Skip to content

Conversation

@sysdig-aws-au-1
Copy link

Sysdig opened the pull request on behalf of Andrew Dean.

Sysdig analysis found violations for workload "carts-db"

The PR includes remediations for the following attributes: "SecurityContext.RunAsUser"


Remediated Attribute: "SecurityContext.RunAsUser"
  • Severity: 🔴 High
  • Source:
    • Container: carts-db
  • Violated Control:
    • Container with RunAsUser root or not set
      Running containers as root can result in pod escape
  • Change Impact: The container will run the image with the defined user.

The following policy requirements applied to this resource include the above control:

Requirement Policy
5.2.7 Minimize the admission of root containers CIS Kubernetes V1.23 Benchmark

…or control "Container with RunAsUser root or not set"
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant