UNCLASSIFIED - NO CUI

chore(findings): opensource/istio-1.5/proxyv2-1.5

Summary

opensource/istio-1.5/proxyv2-1.5 has 3 new findings discovered during continuous monitoring.

id source package
CVE-2021-27645 anchore_cve glibc-langpack-en-2.28-151.el8
CCE-83364-0 oscap_comp None
CCE-83377-2 oscap_comp None

More information can be found in the failed pipeline located here: https://repo1.dso.mil/dsop/opensource/istio-1.5/proxyv2-1.5/-/jobs/3487867

Definition of Done

Justifications:

  • All findings have been justified
  • Justifications have been provided to the container hardening team

Approval Process:

  • Findings Approver has reviewed and approved all justifications
  • Approval request has been sent to Authorizing Official
  • Approval request has been processed by Authorizing Official