SUSE Rancher - Longhorn master version - CVE Scans - 2025-08-21

How to use this page

Search:

Image Mirrored Release Binary/Package Dependency Vulnerability ID (CVE) Severity Status Justification (for status not affected) Type (language or OS)
longhornio/backing-image-manager:master-head false Longhorn master usr/local/bin/backing-image-manager stdlib@v1.24.5 CVE-2025-47907
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
longhornio/csi-attacher:v4.8.1 false Longhorn master csi-attacher stdlib@v1.23.1 CVE-2025-47907
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
longhornio/csi-node-driver-registrar:v2.13.0 false Longhorn master csi-node-driver-registrar stdlib@v1.23.1 CVE-2025-47907
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
longhornio/csi-provisioner:v5.2.0 false Longhorn master csi-provisioner stdlib@v1.23.1 CVE-2025-47907
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
longhornio/csi-resizer:v1.13.2 false Longhorn master csi-resizer stdlib@v1.23.1 CVE-2025-47907
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
longhornio/csi-snapshotter:v8.2.0 false Longhorn master csi-snapshotter stdlib@v1.23.1 CVE-2025-47907
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
longhornio/livenessprobe:v2.15.0 false Longhorn master livenessprobe stdlib@v1.23.1 CVE-2025-47907
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
longhornio/longhorn-engine:master-head false Longhorn master usr/local/bin/grpc_health_probe stdlib@v1.24.5 CVE-2025-47907
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
longhornio/longhorn-instance-manager:master-head false Longhorn master usr/local/bin/grpc_health_probe stdlib@v1.24.5 CVE-2025-47907
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
longhornio/support-bundle-kit:v0.0.58 false Longhorn master libglib-2_0-0 libglib-2_0-0@2.78.6-150600.4.11.1 SUSE-SU-2025:02167-1 HIGH affected sles
longhornio/support-bundle-kit:v0.0.58 false Longhorn master libsqlite3-0 libsqlite3-0@3.49.1-150000.3.27.1 SUSE-SU-2025:02672-1 HIGH affected sles
longhornio/support-bundle-kit:v0.0.58 false Longhorn master libssh-config libssh-config@0.9.8-150600.9.1 SUSE-SU-2025:02229-1 HIGH affected sles
longhornio/support-bundle-kit:v0.0.58 false Longhorn master libssh4 libssh4@0.9.8-150600.9.1 SUSE-SU-2025:02229-1 HIGH affected sles
longhornio/support-bundle-kit:v0.0.58 false Longhorn master libxml2-2 libxml2-2@2.10.3-150500.5.26.1 SUSE-SU-2025:02314-1 HIGH affected sles
longhornio/support-bundle-kit:v0.0.58 false Longhorn master libxml2-2 libxml2-2@2.10.3-150500.5.26.1 SUSE-SU-2025:02758-1 HIGH affected sles
longhornio/support-bundle-kit:v0.0.58 false Longhorn master usr/bin/support-bundle-kit stdlib@v1.24.4 CVE-2025-47907
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
longhornio/support-bundle-kit:v0.0.58 false Longhorn master usr/bin/yq stdlib@v1.24.3 CVE-2025-22874 HIGH affected gobinary
longhornio/support-bundle-kit:v0.0.58 false Longhorn master usr/bin/yq stdlib@v1.24.3 CVE-2025-47907
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
longhornio/csi-attacher:v4.8.1 false Longhorn master csi-attacher golang.org/x/net@v0.34.0 CVE-2025-22870 none not affected vulnerable code not present gobinary
longhornio/csi-attacher:v4.8.1 false Longhorn master csi-attacher golang.org/x/net@v0.34.0 CVE-2025-22872 none not affected vulnerable code not present gobinary
longhornio/csi-attacher:v4.8.1 false Longhorn master csi-attacher golang.org/x/oauth2@v0.25.0 CVE-2025-22868 none not affected vulnerable code not present gobinary
longhornio/csi-node-driver-registrar:v2.13.0 false Longhorn master csi-node-driver-registrar golang.org/x/net@v0.32.0 CVE-2025-22870 none not affected vulnerable code not present gobinary
longhornio/csi-node-driver-registrar:v2.13.0 false Longhorn master csi-node-driver-registrar golang.org/x/net@v0.32.0 CVE-2025-22872 none not affected vulnerable code not present gobinary
longhornio/csi-provisioner:v5.2.0 false Longhorn master csi-provisioner golang.org/x/net@v0.34.0 CVE-2025-22870 none not affected vulnerable code not present gobinary
longhornio/csi-provisioner:v5.2.0 false Longhorn master csi-provisioner golang.org/x/net@v0.34.0 CVE-2025-22872 none not affected vulnerable code not present gobinary
longhornio/csi-provisioner:v5.2.0 false Longhorn master csi-provisioner golang.org/x/oauth2@v0.25.0 CVE-2025-22868 none not affected vulnerable code not present gobinary
longhornio/csi-resizer:v1.13.2 false Longhorn master csi-resizer golang.org/x/net@v0.34.0 CVE-2025-22870 none not affected vulnerable code not present gobinary
longhornio/csi-resizer:v1.13.2 false Longhorn master csi-resizer golang.org/x/net@v0.34.0 CVE-2025-22872 none not affected vulnerable code not present gobinary
longhornio/csi-resizer:v1.13.2 false Longhorn master csi-resizer golang.org/x/oauth2@v0.25.0 CVE-2025-22868 none not affected vulnerable code not present gobinary
longhornio/csi-snapshotter:v8.2.0 false Longhorn master csi-snapshotter golang.org/x/net@v0.31.0 CVE-2025-22870 none not affected vulnerable code not present gobinary
longhornio/csi-snapshotter:v8.2.0 false Longhorn master csi-snapshotter golang.org/x/net@v0.31.0 CVE-2025-22872 none not affected vulnerable code not present gobinary
longhornio/csi-snapshotter:v8.2.0 false Longhorn master csi-snapshotter golang.org/x/oauth2@v0.24.0 CVE-2025-22868 none not affected vulnerable code not present gobinary
longhornio/livenessprobe:v2.15.0 false Longhorn master livenessprobe golang.org/x/net@v0.32.0 CVE-2025-22870 none not affected vulnerable code not present gobinary
longhornio/livenessprobe:v2.15.0 false Longhorn master livenessprobe golang.org/x/net@v0.32.0 CVE-2025-22872 none not affected vulnerable code not present gobinary
longhornio/support-bundle-kit:v0.0.58 false Longhorn master boost-license1_66_0 boost-license1_66_0@1.66.0-12.3.1 SUSE-SU-2025:02536-1 none not affected vulnerable code cannot be controlled by adversary sles
longhornio/support-bundle-kit:v0.0.58 false Longhorn master libboost_system1_66_0 libboost_system1_66_0@1.66.0-12.3.1 SUSE-SU-2025:02536-1 none not affected vulnerable code cannot be controlled by adversary sles
longhornio/support-bundle-kit:v0.0.58 false Longhorn master libboost_thread1_66_0 libboost_thread1_66_0@1.66.0-12.3.1 SUSE-SU-2025:02536-1 none not affected vulnerable code cannot be controlled by adversary sles