docker-library / official-images

Primary source of truth for the Docker "Official Images" program

Home Page:https://hub.docker.com/u/library

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Fix CVE-2023-24538 and CVE-2023-24540

deshruch opened this issue · comments

The CVEs still exist in linux/amd64 images
image

This doc explains why this is a false positive: https://github.com/tianon/gosu/blob/master/SECURITY.md