False Positive CVE-2022-24903 reported on rsyslog 8.24.0-57.0.3.el7_9.3 against Oracle Linux 7 #4662
Closed
navzen2000
started this conversation in
False Detection
Replies: 2 comments
-
@navzen2000 thanks for the report! there is a discrepancy between |
Beta Was this translation helpful? Give feedback.
0 replies
-
closed in favor #4662 |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
IDs
CVE-2022-24903
Description
Trivy reported CVE-2022-24903 against rsyslog-8.24.0-57.0.3.el7_9.3
As per ELSA-2022-4803, CVE-2022-24903 is already fixed in
rsyslog-8.24.0-57.0.1.el7_9.3.x86_64.rpm
Reproduction Steps
Target
Container Image
Scanner
Vulnerability
Target OS
Oracle Linux 7
Debug Output
Version
Checklist
-f json
that shows data sources and confirmed that the security advisory in data sources was correctBeta Was this translation helpful? Give feedback.
All reactions