CVE-2021-29063 detected in version 1.3.0
of mpmath
#4504
Replies: 1 comment 2 replies
-
It also has According to the OSV spec, a version is considered if it lies within any one of the ranges.
|
Beta Was this translation helpful? Give feedback.
-
IDs
CVE-2021-29063
Description
Trivy detects CVE-2021-29063 in version
1.3.0
ofmpmath
:The aquasec vulnerability page says the vulnerability only exists in versions up to
1.2.1
. The release notes for1.3.0
say:The datasource for trivy is the Python Packaging Advisory Database. The database correctly shows
1.2.1
as the last affected version.Trivy should not report
1.3.0
as vulnerable.Reproduction Steps
Target
Filesystem
Scanner
Vulnerability
Target OS
No response
Debug Output
Version
Checklist
-f json
that shows data sources and confirmed that the security advisory in data sources was correctBeta Was this translation helpful? Give feedback.
All reactions