UNCLASSIFIED

Merge branch 'canseco' into 'development'

hash

See merge request !21
14 jobs for 6.1.2.1 in 41 minutes and 42 seconds (queued for 9 seconds)
Status Job ID Name Coverage
  .Pre
passed #5051376
load-scripts

00:00:20

 
  Preflight
passed #5051378
folder-structure

00:00:11

passed #5051379
hardening-manifest

00:00:21

passed #5051377
trufflehog

00:00:21

 
  Lint
passed #5051380
wl-compare-lint

00:00:18

 
  Import Artifacts
passed #5051381
import-artifacts

00:04:34

 
  Scan Artifacts
passed #5051382
clamav-scan

00:22:20

 
  Build
passed #5051383
build

00:07:27

 
  Scanning
passed #5051384
anchore-scan

00:05:18

passed #5051385
ironbank-dsop-privileged
openscap-compliance

00:02:00

passed #5051386
twistlock-scan

00:01:51

 
  Csv Output
passed #5051387
csv-output

00:00:41

 
  Check Cves
failed #5051388
allowed to fail
check-cves

00:00:14

 
  Documentation
passed #5051389
create-tar

00:02:08

 
Name Stage Failure
failed
check-cves Check Cves
INFO: Vulnerabilities found in scanning stage: 238
INFO: {Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21295', package='io.netty_netty-codec-http2-4.1.59.Final', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-20231', package='gnutls-3.6.14-8.el8_3', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-3200', package='libsolv-0.7.16-2.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-27218', package='zookeeper-3.5.8', package_path='/usr/share/java/acl/acl-6.1.1.jar:zookeeper'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-22922', package='curl-7.61.1-18.el8', package_path=None), Finding(scan_source='oscap_comp', cve_id='CCE-82360-9', package=None, package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-22876', package='curl-7.61.1-18.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21295', package='io.netty_netty-codec-4.1.49.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-36086', package='libsepol-2.9-2.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-3445', package='python3-hawkey-0.55.0-7.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-28164', package='jetty-9.4.38.v20210224', package_path='/usr/share/java/confluent-control-center/jetty-proxy-9.4.38.v20210224.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35942', package='glibc-common-2.28-151.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-28163', package='org.eclipse.jetty_jetty-io-9.4.38.v20210224', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2019-20838', package='pcre-8.42-4.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-22923', package='libcurl-7.61.1-18.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-34428', package='org.eclipse.jetty_jetty-io-9.4.38.v20210224', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-35515', package='org.apache.commons_commons-compress-1.19', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-25648', package='nss-softokn-freebl-3.53.1-17.el8_3', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-3580', package='nettle-3.4.1-4.el8_3', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-22925', package='curl-7.61.1-18.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2020-8908', package='com.google.guava_guava-26.0-jre', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35938', package='rpm-4.14.3-14.el8_4', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21409', package='io.netty_netty-codec-http2-4.1.45.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-22898', package='curl-7.61.1-18.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21295', package='io.netty_netty-codec-4.1.50.Final', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21290', package='io.netty_netty-codec-4.1.50.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-27645', package='glibc-common-2.28-151.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-27216', package='zookeeper-3.5.8', package_path='/usr/share/java/confluent-control-center/zookeeper-3.5.8.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-22876', package='curl-7.61.1-18.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21409', package='io.netty_netty-all-4.1.59.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2018-20200', package='okhttp-3.9.0', package_path='/usr/share/java/confluent-control-center/okhttp-3.9.0.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2020-27218', package='zookeeper-3.5.8', package_path='/usr/share/java/cp-base-new/zookeeper-jute-3.5.8.jar'), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21409', package='io.netty_netty-codec-http2-4.1.47.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='GHSA-f256-j965-7f32', package='netty-codec-http2-4.1.47.Final', package_path='/usr/share/java/confluent-control-center/netty-codec-http2-4.1.47.Final.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-22924', package='libcurl-7.61.1-18.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35516', package='commons-compress-1.19', package_path='/usr/share/java/confluent-control-center/commons-compress-1.19.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2020-25648', package='nss-softokn-3.53.1-17.el8_3', package_path=None), Finding(scan_source='oscap_comp', cve_id='CCE-82473-0', package=None, package_path=None), Finding(scan_source='oscap_comp', cve_id='CCE-82959-8', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='GHSA-c43q-5hpj-4crv', package='jersey-common-2.31', package_path='/usr/share/java/confluent-control-center/jersey-common-2.31.jar'), Finding(scan_source='oscap_comp', cve_id='CCE-82214-8', package=None, package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-27218', package='glib2-2.56.4-10.el8_4', package_path=None), Finding(scan_source='anchore_comp', cve_id='3e5fad1c039f3ecfd1dcdc94d2f1f9a0', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-27645', package='glibc-minimal-langpack-2.28-151.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-27216', package='zookeeper-3.5.8', package_path='/usr/share/java/acl/acl-6.1.1.jar:zookeeper'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-36090', package='commons-compress-1.19', package_path='/usr/share/java/acl/acl-6.1.1.jar:commons-compress'), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21290', package='io.netty_netty-codec-http-4.1.47.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-20266', package='rpm-libs-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35939', package='rpm-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-3421', package='rpm-libs-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-28168', package='jersey-2.31', package_path='/usr/share/java/confluent-control-center/jersey-client-2.31.jar'), Finding(scan_source='oscap_comp', cve_id='CCE-82880-6', package=None, package_path=None), Finding(scan_source='anchore_comp', cve_id='abb121e9621abdd452f65844954cf1c1', package=None, package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-35942', package='glibc-2.28-151.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35939', package='python3-rpm-4.14.3-14.el8_4', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2020-14155', package='pcre-8.42-4.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-35516', package='org.apache.commons_commons-compress-1.19', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2020-16135', package='libssh-0.9.4-2.el8', package_path=None), Finding(scan_source='anchore_comp', cve_id='bcd159901fe47efddae5c095b4b0d7fd', package=None, package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-23841', package='openssl-1.1.1g-15.el8_3', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-0555', package='protobuf-3.11.4', package_path='/usr/share/java/monitoring-interceptors/monitoring-interceptors-6.1.1.jar:protobuf-java'), Finding(scan_source='twistlock_cve', cve_id='CVE-2020-28491', package='com.fasterxml.jackson.dataformat_jackson-dataformat-cbor-2.10.5', package_path=None), Finding(scan_source='oscap_comp', cve_id='CCE-82368-2', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-0555', package='protobuf-3.11.4', package_path='/usr/share/java/confluent-control-center/protobuf-java-util-3.11.4.jar'), Finding(scan_source='oscap_comp', cve_id='CCE-82220-5', package=None, package_path=None), Finding(scan_source='anchore_comp', cve_id='3456a263793066e9b5063ada6e47917d', package=None, package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21409', package='io.netty_netty-codec-4.1.47.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-27218', package='glib2-2.56.4-10.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35937', package='python3-rpm-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35515', package='commons-compress-1.19', package_path='/usr/share/java/confluent-control-center/commons-compress-1.19.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2020-25649', package='zookeeper-3.5.8', package_path='/usr/share/java/confluent-control-center/zookeeper-jute-3.5.8.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2020-27218', package='zookeeper-3.5.8', package_path='/usr/share/java/acl/acl-6.1.1.jar:zookeeper-jute'), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-33910', package='systemd-libs-239-45.el8_4.1', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-28168', package='jersey-2.31', package_path='/usr/share/java/confluent-control-center/jersey-media-json-jackson-2.31.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2020-27216', package='zookeeper-3.5.8', package_path='/usr/share/java/cp-base-new/zookeeper-jute-3.5.8.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2020-14155', package='pcre-8.42-4.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35938', package='rpm-libs-4.14.3-14.el8_4', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2020-17541', package='libjpeg-turbo-1.5.3-10.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-20266', package='rpm-build-libs-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_comp', cve_id='639f6f1177735759703e928c14714a59', package=None, package_path=None), Finding(scan_source='oscap_comp', cve_id='CCE-82494-6', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-25649', package='zookeeper-3.5.8', package_path='/usr/share/java/cp-base-new/zookeeper-3.5.8.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2020-25648', package='nss-util-3.53.1-17.el8_3', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-28168', package='jersey-2.31', package_path='/usr/share/java/confluent-control-center/jersey-media-jaxb-2.31.jar'), Finding(scan_source='oscap_comp', cve_id='CCE-82472-2', package=None, package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-33574', package='glibc-2.28-151.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-33910', package='systemd-pam-239-45.el8_4.1', package_path=None), Finding(scan_source='oscap_comp', cve_id='CCE-82395-5', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-33910', package='systemd-pam-239-45.el8_4.1', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-0555', package='protobuf-3.11.4', package_path='/usr/share/java/acl/acl-6.1.1.jar:protobuf-java'), Finding(scan_source='anchore_comp', cve_id='c2e44319ae5b3b040044d8ae116d1c2f', package=None, package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21295', package='io.netty_netty-codec-4.1.59.Final', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-36085', package='libsepol-2.9-2.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21290', package='io.netty_netty-codec-http-4.1.50.Final', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21409', package='io.netty_netty-codec-4.1.49.Final', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-23840', package='openssl-1.1.1g-15.el8_3', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21290', package='io.netty_netty-codec-http-4.1.49.Final', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21295', package='io.netty_netty-codec-4.1.48.Final', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21290', package='io.netty_netty-codec-4.1.48.Final', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-20232', package='gnutls-3.6.14-8.el8_3', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-33574', package='glibc-common-2.28-151.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-10001', package='cups-libs-2.2.6-38.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-35517', package='org.apache.commons_commons-compress-1.19', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35938', package='rpm-build-libs-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='GHSA-vjv5-gp2w-65vm', package='jetty-webapp-9.4.40.v20210413', package_path='/usr/share/java/acl/acl-6.1.1.jar:jetty-webapp'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-22923', package='curl-7.61.1-18.el8', package_path=None), Finding(scan_source='oscap_comp', cve_id='CCE-82979-6', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-22925', package='libcurl-7.61.1-18.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-36087', package='libsepol-2.9-2.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35939', package='rpm-libs-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35942', package='glibc-2.28-151.el8', package_path=None), Finding(scan_source='oscap_comp', cve_id='CCE-80935-0', package=None, package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-28169', package='org.eclipse.jetty_jetty-io-9.4.38.v20210224', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-22898', package='libcurl-7.61.1-18.el8', package_path=None), Finding(scan_source='oscap_comp', cve_id='CCE-82168-6', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-13697', package='nanohttpd-2.3.1', package_path='/usr/share/java/confluent-control-center/nanohttpd-2.3.1.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2020-27216', package='zookeeper-3.5.8', package_path='/usr/share/java/acl/acl-6.1.1.jar:zookeeper-jute'), Finding(scan_source='anchore_cve', cve_id='CVE-2020-27218', package='zookeeper-3.5.8', package_path='/usr/share/java/confluent-control-center/zookeeper-jute-3.5.8.jar'), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-3445', package='libdnf-0.55.0-7.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-3445', package='python3-libdnf-0.55.0-7.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-35864', package='flatbuffers-1.9.0', package_path='/usr/share/java/acl/acl-6.1.1.jar:flatbuffers-java'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35937', package='rpm-4.14.3-14.el8_4', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-3200', package='libsolv-0.7.16-2.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21409', package='io.netty_netty-codec-4.1.59.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-23841', package='openssl-libs-1.1.1g-15.el8_3', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-28168', package='jersey-2.31', package_path='/usr/share/java/confluent-control-center/jersey-bean-validation-2.31.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-27645', package='glibc-2.28-151.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-20266', package='rpm-4.14.3-14.el8_4', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-3421', package='rpm-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-33910', package='systemd-libs-239-45.el8_4.1', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21295', package='io.netty_netty-all-4.1.59.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-28164', package='jetty-9.4.38.v20210224', package_path='/usr/share/java/confluent-control-center/jetty-client-9.4.38.v20210224.jar'), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21295', package='io.netty_netty-codec-http2-4.1.49.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-22924', package='curl-7.61.1-18.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-17541', package='libjpeg-turbo-1.5.3-10.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-25648', package='nss-3.53.1-17.el8_3', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-3426', package='python3-libs-3.6.8-37.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35939', package='rpm-build-libs-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-0555', package='protobuf-3.11.4', package_path='/usr/share/java/confluent-control-center/protobuf-java-3.11.4.jar'), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-33560', package='libgcrypt-1.8.5-4.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='GHSA-5mg8-w23w-74h3', package='guava-28.1-jre', package_path='/usr/share/java/monitoring-interceptors/monitoring-interceptors-6.1.1.jar:guava'), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-36084', package='libsepol-2.9-2.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-33574', package='glibc-2.28-151.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35517', package='commons-compress-1.19', package_path='/usr/share/java/confluent-control-center/commons-compress-1.19.