You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Hi, we are currently using operator-sdk v1.39.0 as the base image to build our helm based operator. During our Security scan, as per this CVE (CVE-2019-12900), the bzip2-libs package (v1.0.8-8.el9) that the operator-sdk is using is vulnerable and we are required to upgrade to the version v1.0.8-8.el9_4.1
Could not find this version even in the latest release- v1.39.1
Can we know by when the new version of operator-sdk will be released with the upgraded version of this package?
The text was updated successfully, but these errors were encountered:
sivani01
changed the title
Need upgraded version of package bzip2-libs to resolve security vulnerabilities
Need upgraded version of below packages to resolve security vulnerabilities
Feb 17, 2025
Hi, we are currently using operator-sdk v1.39.0 as the base image to build our helm based operator. During our Security scan, as per this CVE (CVE-2019-12900), the bzip2-libs package (v1.0.8-8.el9) that the operator-sdk is using is vulnerable and we are required to upgrade to the version v1.0.8-8.el9_4.1
Could not find this version even in the latest release- v1.39.1
Can we know by when the new version of operator-sdk will be released with the upgraded version of this package?
The text was updated successfully, but these errors were encountered: