SUSE Rancher - RKE2 v1.30.12 version - CVE Scans - 2025-05-14

How to use this page

Search:

Image Mirrored Release Binary/Package Dependency Vulnerability ID (CVE) Severity Status Justification (for status not affected) Type (language or OS)
rancher/hardened-calico:v3.29.3-build20250408 false RKE2 v1.30.12 libsqlite3-0 libsqlite3-0@3.44.0-150000.3.23.1 SUSE-SU-2025:1456-1 HIGH affected sles
rancher/hardened-flannel:v0.26.6-build20250414 false RKE2 v1.30.12 libsoup-2_4-1 libsoup-2_4-1@2.74.3-150600.4.3.1 SUSE-SU-2025:1503-1 HIGH affected sles
rancher/hardened-flannel:v0.26.6-build20250414 false RKE2 v1.30.12 libsqlite3-0 libsqlite3-0@3.44.0-150000.3.23.1 SUSE-SU-2025:1456-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.12.1-hardened3 false RKE2 v1.30.12 libsqlite3-0 libsqlite3-0@3.44.0-150000.3.23.1 SUSE-SU-2025:1456-1 HIGH affected sles
rancher/hardened-dns-node-cache:1.25.0-build20250127 false RKE2 v1.30.12 node-cache golang.org/x/crypto@v0.22.0 CVE-2024-45337 none not affected vulnerable code not present gobinary
rancher/hardened-dns-node-cache:1.25.0-build20250127 false RKE2 v1.30.12 node-cache golang.org/x/crypto@v0.22.0 CVE-2025-22869 none not affected vulnerable code not present gobinary
rancher/hardened-k8s-metrics-server:v0.7.2-build20250110 false RKE2 v1.30.12 metrics-server golang.org/x/crypto@v0.26.0 CVE-2024-45337 none not affected vulnerable code not present gobinary
rancher/hardened-k8s-metrics-server:v0.7.2-build20250110 false RKE2 v1.30.12 metrics-server golang.org/x/crypto@v0.26.0 CVE-2025-22869 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kube-apiserver go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 CVE-2023-47108 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kube-apiserver golang.org/x/crypto@v0.21.0 CVE-2024-45337 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kube-apiserver golang.org/x/crypto@v0.21.0 CVE-2025-22869 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kube-controller-manager go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 CVE-2023-47108 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kube-controller-manager golang.org/x/crypto@v0.21.0 CVE-2024-45337 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kube-controller-manager golang.org/x/crypto@v0.21.0 CVE-2025-22869 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kube-proxy go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 CVE-2023-47108 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kube-proxy golang.org/x/crypto@v0.21.0 CVE-2024-45337 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kube-proxy golang.org/x/crypto@v0.21.0 CVE-2025-22869 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kube-scheduler go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 CVE-2023-47108 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kube-scheduler golang.org/x/crypto@v0.21.0 CVE-2024-45337 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kube-scheduler golang.org/x/crypto@v0.21.0 CVE-2025-22869 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kubelet go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful@v0.42.0 CVE-2023-45142 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kubelet go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 CVE-2023-47108 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kubelet golang.org/x/crypto@v0.21.0 CVE-2024-45337 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.30.12-rke2r1-build20250423 false RKE2 v1.30.12 usr/local/bin/kubelet golang.org/x/crypto@v0.21.0 CVE-2025-22869 none not affected vulnerable code not present gobinary
rancher/klipper-helm:v0.9.5-build20250306 false RKE2 v1.30.12 home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis golang.org/x/crypto@v0.26.0 CVE-2024-45337 none not affected vulnerable code not present gobinary
rancher/klipper-helm:v0.9.5-build20250306 false RKE2 v1.30.12 home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis golang.org/x/crypto@v0.26.0 CVE-2025-22869 none not affected vulnerable code not present gobinary
rancher/klipper-helm:v0.9.5-build20250306 false RKE2 v1.30.12 home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status golang.org/x/crypto@v0.25.0 CVE-2024-45337 none not affected vulnerable code not present gobinary
rancher/klipper-helm:v0.9.5-build20250306 false RKE2 v1.30.12 home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status golang.org/x/crypto@v0.25.0 CVE-2025-22869 none not affected vulnerable code not present gobinary
rancher/klipper-helm:v0.9.5-build20250306 false RKE2 v1.30.12 usr/bin/helm golang.org/x/crypto@v0.31.0 CVE-2025-22869 none not affected vulnerable code not present gobinary
rancher/rke2-cloud-provider:v1.30.6-0.20241016053533-5ec454f50e7a-build20241016 false RKE2 v1.30.12 usr/local/bin/rke2-cloud-provider github.com/golang-jwt/jwt/v4@v4.5.0 CVE-2025-30204 none not affected vulnerable code not in execute path gobinary
rancher/rke2-cloud-provider:v1.30.6-0.20241016053533-5ec454f50e7a-build20241016 false RKE2 v1.30.12 usr/local/bin/rke2-cloud-provider golang.org/x/crypto@v0.27.0 CVE-2024-45337 none not affected vulnerable code not present gobinary
rancher/rke2-cloud-provider:v1.30.6-0.20241016053533-5ec454f50e7a-build20241016 false RKE2 v1.30.12 usr/local/bin/rke2-cloud-provider golang.org/x/crypto@v0.27.0 CVE-2025-22869 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.30.12-rke2r1 false RKE2 v1.30.12 bin/containerd go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.45.0 CVE-2023-47108 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.30.12-rke2r1 false RKE2 v1.30.12 bin/containerd golang.org/x/crypto@v0.31.0 CVE-2025-22869 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.30.12-rke2r1 false RKE2 v1.30.12 bin/crictl go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 CVE-2023-47108 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.30.12-rke2r1 false RKE2 v1.30.12 bin/kubelet go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful@v0.42.0 CVE-2023-45142 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.30.12-rke2r1 false RKE2 v1.30.12 bin/kubelet go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.42.0 CVE-2023-47108 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.30.12-rke2r1 false RKE2 v1.30.12 bin/kubelet golang.org/x/crypto@v0.21.0 CVE-2024-45337 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.30.12-rke2r1 false RKE2 v1.30.12 bin/kubelet golang.org/x/crypto@v0.21.0 CVE-2025-22869 none not affected vulnerable code not present gobinary