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-23840', package='openssl-libs-1.1.1g-15.el8_3', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-16135', package='libssh-0.9.4-2.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35516', package='commons-compress-1.19', package_path='/usr/share/java/acl/acl-6.1.1.jar:commons-compress'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-28168', package='jersey-2.31', package_path='/usr/share/java/confluent-control-center/jersey-common-2.31.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2020-25649', package='zookeeper-3.5.8', package_path='/usr/share/java/acl/acl-6.1.1.jar:zookeeper'), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-22898', package='curl-7.61.1-18.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='VULNDB-93555', package='commons_codec-1.11', package_path='/usr/share/java/confluent-control-center/commons-codec-1.11.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-20232', package='gnutls-3.6.14-8.el8_3', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35942', package='glibc-minimal-langpack-2.28-151.el8', package_path=None), Finding(scan_source='anchore_comp', cve_id='34de21e516c0ca50a96e5386f163f8bf', package=None, package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21409', package='io.netty_netty-codec-http2-4.1.59.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-36084', package='libsepol-2.9-2.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='GHSA-wm47-8v5p-wjpj', package='netty-codec-http2-4.1.47.Final', package_path='/usr/share/java/confluent-control-center/netty-codec-http2-4.1.47.Final.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-36222', package='krb5-libs-1.18.2-8.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21290', package='io.netty_netty-codec-4.1.47.Final', package_path=None), Finding(scan_source='oscap_comp', cve_id='CCE-82267-6', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-22922', package='libcurl-7.61.1-18.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-28164', package='jetty-9.4.38.v20210224', package_path='/usr/share/java/confluent-control-center/jetty-util-9.4.38.v20210224.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-3445', package='libdnf-0.55.0-7.el8', package_path=None), Finding(scan_source='oscap_comp', cve_id='CCE-83401-0', package=None, package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21295', package='io.netty_netty-codec-http2-4.1.45.Final', package_path=None), Finding(scan_source='anchore_comp', cve_id='463a9a24225c26f7a5bf3f38908e5cb3', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35515', package='commons-compress-1.19', package_path='/usr/share/java/acl/acl-6.1.1.jar:commons-compress'), Finding(scan_source='anchore_comp', cve_id='e7573262736ef52353cde3bae2617782', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35937', package='rpm-libs-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-28168', package='jersey-2.31', package_path='/usr/share/java/confluent-control-center/jersey-server-2.31.jar'), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-33910', package='systemd-239-45.el8_4.1', package_path=None), Finding(scan_source='anchore_comp', cve_id='c4ad80832b361f81df2a31e5b6b09864', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='GHSA-v528-7hrm-frqp', package='json-smart-1.3.1', package_path='/usr/share/java/confluent-control-center/json-smart-1.3.1.jar'), Finding(scan_source='oscap_comp', cve_id='CCE-82474-8', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-35864', package='flatbuffers-1.9.0', package_path='/usr/share/java/confluent-control-center/flatbuffers-java-1.9.0.jar'), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21409', package='io.netty_netty-codec-4.1.50.Final', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-28153', package='glib2-2.56.4-10.el8_4', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2020-25648', package='nss-3.53.1-17.el8_3', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-33560', package='libgcrypt-1.8.5-4.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-3421', package='rpm-build-libs-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-27218', package='zookeeper-3.5.8', package_path='/usr/share/java/cp-base-new/zookeeper-3.5.8.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-20266', package='python3-rpm-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-36090', package='commons-compress-1.19', package_path='/usr/share/java/confluent-control-center/commons-compress-1.19.jar'), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21409', package='io.netty_netty-codec-4.1.48.Final', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21290', package='io.netty_netty-codec-4.1.49.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-23841', package='openssl-1.1.1g-15.el8_3', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-25648', package='nss-sysinit-3.53.1-17.el8_3', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-25649', package='zookeeper-3.5.8', package_path='/usr/share/java/confluent-control-center/zookeeper-3.5.8.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35937', package='rpm-build-libs-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-24370', package='lua-libs-5.3.4-11.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-20231', package='gnutls-3.6.14-8.el8_3', package_path=None), Finding(scan_source='anchore_comp', cve_id='698044205a9c4a6d48b7937e66a6bf4f', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-28168', package='jersey-2.31', package_path='/usr/share/java/confluent-control-center/jersey-entity-filtering-2.31.jar'), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-28169', package='org.eclipse.jetty_jetty-io-9.4.40.v20210413', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21295', package='io.netty_netty-codec-http2-4.1.47.