Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 4 Next »

TODO - do not quote


Layer

Result

Comments

os/lynis

PASS

No change since

os/vuls

FAIL:

140 unfixed vulnerabilities found

Most, if not all, of the vulnerabilities seem to come from the validation containers, not the host OS itself.

Change:

 :

152 unfixed vulnerabilities.

Total: 153 (High:33 Medium:93 Low:27 ?:0), 1/153 Fixed, 801 installed, 0 exploits, en: 2, ja: 0 alerts.

:

140 unfixed vulnerabilities.

Total: 153 (High:30 Medium:96 Low:27 ?:0), 13/153 Fixed, 795 installed, 0 exploits, en: 2, ja: 0 alerts

k8s/conformance

PASS

No change since

k8s/kubehunter

PASS except:

  • Inside-a-Pod Scanning: 1 vulnerability: CAP_NET_RAW

Patched system:public-info-viewer to hide /version and patched service account to disable automounting of service account tokens.

Change:

 :

Inside-a-Pod Scanning: 5 vulnerabilities.

:

Inside-a-Pod Scanning: 1 vulnerability: CAP_NET_RAW.

  • No labels