VYPR

apk package

chainguard/eks-distro-kubernetes-csi-livenessprobe-fips-1.30

pkg:apk/chainguard/eks-distro-kubernetes-csi-livenessprobe-fips-1.30

Vulnerabilities (22)

  • CVE-2024-53259MedDec 2, 2024
    affected < 1.30.20-r0fixed 1.30.20-r0

    quic-go is an implementation of the QUIC protocol in Go. An off-path attacker can inject an ICMP Packet Too Large packet. Since affected quic-go versions used IP_PMTUDISC_DO, the kernel would then return a "message too large" error on sendmsg, i.e. when quic-go attempts to send a

  • CVE-2024-51744LowNov 4, 2024
    affected < 1.30.17-r1fixed 1.30.17-r1

    golang-jwt is a Go implementation of JSON Web Tokens. Unclear documentation of the error behavior in `ParseWithClaims` can lead to situation where users are potentially not checking errors in the way they should be. Especially, if a token is both expired and invalid, the errors r

Page 2 of 2