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='GHSA-5mg8-w23w-74h3', package='guava-28.1-jre', package_path='/usr/share/java/confluent-control-center/guava-28.1-jre.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2018-20200', package='okhttp-3.9.0', package_path='/usr/share/java/acl/acl-6.1.1.jar:okhttp'), Finding(scan_source='twistlock_cve', cve_id='CVE-2019-20838', package='pcre-8.42-4.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='PRISMA-2021-0055', package='commons-codec_commons-codec-1.11', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-25649', package='zookeeper-3.5.8', package_path='/usr/share/java/acl/acl-6.1.1.jar:zookeeper-jute'), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-36090', package='org.apache.commons_commons-compress-1.19', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-0555', package='protobuf-3.11.4', package_path='/usr/share/java/monitoring-interceptors/monitoring-interceptors-6.1.1.jar:protobuf-java-util'), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21295', package='io.netty_netty-codec-4.1.47.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-23840', package='openssl-1.1.1g-15.el8_3', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-27216', package='zookeeper-3.5.8', package_path='/usr/share/java/confluent-control-center/zookeeper-jute-3.5.8.jar'), Finding(scan_source='anchore_comp', cve_id='addbb93c22e9b0988b8b40392a4538cb', package=None, package_path=None), Finding(scan_source='oscap_comp', cve_id='CCE-82949-9', package=None, package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21290', package='io.netty_netty-codec-http-4.1.45.Final', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2020-8908', package='com.google.guava_guava-28.1-jre', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35938', package='python3-rpm-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='VULNDB-93555', package='commons_codec-1.11', package_path='/usr/share/java/acl/acl-6.1.1.jar:commons-codec'), Finding(scan_source='oscap_comp', cve_id='CCE-80938-4', package=None, package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2020-15945', package='lua-5.3.4-11.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-3572', package='python3-pip-wheel-9.0.3-19.el8', package_path=None), Finding(scan_source='anchore_comp', cve_id='320a97c6816565eedf3545833df99dd0', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-36087', package='libsepol-2.9-2.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-36085', package='libsepol-2.9-2.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-21409', package='io.netty_netty-codec-http2-4.1.49.Final', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-33910', package='systemd-239-45.el8_4.1', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-27216', package='zookeeper-3.5.8', package_path='/usr/share/java/cp-base-new/zookeeper-3.5.8.jar'), Finding(scan_source='oscap_comp', cve_id='CCE-82985-3', package=None, package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-3426', package='platform-python-3.6.8-37.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-36086', package='libsepol-2.9-2.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-25649', package='zookeeper-3.5.8', package_path='/usr/share/java/cp-base-new/zookeeper-jute-3.5.8.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2020-16135', package='libssh-config-0.9.4-2.el8', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2018-20200', package='com.squareup.okhttp3_okhttp-3.9.0', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-33574', package='glibc-minimal-langpack-2.28-151.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-0555', package='protobuf-3.11.4', package_path='/usr/share/java/acl/acl-6.1.1.jar:protobuf-java-util'), Finding(scan_source='anchore_cve', cve_id='CVE-2020-27218', package='zookeeper-3.5.8', package_path='/usr/share/java/confluent-control-center/zookeeper-3.5.8.jar'), Finding(scan_source='anchore_cve', cve_id='GHSA-5mcr-gq6c-3hq2', package='netty-codec-http-4.1.47.Final', package_path='/usr/share/java/confluent-control-center/netty-codec-http-4.1.47.Final.jar'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-22876', package='libcurl-7.61.1-18.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-20266', package='rpm-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-28153', package='glib2-2.56.4-10.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2020-24370', package='lua-5.3.4-11.el8', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-3421', package='rpm-4.14.3-14.el8_4', package_path=None), Finding(scan_source='anchore_cve', cve_id='CVE-2021-35517', package='commons-compress-1.19', package_path='/usr/share/java/acl/acl-6.1.1.jar:commons-compress'), Finding(scan_source='anchore_cve', cve_id='CVE-2021-3421', package='python3-rpm-4.14.3-14.el8_4', package_path=None), Finding(scan_source='twistlock_cve', cve_id='CVE-2021-29425', package='commons-io_commons-io-2.5', package_path=None)}
ERROR: NON-WHITELISTED VULNERABILITIES FOUND
ERROR: Number of non-whitelisted vulnerabilities: 1
ERROR: The following vulnerabilities are not whitelisted:
ERROR: scan_source cve_id package package_path
ERROR: twistlock_cve CVE-2021-35942 glibc-2.28-151.el8 None
Cleaning up file based variables
ERROR: Job failed: command terminated with exit code 1