distroless
distroless copied to clipboard
Fix of CVE-2024-12797 for openssl/1:3.2.2-6.el9_5 (redhat)
- [ ] I have read the SECURITY.md
- [ ] I understand that this repo tracks debian package releases and cannot fix debian CVEs on its own
- [ X ] this CVE shows a fix is available in the appropriate debian version (bookworm) and channel (main, security) and it has been more than 48 hours.
This Openssl version "https://snapshot.debian.org/archive/debian/20250517T203043Z/pool/main/o/openssl/openssl_3.0.16-1~deb12u1_amd64.deb" is affected by https://openssl-library.org/news/vulnerabilities/#CVE-2024-12797
Please describe the image you encountered this with and a link to the debian security tracker https://security-tracker.debian.org/tracker/CVE-2024-12797