SUSE Rancher - RKE2 v1.33.11 version - CVE Scans - 2026-04-25

How to use this page

Search:

Image Mirrored Release Binary/Package Dependency Vulnerability ID (CVE) Severity Status Justification (for status not affected) Type (language or OS)
rancher/hardened-calico:v3.31.5-build20260415 false RKE2 v1.33.11 glibc glibc@2.38-150600.14.43.1 SUSE-SU-2026:1369-1 HIGH affected sles
rancher/hardened-calico:v3.31.5-build20260415 false RKE2 v1.33.11 libcap2 libcap2@2.63-150400.3.3.1 SUSE-SU-2026:1432-1 HIGH affected sles
rancher/hardened-calico:v3.31.5-build20260415 false RKE2 v1.33.11 libexpat1 libexpat1@2.7.1-150700.3.9.2 SUSE-SU-2026:1352-1 HIGH affected sles
rancher/hardened-calico:v3.31.5-build20260415 false RKE2 v1.33.11 libopenssl-3-fips-provider libopenssl-3-fips-provider@3.2.3-150700.5.24.1 SUSE-SU-2026:1375-1 HIGH affected sles
rancher/hardened-calico:v3.31.5-build20260415 false RKE2 v1.33.11 libopenssl3 libopenssl3@3.2.3-150700.5.24.1 SUSE-SU-2026:1375-1 HIGH affected sles
rancher/hardened-dns-node-cache:1.26.8-build20260416 false RKE2 v1.33.11 node-cache github.com/coredns/coredns@v1.13.2 CVE-2026-26017 HIGH affected gobinary
rancher/hardened-dns-node-cache:1.26.8-build20260416 false RKE2 v1.33.11 node-cache github.com/coredns/coredns@v1.13.2 CVE-2026-26018 HIGH affected gobinary
rancher/hardened-dns-node-cache:1.26.8-build20260416 false RKE2 v1.33.11 node-cache github.com/coredns/coredns@v1.13.2 CVE-2025-68151
HIGH*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
rancher/hardened-flannel:v0.28.4-build20260415 false RKE2 v1.33.11 glibc glibc@2.38-150600.14.43.1 SUSE-SU-2026:1369-1 HIGH affected sles
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 glibc glibc@2.40-160000.3.1 SUSE-SU-2026:21164-1 HIGH affected sles
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 glibc-locale-base glibc-locale-base@2.40-160000.3.1 SUSE-SU-2026:21164-1 HIGH affected sles
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 libopenssl-3-fips-provider libopenssl-3-fips-provider@3.5.0-160000.6.1 SUSE-SU-2026:21186-1 HIGH affected sles
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 libopenssl3 libopenssl3@3.5.0-160000.6.1 SUSE-SU-2026:21186-1 HIGH affected sles
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 libudev1 libudev1@257.10-160000.1.1 SUSE-SU-2026:21144-1 HIGH affected sles
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 openssl-3 openssl-3@3.5.0-160000.6.1 SUSE-SU-2026:21186-1 HIGH affected sles
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 tar tar@1.35-160000.2.2 SUSE-SU-2026:21143-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.33.11 glibc glibc@2.40-160000.3.1 SUSE-SU-2026:21164-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.33.11 glibc-devel glibc-devel@2.40-160000.3.1 SUSE-SU-2026:21164-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.33.11 glibc-locale-base glibc-locale-base@2.40-160000.3.1 SUSE-SU-2026:21164-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.33.11 libopenssl-3-devel libopenssl-3-devel@3.5.0-160000.6.1 SUSE-SU-2026:21186-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.33.11 libopenssl-3-fips-provider libopenssl-3-fips-provider@3.5.0-160000.6.1 SUSE-SU-2026:21186-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.33.11 libopenssl3 libopenssl3@3.5.0-160000.6.1 SUSE-SU-2026:21186-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.33.11 libpython3_13-1_0 libpython3_13-1_0@3.13.12-160000.1.1 SUSE-SU-2026:21178-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.33.11 libsystemd0 libsystemd0@257.10-160000.1.1 SUSE-SU-2026:21144-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.33.11 libudev1 libudev1@257.10-160000.1.1 SUSE-SU-2026:21144-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.33.11 openssl-3 openssl-3@3.5.0-160000.6.1 SUSE-SU-2026:21186-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.33.11 python313-base python313-base@3.13.12-160000.1.1 SUSE-SU-2026:21178-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.33.11 tar tar@1.35-160000.2.2 SUSE-SU-2026:21143-1 HIGH affected sles
rancher/rke2-cloud-provider:v1.33.11-0.20260415182038-2566e39d309b-build20260416 false RKE2 v1.33.11 usr/local/bin/rke2-cloud-provider go.opentelemetry.io/otel/sdk@v1.40.0 CVE-2026-39883 HIGH affected gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/containerd github.com/go-jose/go-jose/v4@v4.1.3 CVE-2026-34986 HIGH affected gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/crictl github.com/moby/spdystream@v0.5.0 CVE-2026-35469
MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
rancher/hardened-addon-resizer:1.8.23-build20260413 false RKE2 v1.33.11 pod_nanny golang.org/x/net@v0.33.0 CVE-2025-22870 none not affected vulnerable code not present gobinary
rancher/hardened-addon-resizer:1.8.23-build20260413 false RKE2 v1.33.11 pod_nanny golang.org/x/net@v0.33.0 CVE-2025-22872 none not affected vulnerable code not present gobinary
rancher/hardened-addon-resizer:1.8.23-build20260413 false RKE2 v1.33.11 pod_nanny golang.org/x/oauth2@v0.24.0 CVE-2025-22868 none not affected vulnerable code not present gobinary
rancher/hardened-cluster-autoscaler:v1.10.3-build20260414 false RKE2 v1.33.11 cluster-proportional-autoscaler golang.org/x/net@v0.36.0 CVE-2025-22872 none not affected vulnerable code not present gobinary
rancher/hardened-cluster-autoscaler:v1.10.3-build20260414 false RKE2 v1.33.11 cluster-proportional-autoscaler golang.org/x/oauth2@v0.23.0 CVE-2025-22868 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.7-k3s1-build20260415 false RKE2 v1.33.11 usr/local/bin/etcd go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.7-k3s1-build20260415 false RKE2 v1.33.11 usr/local/bin/etcd go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.7-k3s1-build20260415 false RKE2 v1.33.11 usr/local/bin/etcd golang.org/x/crypto@v0.42.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.7-k3s1-build20260415 false RKE2 v1.33.11 usr/local/bin/etcd golang.org/x/crypto@v0.42.0 CVE-2025-58181 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.7-k3s1-build20260415 false RKE2 v1.33.11 usr/local/bin/etcd google.golang.org/grpc@v1.71.1 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.7-k3s1-build20260415 false RKE2 v1.33.11 usr/local/bin/etcdctl google.golang.org/grpc@v1.71.1 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/hardened-k8s-metrics-server:v0.8.1-build20260413 false RKE2 v1.33.11 metrics-server go.opentelemetry.io/otel/sdk@v1.35.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/hardened-k8s-metrics-server:v0.8.1-build20260413 false RKE2 v1.33.11 metrics-server go.opentelemetry.io/otel/sdk@v1.35.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-k8s-metrics-server:v0.8.1-build20260413 false RKE2 v1.33.11 metrics-server golang.org/x/crypto@v0.38.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-k8s-metrics-server:v0.8.1-build20260413 false RKE2 v1.33.11 metrics-server golang.org/x/crypto@v0.38.0 CVE-2025-58181 none not affected vulnerable code not present gobinary
rancher/hardened-k8s-metrics-server:v0.8.1-build20260413 false RKE2 v1.33.11 metrics-server google.golang.org/grpc@v1.72.0 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-apiserver github.com/opencontainers/selinux@v1.11.1 CVE-2025-52881 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-apiserver go.opentelemetry.io/otel/sdk@v1.33.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-apiserver go.opentelemetry.io/otel/sdk@v1.33.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-apiserver golang.org/x/crypto@v0.36.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-apiserver golang.org/x/crypto@v0.36.0 CVE-2025-58181 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-apiserver google.golang.org/grpc@v1.68.1 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-controller-manager github.com/opencontainers/selinux@v1.11.1 CVE-2025-52881 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-controller-manager go.opentelemetry.io/otel/sdk@v1.33.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-controller-manager go.opentelemetry.io/otel/sdk@v1.33.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-controller-manager golang.org/x/crypto@v0.36.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-controller-manager golang.org/x/crypto@v0.36.0 CVE-2025-58181 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-controller-manager google.golang.org/grpc@v1.68.1 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-proxy go.opentelemetry.io/otel/sdk@v1.33.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-proxy go.opentelemetry.io/otel/sdk@v1.33.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-proxy golang.org/x/crypto@v0.36.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-proxy golang.org/x/crypto@v0.36.0 CVE-2025-58181 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-proxy google.golang.org/grpc@v1.68.1 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-scheduler go.opentelemetry.io/otel/sdk@v1.33.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-scheduler go.opentelemetry.io/otel/sdk@v1.33.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-scheduler golang.org/x/crypto@v0.36.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-scheduler golang.org/x/crypto@v0.36.0 CVE-2025-58181 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kube-scheduler google.golang.org/grpc@v1.68.1 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kubelet github.com/opencontainers/selinux@v1.11.1 CVE-2025-52881 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kubelet go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful@v0.42.0 CVE-2023-45142 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kubelet go.opentelemetry.io/otel/sdk@v1.33.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kubelet go.opentelemetry.io/otel/sdk@v1.33.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kubelet golang.org/x/crypto@v0.36.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kubelet golang.org/x/crypto@v0.36.0 CVE-2025-58181 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.33.11-rke2r1-build20260416 false RKE2 v1.33.11 usr/local/bin/kubelet google.golang.org/grpc@v1.68.1 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/hardened-snapshot-controller:v8.5.0-build20260410 false RKE2 v1.33.11 snapshot-controller go.opentelemetry.io/otel/sdk@v1.40.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-snapshot-controller:v8.5.0-build20260410 false RKE2 v1.33.11 snapshot-controller google.golang.org/grpc@v1.78.0 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/klipper-helm:v0.9.17-build20260422 false RKE2 v1.33.11 home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis google.golang.org/grpc@v1.72.2 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/klipper-helm:v0.9.17-build20260422 false RKE2 v1.33.11 home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status google.golang.org/grpc@v1.72.2 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/klipper-helm:v0.9.17-build20260422 false RKE2 v1.33.11 usr/bin/helm google.golang.org/grpc@v1.72.2 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/rke2-cloud-provider:v1.33.11-0.20260415182038-2566e39d309b-build20260416 false RKE2 v1.33.11 usr/local/bin/rke2-cloud-provider google.golang.org/grpc@v1.72.1 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/containerd github.com/docker/cli@v29.1.5+incompatible CVE-2025-15558 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/containerd github.com/docker/docker@v27.3.1+incompatible CVE-2026-34040 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/containerd go.opentelemetry.io/otel/sdk@v1.38.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/containerd go.opentelemetry.io/otel/sdk@v1.38.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/containerd google.golang.org/grpc@v1.78.0 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/containerd-shim-runc-v2 google.golang.org/grpc@v1.78.0 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/crictl github.com/buger/jsonparser@v1.1.1 CVE-2026-32285 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/crictl github.com/docker/docker@v27.1.1+incompatible CVE-2026-34040 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/crictl go.opentelemetry.io/otel/sdk@v1.35.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/crictl go.opentelemetry.io/otel/sdk@v1.35.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/crictl google.golang.org/grpc@v1.72.0 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/ctr google.golang.org/grpc@v1.78.0 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/kubelet github.com/opencontainers/selinux@v1.11.1 CVE-2025-52881 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/kubelet go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful@v0.42.0 CVE-2023-45142 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/kubelet go.opentelemetry.io/otel/sdk@v1.33.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/kubelet go.opentelemetry.io/otel/sdk@v1.33.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/kubelet golang.org/x/crypto@v0.36.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/kubelet golang.org/x/crypto@v0.36.0 CVE-2025-58181 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.33.11-rke2r1 false RKE2 v1.33.11 bin/kubelet google.golang.org/grpc@v1.68.1 CVE-2026-33186 none not affected vulnerable code not present gobinary