UNCLASSIFIED

Merge branch 'development' into 'master'

Development

See merge request !15
19 jobs for master in 72 minutes and 28 seconds (queued for 6 seconds)
Status Job ID Name Coverage
  .Pre
passed #2640011
ironbank
load scripts

00:00:29

 
  Preflight
passed #2640012
ironbank
folder structure

00:00:31

passed #2640013
ironbank
hardening_manifest

00:00:35

 
  Lint
passed #2640014
ironbank
wl compare lint

00:00:43

 
  Finding Compare
failed #2640015
ironbank allowed to fail
vat compare

00:00:28

 
  Import Artifacts
passed #2640016
ironbank
import artifacts

00:00:29

 
  Scan Artifacts
passed #2640017
ironbank
clamav scan

00:01:33

 
  Build
passed #2640018
ironbank-isolated
build

00:05:53

 
  Scanning
passed #2640022
ironbank
anchore scan

00:05:57

passed #2640019
ironbank
openscap compliance

00:13:19

passed #2640020
ironbank
openscap cve

00:50:26

passed #2640021
ironbank
twistlock scan

00:03:26

 
  Csv Output
passed #2640023
ironbank
csv output

00:04:12

 
  Check Cves
failed #2640024
ironbank
check cves

00:07:32

 
  Documentation
skipped #2640025
ironbank
sign image
skipped #2640026
ironbank
sign manifest
skipped #2640027
ironbank
write json documentation
 
  Harbor
skipped #2640028
ironbank
harbor
 
  S3 Publish
skipped #2640029
ironbank
upload to s3
 
Name Stage Failure
failed
check cves Check Cves
x-request-id: f331ofdgi7bm3cmddhqqwq88wo
x-version-id: 5.27.0.5.27.0.6575ab4bcfc4a58cd87ef2cd2eac116f.true
date: Wed, 07 Apr 2021 23:41:32 GMT
content-length: 2
x-envoy-upstream-service-time: 729
server: istio-envoy

ok
Cleaning up file based variables
ERROR: Job failed: command terminated with exit code 1
failed
vat compare Finding Compare
('CVE-2020-13776', 'twistlock_cve', 'systemd through v245 mishandles numerical usernames such as ones composed of decimal digits or 0x followed by hex digits, as demonstrated by use of root privileges when privileges of the 0x0 user account were intended. NOTE: this issue exists because of an incomplete fix for CVE-2017-1000082.', 'systemd-239-41.el8_3.2', None)
('PRISMA-2021-0055', 'twistlock_cve', None, 'commons-codec_commons-codec-1.9', None)
('cbff271f45d32e78dcc1979dbca9c14d', 'anchore_comp', 'User root found as effective user, which is explicity not allowed\n Gate: dockerfile\n Trigger: effective_user\n Policy ID: DoDEffectiveUserChecks', None, None)
Uploading artifacts for failed job
ci-artifacts/compare/: found 2 matching files and directories
Uploading artifacts...
Uploading artifacts as "archive" to coordinator... ok
id=2640015 responseStatus=201 Created token=EhxzsqPB
Cleaning up file based variables
ERROR: Job failed: command terminated with exit code 4