58185 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58185 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58185 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58185 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58183 Twistlock CVE Low archive/tar-1.24.7 N/A false
CVE-2025-58183 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58183 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58183 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58183 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58183 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58183 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58183 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58183 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-58183 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-52881 Twistlock CVE High github.com/opencontainers/selinux-v1.12.0 N/A false
CVE-2025-47912 Twistlock CVE Low net/url-1.24.7 N/A false
CVE-2025-47912 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-47912 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-47912 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-47912 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-47912 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-47912 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-47912 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-47912 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2025-47912 Anchore CVE Medium stdlib-go1.24.7 N/A false
CVE-2024-25621 Twistlock CVE High github.com/containerd/containerd/v2-v2.1.4 N/A false
cbff271f45d32e78dcc1979dbca9c14d Anchore Compliance Critical N/A N/A
b499a7c53e6a0110b1f81fea37c2d0b5 Anchore Compliance Critical N/A N/A
GHSA-pwhc-rpq9-4c8w Anchore CVE High github.com/containerd/containerd/v2-v2.1.4 N/A N/A
GHSA-pwhc-rpq9-4c8w Anchore CVE High github.com/containerd/containerd/v2-v2.1.4 N/A N/A
GHSA-pwhc-rpq9-4c8w Anchore CVE High github.com/containerd/containerd/v2-v2.1.4 N/A N/A
GHSA-m6hq-p25p-ffr2 Anchore CVE Medium github.com/containerd/containerd/v2-v2.1.4 N/A N/A
GHSA-m6hq-p25p-ffr2 Anchore CVE Medium github.com/containerd/containerd/v2-v2.1.4 N/A N/A
GHSA-m6hq-p25p-ffr2 Anchore CVE Medium github.com/containerd/containerd/v2-v2.1.4 N/A N/A
GHSA-cgrx-mc8f-2prm Anchore CVE High github.com/opencontainers/selinux-v1.12.0 N/A N/A
607066173c1603d068829adb64352176 Anchore Compliance Critical N/A N/A

More information can be found in the VAT located here: https://vat.dso.mil/vat/image?imageName=big-bang/dind-alpine&tag=28.5.1-dind-alpine3.22-arm64&branch=master

Tasks

Contributor:

  • Apply the StatusReview label to this issue for a merge request review and wait for feedback

OR

  • Provide justifications for findings in the VAT (docs)
  • Apply the StatusVerification label to this issue for a VAT justifications review and wait for feedback

Iron Bank:

  • Review findings and justifications

Note: If the above process is rejected for any reason, the Review or Verification label will be removed and the issue will be sent back to To-Do. Any comments will be listed in this issue for you to address. Once they have been addressed, you must re-add the Review or Verification label.

Questions?

Contact the Iron Bank team by commenting on this issue with your questions or concerns. If you do not receive a response, add /cc @ironbank-notifications/onboarding.

Additionally, Iron Bank hosts an AMA working session every Wednesday from 1630-1730EST to answer questions.

Edited by CHORE_TOKEN
To upload designs, you'll need to enable LFS and have an admin enable hashed storage. More information