UNCLASSIFIED - NO CUI

chore(findings): opensource/apache/activemq

Summary

opensource/apache/activemq has 21 new findings discovered during continuous monitoring.

id source package
CVE-2020-11971 anchore_cve camel-2.25.2
CVE-2020-11971 anchore_cve camel-2.25.2
CVE-2020-11971 anchore_cve camel-2.25.2
CVE-2020-11971 anchore_cve camel-2.25.2
CVE-2020-11971 anchore_cve camel-2.25.2
CVE-2020-11971 anchore_cve camel-2.25.2
CVE-2020-11971 anchore_cve camel-2.25.2
CVE-2020-11971 anchore_cve camel-2.25.2
CVE-2020-11971 anchore_cve camel-2.25.2
CVE-2020-11971 anchore_cve camel-2.25.2
CVE-2021-21341 anchore_cve xstream-1.4.15
CVE-2021-21342 anchore_cve xstream-1.4.15
CVE-2021-21343 anchore_cve xstream-1.4.15
CVE-2021-21344 anchore_cve xstream-1.4.15
CVE-2021-21345 anchore_cve xstream-1.4.15
CVE-2021-21346 anchore_cve xstream-1.4.15
CVE-2021-21347 anchore_cve xstream-1.4.15
CVE-2021-21348 anchore_cve xstream-1.4.15
CVE-2021-21349 anchore_cve xstream-1.4.15
CVE-2021-21350 anchore_cve xstream-1.4.15
CVE-2021-21351 anchore_cve xstream-1.4.15

More information can be found in the failed pipeline located here: https://repo1.dso.mil/dsop/opensource/apache/activemq/-/jobs/2375400

Definition of Done

Justifications:

  • All findings have been justified
  • Justifications have been provided to the container hardening team

Approval Process:

  • Findings Approver has reviewed and approved all justifications
  • Approval request has been sent to Authorizing Official
  • Approval request has been processed by Authorizing Official
Edited by thomas.shepherd