Skip to content

High severity CVE related with go stdlib version #903

@ikheifets-splunk

Description

@ikheifets-splunk

Describe the bug
High severity CVE
Screenshot 2024-05-09 at 13 35 42

How To Reproduce
https://github.com/aquasecurity/trivy detected this CVE

Expected Behavior
using Go version without CVE

Actual Behavior
using Go version with CVE

Environment:

  • Version of goss 0.4.6
  • OS/Distribution version: alpine linux 3.19

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions