Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

samtools Vulnerability Analysis #134

Open
github-actions bot opened this issue Oct 29, 2024 · 0 comments
Open

samtools Vulnerability Analysis #134

github-actions bot opened this issue Oct 29, 2024 · 0 comments

Comments

@github-actions
Copy link

Significant issues present in bwa, see quickview and recommendations below, but run CVE analysis locally.



  Target             │  getwilds/samtools:latest  │    0C     0H   432M    33L   
    digest           │  26f802c1b53a              │                              
  Base image         │  ubuntu:24.04              │    0C     0H     1M     4L   
  Updated base image │  ubuntu:24.10              │    0C     0H     0M     0L   
                     │                            │                  -1     -4   

What's next:
    View vulnerabilities → docker scout cves getwilds/samtools:latest
    View base image update recommendations → docker scout recommendations getwilds/samtools:latest
    Include policy results in your quickview by supplying an organization → docker scout quickview getwilds/samtools:latest --org <organization>



  Target   │  getwilds/samtools:latest   
    digest │  26f802c1b53a               

## Recommended fixes

  Base image is  ubuntu:24.04 

  Name            │  24.04                                                                     
  Digest          │  sha256:5d070ad5f7fe63623cbb99b4fc0fd997f5591303d4b03ccce50f403957d0ddc4   
  Vulnerabilities │    0C     0H     1M     4L                                                 
  Pushed          │ 2 weeks ago                                                                
  Size            │ 30 MB                                                                      
  Packages        │ 130                                                                        
  OS              │ 24.04                                                                      

                                                                    
  │ The base image is also available under the supported tag(s)     
  │ `latest`, `noble`, `noble-20241011`. If you want to display      
  │ recommendations specifically for a different tag, please re-run  
  │ the command using the `--tag` flag.                              



Refresh base image
  Rebuild the image using a newer base image version. Updating this may result in breaking changes.

  ✓ This image version is up to date.


Change base image
  The list displays new recommended tags in descending order, where the top results are rated as most suitable.


            Tag           │                        Details                        │   Pushed    │       Vulnerabilities        
──────────────────────────┼───────────────────────────────────────────────────────┼─────────────┼──────────────────────────────
   24.10                  │ Benefits:                                             │ 2 weeks ago │    0C     0H     0M     0L   
  Minor OS version update │ • Minor OS version update                             │             │                  -1     -4   
  Also known as:          │ • Image has similar size                              │             │                              
  • rolling               │ • Image introduces no new vulnerability but removes 5 │             │                              
  • oracular              │ • Image contains similar number of packages           │             │                              
  • oracular-20241009     │                                                       │             │                              
                          │ Image details:                                        │             │                              
                          │ • Size: 31 MB                                         │             │                              
                          │ • OS: 24.10                                           │             │                              
                          │                                                       │             │                              
                          │                                                       │             │                              
                          │                                                       │             │                              

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

0 participants