UNCLASSIFIED

You need to sign in or sign up before continuing.

update hardening_manifest

14 jobs for olga-jira-collerctor in 10 minutes and 40 seconds (queued for 8 seconds)
Status Job ID Name Coverage
  .Pre
passed #2609099
ironbank
load scripts

00:00:06

 
  Preflight
passed #2609100
ironbank
folder structure

00:00:06

passed #2609101
ironbank
hardening_manifest

00:00:10

 
  Lint
passed #2609102
ironbank
wl compare lint

00:00:10

 
  Finding Compare
failed #2609103
ironbank allowed to fail
vat compare

00:00:07

 
  Import Artifacts
passed #2609104
ironbank
import artifacts

00:00:48

 
  Scan Artifacts
passed #2609105
ironbank
clamav scan

00:02:45

 
  Build
passed #2609106
ironbank-isolated
build

00:01:33

 
  Scanning
passed #2609110
ironbank
anchore scan

00:01:47

passed #2609107
ironbank
openscap compliance

00:00:50

passed #2609108
ironbank
openscap cve

00:03:53

passed #2609109
ironbank
twistlock scan

00:00:20

 
  Csv Output
passed #2609111
ironbank
csv output

00:00:49

 
  Check Cves
failed #2609112
ironbank allowed to fail
check cves

00:00:15

 
Name Stage Failure
failed
check cves Check Cves
ERROR: twistlock_cve                 CVE-2021-25329                apache tomcat_tomcat-embed-core-8.5.57    None                          
ERROR: twistlock_cve CVE-2020-25649 com.fasterxml.jackson.core_jackson-databind-2.10.3 None
ERROR: twistlock_cve CVE-2020-8908 com.google.guava_guava-29.0-jre None
ERROR: twistlock_cve CVE-2020-13956 org.apache.httpcomponents_httpclient-4.5.9 None
ERROR: twistlock_cve CVE-2020-10693 org.hibernate_hibernate-validator-5.4.2.Final None
ERROR: twistlock_cve CVE-2017-18640 org.yaml_snakeyaml-1.17 None
ERROR: twistlock_cve CVE-2020-5421 spring-core_spring-core-4.3.25 None
Cleaning up file based variables
ERROR: Job failed: command terminated with exit code 1
failed
vat compare Finding Compare
Findings from direct query not in api
('cbff271f45d32e78dcc1979dbca9c14d', 'anchore_comp', 'User root found as effective user, which is explicity not allowed\n Gate: dockerfile\n Trigger: effective_user\n Policy ID: DoDEffectiveUserChecks', None, None)
('41cb7cdf04850e33a11f80c42bf660b3', 'anchore_comp', "Dockerfile directive 'HEALTHCHECK' not found, matching condition 'not_exists' check\n Gate: dockerfile\n Trigger: instruction\n Policy ID: DoDDockerfileChecks", None, None)
Uploading artifacts for failed job
Uploading artifacts...
ci-artifacts/compare/: found 2 matching files and directories

Uploading artifacts as "archive" to coordinator... ok
id=2609103 responseStatus=201 Created token=6g5m_D84
Cleaning up file based variables
ERROR: Job failed: command terminated with exit code 4