We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Hi, security scanner Trivy detecting in semaphore Docker image rsync vulnerability CVE-2024-12084 https://sysdig.com/blog/detecting-and-mitigating-cve-2024-12084-rsync-remote-code-execution/ Is there impact or it is false positive? Or do you have plan to fix it? Thank you Ivos
Docker
No response
v2.11.2 v2.12.0-beta3
The text was updated successfully, but these errors were encountered:
rsync 3.2.7 used in image. So, yes, looks like it is true.
rsync 3.2.7
rsync installed from alpine3.19 registry. So, the issue can be fixed by upgrading base image.
rsync
Sorry, something went wrong.
No branches or pull requests
Issue
Hi,
security scanner Trivy detecting in semaphore Docker image rsync vulnerability CVE-2024-12084 https://sysdig.com/blog/detecting-and-mitigating-cve-2024-12084-rsync-remote-code-execution/
Is there impact or it is false positive? Or do you have plan to fix it?
Thank you
Ivos
Impact
Docker
Installation method
Docker
Database
No response
Browser
No response
Semaphore Version
v2.11.2
v2.12.0-beta3
Ansible Version
Logs & errors
No response
Manual installation - system information
No response
Configuration
No response
Additional information
No response
The text was updated successfully, but these errors were encountered: