UNCLASSIFIED - NO CUI

chore(findings): opensource/seldonio/seldon-core-1.0.1/seldon-request-logger-1.0.1

Summary

opensource/seldonio/seldon-core-1.0.1/seldon-request-logger-1.0.1 has 7 new findings discovered during continuous monitoring.

id source package
VULNDB-255911 anchore_cve pip-21.0.1
CVE-2020-24330 anchore_cve trousers-0.3.14-4.el8
CVE-2020-24331 anchore_cve trousers-0.3.14-4.el8
CVE-2020-24332 anchore_cve trousers-0.3.14-4.el8
CVE-2020-24330 anchore_cve trousers-lib-0.3.14-4.el8
CVE-2020-24331 anchore_cve trousers-lib-0.3.14-4.el8
CVE-2020-24332 anchore_cve trousers-lib-0.3.14-4.el8

More information can be found in the failed pipeline located here: https://repo1.dso.mil/dsop/opensource/seldonio/seldon-core-1.0.1/seldon-request-logger-1.0.1/-/jobs/3403663

Definition of Done

Justifications:

  • All findings have been justified
  • Justifications have been provided to the container hardening team

Approval Process:

  • Findings Approver has reviewed and approved all justifications
  • Approval request has been sent to Authorizing Official
  • Approval request has been processed by Authorizing Official
Edited by Al Fontaine