Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Suppress redhat linux CVEs #22015

Merged
merged 1 commit into from
Dec 18, 2024
Merged

Suppress redhat linux CVEs #22015

merged 1 commit into from
Dec 18, 2024

Conversation

sarahalsmiller
Copy link
Member

Description

Previous PR #22011 attempted to resolve these CVEs by updating the redhat ubi image, however these CVEs are still being reported in the scanner. Suppressing for now as we do not use these packages.

Testing & Reproduction steps

  • CI passes

Links

Original PR

PR Checklist

  • updated test coverage
  • external facing docs updated
  • appropriate backport labels added
  • not a security concern

@sarahalsmiller sarahalsmiller requested review from a team as code owners December 18, 2024 17:08
@sarahalsmiller sarahalsmiller added pr/no-changelog PR does not need a corresponding .changelog entry backport/all Apply backports for all active releases per .release/versions.hcl labels Dec 18, 2024
@sarahalsmiller sarahalsmiller enabled auto-merge (squash) December 18, 2024 17:13
@dduzgun-security
Copy link
Collaborator

LGTM! Since these are libs coming from the LTS base image we consume, they will get fixed by themselves.

@sarahalsmiller sarahalsmiller merged commit 2e337ed into main Dec 18, 2024
112 of 114 checks passed
@sarahalsmiller sarahalsmiller deleted the suppress-stubborn-cve branch December 18, 2024 17:24
@hc-github-team-consul-core hc-github-team-consul-core added backport/1.20 Changes are backported to 1.20 backport/ent/1.15 Changes are backported to 1.15 ent backport/ent/1.18 Changes are backported to 1.18 ent backport/ent/1.19 Changes are backported to 1.19 ent labels Dec 18, 2024
@sarahalsmiller sarahalsmiller added backport/all Apply backports for all active releases per .release/versions.hcl and removed backport/ent/1.15 Changes are backported to 1.15 ent backport/all Apply backports for all active releases per .release/versions.hcl backport/ent/1.18 Changes are backported to 1.18 ent backport/1.20 Changes are backported to 1.20 backport/ent/1.19 Changes are backported to 1.19 ent labels Dec 18, 2024
@hc-github-team-consul-core hc-github-team-consul-core added backport/1.20 Changes are backported to 1.20 backport/ent/1.15 Changes are backported to 1.15 ent backport/ent/1.18 Changes are backported to 1.18 ent backport/ent/1.19 Changes are backported to 1.19 ent labels Dec 19, 2024
@sarahalsmiller sarahalsmiller removed the backport/ent/1.15 Changes are backported to 1.15 ent label Dec 19, 2024
@sarahalsmiller sarahalsmiller added backport/ent/1.15 Changes are backported to 1.15 ent backport/ent/1.18 Changes are backported to 1.18 ent backport/ent/1.19 Changes are backported to 1.19 ent and removed backport/ent/1.18 Changes are backported to 1.18 ent backport/ent/1.19 Changes are backported to 1.19 ent backport/ent/1.15 Changes are backported to 1.15 ent labels Dec 19, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
backport/all Apply backports for all active releases per .release/versions.hcl backport/1.20 Changes are backported to 1.20 pr/no-changelog PR does not need a corresponding .changelog entry
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants