UNCLASSIFIED - NO CUI

chore(findings): opensource/solr/solr-8

Summary

opensource/solr/solr-8 has 9 new findings discovered during continuous monitoring.

id source package
VULNDB-256815 anchore_cve commons-compress-1.20
VULNDB-257084 anchore_cve commons-compress-1.20
CVE-2021-27807 anchore_cve pdfbox-2.0.19
CVE-2021-27807 anchore_cve pdfbox-2.0.19
CVE-2021-27807 anchore_cve pdfbox-2.0.19
CVE-2021-27906 anchore_cve pdfbox-2.0.19
CVE-2021-27906 anchore_cve pdfbox-2.0.19
CVE-2021-27906 anchore_cve pdfbox-2.0.19
CVE-2021-31879 anchore_cve wget-1.19.5-10.el8

More information can be found in the failed pipeline located here: https://repo1.dso.mil/dsop/opensource/solr/solr-8/-/jobs/3486179

Definition of Done

Justifications:

  • All findings have been justified
  • Justifications have been provided to the container hardening team

Approval Process:

  • Findings Approver has reviewed and approved all justifications
  • Approval request has been sent to Authorizing Official
  • Approval request has been processed by Authorizing Official
Edited by Al Fontaine