SUSE Rancher - RKE2 v1.35.0 version - CVE Scans - 2026-01-21

How to use this page

Search:

Image Mirrored Release Binary/Package Dependency Vulnerability ID (CVE) Severity Status Justification (for status not affected) Type (language or OS)
rancher/hardened-coredns:v1.13.1-build20251204 false RKE2 v1.35.0 coredns github.com/coredns/coredns@v1.13.1 CVE-2025-68151
HIGH*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
rancher/hardened-coredns:v1.13.1-build20251204 false RKE2 v1.35.0 coredns github.com/expr-lang/expr@v1.17.6 CVE-2025-68156 HIGH affected gobinary
rancher/hardened-dns-node-cache:1.26.7-build20251204 false RKE2 v1.35.0 node-cache github.com/coredns/coredns@v1.13.1 CVE-2025-68151
HIGH*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
rancher/hardened-kubernetes:v1.35.0-rke2r1-build20251218 false RKE2 v1.35.0 libglib-2_0-0 libglib-2_0-0@2.78.6-150600.4.22.1 SUSE-SU-2026:0018-1 HIGH affected sles
rancher/mirrored-ingress-nginx-kube-webhook-certgen:v1.6.5 true RKE2 v1.35.0 kube-webhook-certgen stdlib@v1.25.4 CVE-2025-61729 HIGH affected gobinary
rancher/mirrored-ingress-nginx-kube-webhook-certgen:v1.6.5 true RKE2 v1.35.0 kube-webhook-certgen stdlib@v1.25.4 CVE-2025-61727
HIGH*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
rancher/mirrored-sig-storage-snapshot-controller:v8.2.0 true RKE2 v1.35.0 snapshot-controller stdlib@v1.23.1 CVE-2025-61729 HIGH affected gobinary
rancher/mirrored-sig-storage-snapshot-controller:v8.2.0 true RKE2 v1.35.0 snapshot-controller stdlib@v1.23.1 CVE-2025-47912
HIGH*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
rancher/mirrored-sig-storage-snapshot-controller:v8.2.0 true RKE2 v1.35.0 snapshot-controller stdlib@v1.23.1 CVE-2025-58188
HIGH*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
rancher/mirrored-sig-storage-snapshot-controller:v8.2.0 true RKE2 v1.35.0 snapshot-controller stdlib@v1.23.1 CVE-2025-61727
HIGH*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
rancher/nginx-ingress-controller:v1.13.5-hardened2 false RKE2 v1.35.0 glib2-tools glib2-tools@2.78.6-150600.4.22.1 SUSE-SU-2026:0018-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.13.5-hardened2 false RKE2 v1.35.0 libgio-2_0-0 libgio-2_0-0@2.78.6-150600.4.22.1 SUSE-SU-2026:0018-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.13.5-hardened2 false RKE2 v1.35.0 libglib-2_0-0 libglib-2_0-0@2.78.6-150600.4.22.1 SUSE-SU-2026:0018-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.13.5-hardened2 false RKE2 v1.35.0 libgmodule-2_0-0 libgmodule-2_0-0@2.78.6-150600.4.22.1 SUSE-SU-2026:0018-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.13.5-hardened2 false RKE2 v1.35.0 libgobject-2_0-0 libgobject-2_0-0@2.78.6-150600.4.22.1 SUSE-SU-2026:0018-1 HIGH affected sles
rancher/rke2-cloud-provider:v1.35.0-rc1.0.20251218152248-a6c6cd15c0c4-build20251219 false RKE2 v1.35.0 usr/local/bin/rke2-cloud-provider github.com/expr-lang/expr@v1.17.6 CVE-2025-68156 HIGH affected gobinary
rancher/rke2-runtime:v1.35.0-rke2r1 false RKE2 v1.35.0 bin/containerd stdlib@v1.24.9 CVE-2025-61729 HIGH affected gobinary
rancher/rke2-runtime:v1.35.0-rke2r1 false RKE2 v1.35.0 bin/containerd stdlib@v1.24.9 CVE-2025-61727
HIGH*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
rancher/rke2-runtime:v1.35.0-rke2r1 false RKE2 v1.35.0 bin/containerd-shim-runc-v2 stdlib@v1.24.9 CVE-2025-61729 HIGH affected gobinary
rancher/rke2-runtime:v1.35.0-rke2r1 false RKE2 v1.35.0 bin/containerd-shim-runc-v2 stdlib@v1.24.9 CVE-2025-61727
HIGH*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
rancher/rke2-runtime:v1.35.0-rke2r1 false RKE2 v1.35.0 bin/ctr stdlib@v1.24.9 CVE-2025-61729 HIGH affected gobinary
rancher/rke2-runtime:v1.35.0-rke2r1 false RKE2 v1.35.0 bin/ctr stdlib@v1.24.9 CVE-2025-61727
HIGH*Severity modified based on SUSE's CVE database and CVSS rating
affected gobinary
rancher/hardened-addon-resizer:1.8.23-build20251204 false RKE2 v1.35.0 pod_nanny golang.org/x/net@v0.33.0 CVE-2025-22870 none not affected vulnerable code not present gobinary
rancher/hardened-addon-resizer:1.8.23-build20251204 false RKE2 v1.35.0 pod_nanny golang.org/x/net@v0.33.0 CVE-2025-22872 none not affected vulnerable code not present gobinary
rancher/hardened-addon-resizer:1.8.23-build20251204 false RKE2 v1.35.0 pod_nanny golang.org/x/oauth2@v0.24.0 CVE-2025-22868 none not affected vulnerable code not present gobinary
rancher/hardened-calico:v3.31.2-build20251205 false RKE2 v1.35.0 calicoctl golang.org/x/crypto@v0.43.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-calico:v3.31.2-build20251205 false RKE2 v1.35.0 calicoctl golang.org/x/crypto@v0.43.0 CVE-2025-58181 none not affected vulnerable code not present gobinary
rancher/hardened-calico:v3.31.2-build20251205 false RKE2 v1.35.0 opt/cni/bin/calico golang.org/x/crypto@v0.43.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-calico:v3.31.2-build20251205 false RKE2 v1.35.0 opt/cni/bin/calico golang.org/x/crypto@v0.43.0 CVE-2025-58181 none not affected vulnerable code not present gobinary
rancher/hardened-calico:v3.31.2-build20251205 false RKE2 v1.35.0 opt/cni/bin/calico-ipam golang.org/x/crypto@v0.43.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-calico:v3.31.2-build20251205 false RKE2 v1.35.0 opt/cni/bin/calico-ipam golang.org/x/crypto@v0.43.0 CVE-2025-58181 none not affected vulnerable code not present gobinary
rancher/hardened-calico:v3.31.2-build20251205 false RKE2 v1.35.0 opt/cni/bin/tap github.com/opencontainers/selinux@v1.12.0 CVE-2025-52881 none not affected vulnerable code not in execute path gobinary
rancher/hardened-calico:v3.31.2-build20251205 false RKE2 v1.35.0 usr/bin/calico-node golang.org/x/crypto@v0.43.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-calico:v3.31.2-build20251205 false RKE2 v1.35.0 usr/bin/calico-node golang.org/x/crypto@v0.43.0 CVE-2025-58181 none not affected vulnerable code not present gobinary
rancher/hardened-calico:v3.31.2-build20251205 false RKE2 v1.35.0 usr/bin/kube-controllers golang.org/x/crypto@v0.43.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-calico:v3.31.2-build20251205 false RKE2 v1.35.0 usr/bin/kube-controllers golang.org/x/crypto@v0.43.0 CVE-2025-58181 none not affected vulnerable code not present gobinary
rancher/hardened-cluster-autoscaler:v1.10.2-build20251204 false RKE2 v1.35.0 cluster-proportional-autoscaler golang.org/x/net@v0.36.0 CVE-2025-22872 none not affected vulnerable code not present gobinary
rancher/hardened-cluster-autoscaler:v1.10.2-build20251204 false RKE2 v1.35.0 cluster-proportional-autoscaler golang.org/x/oauth2@v0.23.0 CVE-2025-22868 none not affected vulnerable code not present gobinary
rancher/hardened-coredns:v1.13.1-build20251204 false RKE2 v1.35.0 coredns github.com/quic-go/quic-go@v0.55.0 CVE-2025-64702 none not affected vulnerable code not present gobinary
rancher/hardened-coredns:v1.13.1-build20251204 false RKE2 v1.35.0 coredns golang.org/x/crypto@v0.42.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-coredns:v1.13.1-build20251204 false RKE2 v1.35.0 coredns golang.org/x/crypto@v0.42.0 CVE-2025-58181 none not affected vulnerable code not present gobinary
rancher/hardened-dns-node-cache:1.26.7-build20251204 false RKE2 v1.35.0 node-cache github.com/quic-go/quic-go@v0.55.0 CVE-2025-64702 none not affected vulnerable code not present gobinary
rancher/hardened-dns-node-cache:1.26.7-build20251204 false RKE2 v1.35.0 node-cache golang.org/x/crypto@v0.43.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-dns-node-cache:1.26.7-build20251204 false RKE2 v1.35.0 node-cache golang.org/x/crypto@v0.43.0 CVE-2025-58181 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.6-k3s1-build20251210 false RKE2 v1.35.0 usr/local/bin/etcd golang.org/x/crypto@v0.36.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.6-k3s1-build20251210 false RKE2 v1.35.0 usr/local/bin/etcd golang.org/x/crypto@v0.36.0 CVE-2025-58181 none not affected vulnerable code not present gobinary
rancher/hardened-flannel:v0.27.4-build20251204 false RKE2 v1.35.0 opt/bin/flanneld golang.org/x/crypto@v0.36.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-flannel:v0.27.4-build20251204 false RKE2 v1.35.0 opt/bin/flanneld golang.org/x/crypto@v0.36.0 CVE-2025-58181 none not affected vulnerable code not present gobinary
rancher/hardened-k8s-metrics-server:v0.8.0-build20251204 false RKE2 v1.35.0 metrics-server golang.org/x/crypto@v0.38.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/hardened-k8s-metrics-server:v0.8.0-build20251204 false RKE2 v1.35.0 metrics-server golang.org/x/crypto@v0.38.0 CVE-2025-58181 none not affected vulnerable code not present gobinary
rancher/mirrored-sig-storage-snapshot-controller:v8.2.0 true RKE2 v1.35.0 snapshot-controller golang.org/x/net@v0.31.0 CVE-2025-22870 none not affected vulnerable code not present gobinary
rancher/mirrored-sig-storage-snapshot-controller:v8.2.0 true RKE2 v1.35.0 snapshot-controller golang.org/x/net@v0.31.0 CVE-2025-22872 none not affected vulnerable code not present gobinary
rancher/mirrored-sig-storage-snapshot-controller:v8.2.0 true RKE2 v1.35.0 snapshot-controller golang.org/x/oauth2@v0.24.0 CVE-2025-22868 none not affected vulnerable code not present gobinary
rancher/mirrored-sig-storage-snapshot-controller:v8.2.0 true RKE2 v1.35.0 snapshot-controller stdlib@v1.23.1 CVE-2025-47907 none not affected vulnerable code not in execute path gobinary
rancher/mirrored-sig-storage-snapshot-controller:v8.2.0 true RKE2 v1.35.0 snapshot-controller stdlib@v1.23.1 CVE-2025-58183 none not affected vulnerable code not present gobinary
rancher/mirrored-sig-storage-snapshot-controller:v8.2.0 true RKE2 v1.35.0 snapshot-controller stdlib@v1.23.1 CVE-2025-61725 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.35.0-rke2r1 false RKE2 v1.35.0 bin/containerd github.com/containerd/containerd/v2@v2.1.5-k3s1 CVE-2024-25621 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.35.0-rke2r1 false RKE2 v1.35.0 bin/containerd github.com/opencontainers/selinux@v1.12.0 CVE-2025-52881 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.35.0-rke2r1 false RKE2 v1.35.0 bin/containerd golang.org/x/crypto@v0.36.0 CVE-2025-47914 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.35.0-rke2r1 false RKE2 v1.35.0 bin/containerd golang.org/x/crypto@v0.36.0 CVE-2025-58181 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.35.0-rke2r1 false RKE2 v1.35.0 bin/containerd-shim-runc-v2 github.com/containerd/containerd/v2@v2.1.5-k3s1 CVE-2024-25621 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.35.0-rke2r1 false RKE2 v1.35.0 bin/ctr github.com/containerd/containerd/v2@v2.1.5-k3s1 CVE-2024-25621 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.35.0-rke2r1 false RKE2 v1.35.0 bin/ctr github.com/opencontainers/selinux@v1.12.0 CVE-2025-52881 none not affected vulnerable code not in execute path gobinary