docker-atlassian-jira-software icon indicating copy to clipboard operation
docker-atlassian-jira-software copied to clipboard

Based on too old JDK, with security issues

Open rschulz-scisys opened this issue 5 years ago • 0 comments

Since we scan the docker images we use via harbor, please be aware, that the current images all share the same vulnerabilities:

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-1000654 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-2816 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-2842 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-2762 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14498

image

This is mainly caused by using a cached base image instead of forcing a recent one for the openjdk.

rschulz-scisys avatar Jan 28 '20 15:01 rschulz-scisys