Skip to content

dockerd vulnerabilities #47246

@raghu017

Description

@raghu017

Description

dockerd has several vulnerabilities. Can you fix them please?

https://hub.docker.com/layers/library/docker/25.0.1-dind/images/sha256-47d0ff54a405396b7ee5e882e33ee42d6457936b3393f2e40504cf03c0eb55ea?context=explore

CVE-2023-47108 -
go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc
g.org/grpc/otelgrpc

CVE-2023-45142 -
go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful
go.opentelemetry.io/contrib/instrumentation/github.com/gin-gonic/gin/otelgin
go.opentelemetry.io/contrib/instrumentation/github.com/gorilla/mux/otelmux
go.opentelemetry.io/contrib/instrumentation/github.com/labstack/echo/otelecho
go.opentelemetry.io/contrib/instrumentation/gopkg.in/macaron.v1/otelmacaron
go.opentelemetry.io/contrib/instrumentation/net/http/httptrace/otelhttptrace
go.opentelemetry.io/contrib/instrumentation/net/http/otel

CVE-2023-48795 -
golang.org/x/crypto

GHSA-7ww5-4wqc-m92c -
github.com/containerd/containerd

Reproduce

Remove vulnerable images

Expected behavior

No response

docker version

24.0.8-dind, 25.0.1-dind

docker info

24.0.8-dind, 25.0.1-dind

Additional Info

No response

Metadata

Metadata

Assignees

No one assigned

    Labels

    kind/bugBugs are bugs. The cause may or may not be known at triage time so debugging may be needed.status/0-triage

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions