Skip to content
This repository has been archived by the owner on Dec 6, 2023. It is now read-only.

Vault Binary in vault:1.13.3 docker image has CVE-2023-34231 Vuln (High) #342

Open
eshafaq1 opened this issue Aug 7, 2023 · 0 comments
Open

Comments

@eshafaq1
Copy link

eshafaq1 commented Aug 7, 2023

│Vulnerability │ Severity │ Installed Version │ Fixed Version
|CVE-2023-34231 │ HIGH │ v1.6.3 │ 1.6.19

There looks to be a vulnerability with a third party package (github.com/snowflakedb/gosnowflake) in the latest version of the vault docker image. Specifically the vault binary (bin/vault (gobinary) has this vulnerability from what Trivy is reporting. (see screenshot)

Screenshot 2023-08-07 at 1 42 53 PM

Filing this ticket in hope folks can get this patched and publish a new image.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant