UNCLASSIFIED - NO CUI

chore(findings): kubeflow/katib/suggestion-nasrl-57c6abf76193

Summary

kubeflow/katib/suggestion-nasrl-57c6abf76193 has 119 new findings discovered during continuous monitoring.

id source package
GHSA-24x6-8c7m-hv3f anchore_cve tensorflow-1.15.5
GHSA-26j7-6w8w-7922 anchore_cve tensorflow-1.15.5
GHSA-2cpx-427x-q2c6 anchore_cve tensorflow-1.15.5
GHSA-2gfx-95x2-5v3x anchore_cve tensorflow-1.15.5
GHSA-2xgj-xhgf-ggjv anchore_cve tensorflow-1.15.5
GHSA-36vm-xw34-x4pj anchore_cve tensorflow-1.15.5
GHSA-393f-2jr3-cp69 anchore_cve tensorflow-1.15.5
GHSA-3h8m-483j-7xxm anchore_cve tensorflow-1.15.5
GHSA-3qgw-p4fm-x7gf anchore_cve tensorflow-1.15.5
GHSA-3qxp-qjq7-w4hf anchore_cve tensorflow-1.15.5
GHSA-3w67-q784-6w7c anchore_cve tensorflow-1.15.5
GHSA-452g-f7fp-9jf7 anchore_cve tensorflow-1.15.5
GHSA-4fg4-p75j-w5xj anchore_cve tensorflow-1.15.5
GHSA-4hrh-9vmp-2jgg anchore_cve tensorflow-1.15.5
GHSA-4hvv-7x94-7vq8 anchore_cve tensorflow-1.15.5
GHSA-4p4p-www8-8fv9 anchore_cve tensorflow-1.15.5
GHSA-4vf2-4xcg-65cx anchore_cve tensorflow-1.15.5
GHSA-4vrf-ff7v-hpgr anchore_cve tensorflow-1.15.5
GHSA-545v-42p7-98fq anchore_cve tensorflow-1.15.5
GHSA-59q2-x2qc-4c97 anchore_cve tensorflow-1.15.5
GHSA-5gqf-456p-4836 anchore_cve tensorflow-1.15.5
GHSA-62gx-355r-9fhg anchore_cve tensorflow-1.15.5
GHSA-6f84-42vf-ppwp anchore_cve tensorflow-1.15.5
GHSA-6f89-8j54-29xf anchore_cve tensorflow-1.15.5
GHSA-6j9c-grc6-5m6g anchore_cve tensorflow-1.15.5
GHSA-6qgm-fv6v-rfpv anchore_cve tensorflow-1.15.5
GHSA-75f6-78jr-4656 anchore_cve tensorflow-1.15.5
GHSA-772j-h9xw-ffp5 anchore_cve tensorflow-1.15.5
GHSA-772p-x54p-hjrv anchore_cve tensorflow-1.15.5
GHSA-79fv-9865-4qcv anchore_cve tensorflow-1.15.5
GHSA-7cqx-92hp-x6wh anchore_cve tensorflow-1.15.5
GHSA-828x-qc2p-wprq anchore_cve tensorflow-1.15.5
GHSA-84mw-34w6-2q43 anchore_cve tensorflow-1.15.5
GHSA-8c89-2vwr-chcq anchore_cve tensorflow-1.15.5
GHSA-8gv3-57p6-g35r anchore_cve tensorflow-1.15.5
GHSA-8pmx-p244-g88h anchore_cve tensorflow-1.15.5
GHSA-8rm6-75mf-7r7r anchore_cve tensorflow-1.15.5
GHSA-97wf-p777-86jq anchore_cve tensorflow-1.15.5
GHSA-9c84-4hx6-xmm4 anchore_cve tensorflow-1.15.5
GHSA-9vpm-rcf4-9wqw anchore_cve tensorflow-1.15.5
GHSA-9xh4-23q4-v6wr anchore_cve tensorflow-1.15.5
GHSA-c45w-2wxr-pp53 anchore_cve tensorflow-1.15.5
GHSA-c968-pq7h-7fxv anchore_cve tensorflow-1.15.5
GHSA-cfx7-2xpc-8w4h anchore_cve tensorflow-1.15.5
GHSA-cjc7-49v2-jp64 anchore_cve tensorflow-1.15.5
GHSA-crch-j389-5f84 anchore_cve tensorflow-1.15.5
GHSA-f78g-q7r4-9wcv anchore_cve tensorflow-1.15.5
GHSA-fphq-gw9m-ghrv anchore_cve tensorflow-1.15.5
GHSA-fxqh-cfjm-fp93 anchore_cve tensorflow-1.15.5
GHSA-g4h2-gqm3-c9wq anchore_cve tensorflow-1.15.5
GHSA-gvm4-h8j3-rjrq anchore_cve tensorflow-1.15.5
GHSA-h4pc-gx2w-f2xv anchore_cve tensorflow-1.15.5
GHSA-h9px-9vqg-222h anchore_cve tensorflow-1.15.5
GHSA-hc6c-75p4-hmq4 anchore_cve tensorflow-1.15.5
GHSA-hmg3-c7xj-6qwm anchore_cve tensorflow-1.15.5
GHSA-j47f-4232-hvv8 anchore_cve tensorflow-1.15.5
GHSA-j7rm-8ww4-xx2g anchore_cve tensorflow-1.15.5
GHSA-j8qc-5fqr-52fp anchore_cve tensorflow-1.15.5
GHSA-j8qh-3xrq-c825 anchore_cve tensorflow-1.15.5
GHSA-jf7h-7m85-w2v2 anchore_cve tensorflow-1.15.5
GHSA-jfp7-4j67-8r3q anchore_cve tensorflow-1.15.5
GHSA-jhq9-wm9m-cf89 anchore_cve tensorflow-1.15.5
GHSA-jjr8-m8g8-p6wv anchore_cve tensorflow-1.15.5
GHSA-m34j-p8rj-wjxq anchore_cve tensorflow-1.15.5
GHSA-m3f9-w3p3-p669 anchore_cve tensorflow-1.15.5
GHSA-mmq6-q8r3-48fm anchore_cve tensorflow-1.15.5
GHSA-mq5c-prh3-3f3h anchore_cve tensorflow-1.15.5
GHSA-mqh2-9wrp-vx84 anchore_cve tensorflow-1.15.5
GHSA-mv78-g7wq-mhp4 anchore_cve tensorflow-1.15.5
GHSA-p45v-v4pw-77jr anchore_cve tensorflow-1.15.5
GHSA-ph87-fvjr-v33w anchore_cve tensorflow-1.15.5
GHSA-pmpr-55fj-r229 anchore_cve tensorflow-1.15.5
GHSA-pvrc-hg3f-58r6 anchore_cve tensorflow-1.15.5
GHSA-qw5h-7f53-xrp6 anchore_cve tensorflow-1.15.5
GHSA-r35g-4525-29fq anchore_cve tensorflow-1.15.5
GHSA-r4pj-74mg-8868 anchore_cve tensorflow-1.15.5
GHSA-r6pg-pjwc-j585 anchore_cve tensorflow-1.15.5
GHSA-rf3h-xgv5-2q39 anchore_cve tensorflow-1.15.5
GHSA-rgvq-pcvf-hx75 anchore_cve tensorflow-1.15.5
GHSA-v52p-hfjf-wg88 anchore_cve tensorflow-1.15.5
GHSA-v6r6-84gr-92rm anchore_cve tensorflow-1.15.5
GHSA-vf94-36g5-69v8 anchore_cve tensorflow-1.15.5
GHSA-vfr4-x8j2-3rf9 anchore_cve tensorflow-1.15.5
GHSA-vq2r-5xvm-3hc3 anchore_cve tensorflow-1.15.5
GHSA-vqw6-72r7-fgw7 anchore_cve tensorflow-1.15.5
GHSA-vvg4-vgrv-xfr7 anchore_cve tensorflow-1.15.5
GHSA-wcv5-qrj6-9pfm anchore_cve tensorflow-1.15.5
GHSA-whr9-vfh2-7hm6 anchore_cve tensorflow-1.15.5
GHSA-wp3c-xw9g-gpcg anchore_cve tensorflow-1.15.5
GHSA-wvjw-p9f5-vq28 anchore_cve tensorflow-1.15.5
GHSA-x4g7-fvjj-prg8 anchore_cve tensorflow-1.15.5
GHSA-x83m-p7pv-ch8v anchore_cve tensorflow-1.15.5
GHSA-x8h6-xgqx-jqgp anchore_cve tensorflow-1.15.5
GHSA-xcwj-wfcm-m23c anchore_cve tensorflow-1.15.5
GHSA-xgc3-m89p-vr3x anchore_cve tensorflow-1.15.5
GHSA-xm2v-8rrw-w9pm anchore_cve tensorflow-1.15.5
GHSA-xqfj-35wv-m3cr anchore_cve tensorflow-1.15.5
GHSA-xqfj-cr6q-pc8w anchore_cve tensorflow-1.15.5
GHSA-xvjm-fvxx-q3hv anchore_cve tensorflow-1.15.5
GHSA-xw93-v57j-fcgh anchore_cve tensorflow-1.15.5
CVE-2021-29515 twistlock_cve tensorflow-1.15.5
CVE-2021-29516 twistlock_cve tensorflow-1.15.5
CVE-2021-29517 twistlock_cve tensorflow-1.15.5
CVE-2021-29518 twistlock_cve tensorflow-1.15.5
CVE-2021-29519 twistlock_cve tensorflow-1.15.5
CVE-2021-29522 twistlock_cve tensorflow-1.15.5
CVE-2021-29523 twistlock_cve tensorflow-1.15.5
CVE-2021-29524 twistlock_cve tensorflow-1.15.5
CVE-2021-29526 twistlock_cve tensorflow-1.15.5
CVE-2021-29528 twistlock_cve tensorflow-1.15.5
CVE-2021-29529 twistlock_cve tensorflow-1.15.5
CVE-2021-29541 twistlock_cve tensorflow-1.15.5
CVE-2021-29554 twistlock_cve tensorflow-1.15.5
CVE-2021-29564 twistlock_cve tensorflow-1.15.5
CVE-2021-29565 twistlock_cve tensorflow-1.15.5
CVE-2021-29583 twistlock_cve tensorflow-1.15.5
CVE-2021-29601 twistlock_cve tensorflow-1.15.5
CVE-2021-29609 twistlock_cve tensorflow-1.15.5
CVE-2021-29614 twistlock_cve tensorflow-1.15.5

More information can be found in the failed pipeline located here: https://repo1.dso.mil/dsop/kubeflow/katib/suggestion-nasrl-57c6abf76193/-/jobs/3551813

Definition of Done

Justifications:

  • All findings have been justified
  • Justifications have been provided to the container hardening team

Approval Process:

  • Findings Approver has reviewed and approved all justifications
  • Approval request has been sent to Authorizing Official
  • Approval request has been processed by Authorizing Official
Edited by Andy Maksymowicz