UNCLASSIFIED - NO CUI

chore(findings): kubeflow/kfserving-0.2.2/tf2openapi-0.2.2

Summary

kubeflow/kfserving-0.2.2/tf2openapi-0.2.2 has 3 new findings discovered during continuous monitoring.

id source package
CVE-2021-3445 anchore_cve libdnf-0.48.0-5.el8
CVE-2021-3445 anchore_cve python3-hawkey-0.48.0-5.el8
CVE-2021-3445 anchore_cve python3-libdnf-0.48.0-5.el8

More information can be found in the failed pipeline located here: https://repo1.dso.mil/dsop/kubeflow/kfserving-0.2.2/tf2openapi-0.2.2/-/jobs/2359181

Definition of Done

Justifications:

  • All findings have been justified
  • Justifications have been provided to the container hardening team

Approval Process:

  • Findings Approver has reviewed and approved all justifications
  • Approval request has been sent to Authorizing Official
  • Approval request has been processed by Authorizing Official
Edited by Al Fontaine