@@ -477,31 +477,31 @@ Scanning local image tarball "./testdata/test-python-empty.tar"
477477
478478Container Scanning Result (Debian GNU/Linux 10 (buster)):
479479Total 14 packages affected by 24 known vulnerabilities (0 Critical, 6 High, 4 Medium, 0 Low, 14 Unknown) from 2 ecosystems.
480- 24 vulnerabilities can be fixed.
480+ 22 vulnerabilities can be fixed.
481481
482482
483483PyPI
484- +---------------------------------------------------------------------------------------------+
485- | Source:artifact:/usr/local/lib/python3.9/ensurepip/_bundled/pip-23.0.1-py3-none-any.whl |
486- +---------+-------------------+---------------+------------+------------------+---------------+
487- | PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
488- +---------+-------------------+---------------+------------+------------------+---------------+
489- | pip | 23.0.1 | Fix Available | 2 | # 7 Layer | python |
490- +---------+-------------------+---------------+------------+------------------+---------------+
484+ +------------------------------------------------------------------------------------------------------- +
485+ | Source:artifact:/usr/local/lib/python3.9/ensurepip/_bundled/pip-23.0.1-py3-none-any.whl |
486+ +---------+-------------------+------------------------- +------------+------------------+---------------+
487+ | PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
488+ +---------+-------------------+------------------------- +------------+------------------+---------------+
489+ | pip | 23.0.1 | Partial fixes Available | 2 | # 7 Layer | python |
490+ +---------+-------------------+------------------------- +------------+------------------+---------------+
491491+------------------------------------------------------------------------------------------------+
492492| Source:artifact:/usr/local/lib/python3.9/ensurepip/_bundled/setuptools-58.1.0-py3-none-any.whl |
493493+------------+-------------------+---------------+------------+------------------+---------------+
494494| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
495495+------------+-------------------+---------------+------------+------------------+---------------+
496496| setuptools | 58.1.0 | Fix Available | 3 | # 7 Layer | python |
497497+------------+-------------------+---------------+------------+------------------+---------------+
498- +---------------------------------------------------------------------------------------------+
499- | Source:artifact:/usr/local/lib/python3.9/site-packages/pip-23.0.1.dist-info/METADATA |
500- +---------+-------------------+---------------+------------+------------------+---------------+
501- | PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
502- +---------+-------------------+---------------+------------+------------------+---------------+
503- | pip | 23.0.1 | Fix Available | 2 | # 13 Layer | python |
504- +---------+-------------------+---------------+------------+------------------+---------------+
498+ +------------------------------------------------------------------------------------------------------- +
499+ | Source:artifact:/usr/local/lib/python3.9/site-packages/pip-23.0.1.dist-info/METADATA |
500+ +---------+-------------------+------------------------- +------------+------------------+---------------+
501+ | PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
502+ +---------+-------------------+------------------------- +------------+------------------+---------------+
503+ | pip | 23.0.1 | Partial fixes Available | 2 | # 13 Layer | python |
504+ +---------+-------------------+------------------------- +------------+------------------+---------------+
505505+------------------------------------------------------------------------------------------------+
506506| Source:artifact:/usr/local/lib/python3.9/site-packages/setuptools-58.1.0.dist-info/METADATA |
507507+------------+-------------------+---------------+------------+------------------+---------------+
@@ -541,17 +541,17 @@ Scanning local image tarball "./testdata/test-python-full.tar"
541541
542542Container Scanning Result (Debian GNU/Linux 10 (buster)):
543543Total 19 packages affected by 42 known vulnerabilities (0 Critical, 13 High, 14 Medium, 0 Low, 15 Unknown) from 2 ecosystems.
544- 42 vulnerabilities can be fixed.
544+ 40 vulnerabilities can be fixed.
545545
546546
547547PyPI
548- +---------------------------------------------------------------------------------------------+
549- | Source:artifact:/usr/local/lib/python3.9/ensurepip/_bundled/pip-23.0.1-py3-none-any.whl |
550- +---------+-------------------+---------------+------------+------------------+---------------+
551- | PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
552- +---------+-------------------+---------------+------------+------------------+---------------+
553- | pip | 23.0.1 | Fix Available | 2 | # 7 Layer | python |
554- +---------+-------------------+---------------+------------+------------------+---------------+
548+ +------------------------------------------------------------------------------------------------------- +
549+ | Source:artifact:/usr/local/lib/python3.9/ensurepip/_bundled/pip-23.0.1-py3-none-any.whl |
550+ +---------+-------------------+------------------------- +------------+------------------+---------------+
551+ | PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
552+ +---------+-------------------+------------------------- +------------+------------------+---------------+
553+ | pip | 23.0.1 | Partial fixes Available | 2 | # 7 Layer | python |
554+ +---------+-------------------+------------------------- +------------+------------------+---------------+
555555+------------------------------------------------------------------------------------------------+
556556| Source:artifact:/usr/local/lib/python3.9/ensurepip/_bundled/setuptools-58.1.0-py3-none-any.whl |
557557+------------+-------------------+---------------+------------+------------------+---------------+
@@ -580,13 +580,13 @@ PyPI
580580+---------+-------------------+---------------+------------+------------------+---------------+
581581| idna | 2.7 | Fix Available | 1 | # 17 Layer | -- |
582582+---------+-------------------+---------------+------------+------------------+---------------+
583- +---------------------------------------------------------------------------------------------+
584- | Source:artifact:/usr/local/lib/python3.9/site-packages/pip-23.0.1.dist-info/METADATA |
585- +---------+-------------------+---------------+------------+------------------+---------------+
586- | PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
587- +---------+-------------------+---------------+------------+------------------+---------------+
588- | pip | 23.0.1 | Fix Available | 2 | # 13 Layer | python |
589- +---------+-------------------+---------------+------------+------------------+---------------+
583+ +------------------------------------------------------------------------------------------------------- +
584+ | Source:artifact:/usr/local/lib/python3.9/site-packages/pip-23.0.1.dist-info/METADATA |
585+ +---------+-------------------+------------------------- +------------+------------------+---------------+
586+ | PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
587+ +---------+-------------------+------------------------- +------------+------------------+---------------+
588+ | pip | 23.0.1 | Partial fixes Available | 2 | # 13 Layer | python |
589+ +---------+-------------------+------------------------- +------------+------------------+---------------+
590590+----------------------------------------------------------------------------------------------+
591591| Source:artifact:/usr/local/lib/python3.9/site-packages/requests-2.20.0.dist-info/METADATA |
592592+----------+-------------------+---------------+------------+------------------+---------------+
@@ -1900,11 +1900,11 @@ Scanning local image tarball "./testdata/test-python-full.tar"
19001900 }
19011901 },
19021902 " vulnerabilities" : [
1903- " CVE-2024-12797" ,
1904- " CVE-2024-13176" ,
1905- " CVE-2024-5535" ,
1906- " CVE-2024-6119" ,
1907- " CVE-2024-9143"
1903+ " ALPINE- CVE-2024-12797" ,
1904+ " ALPINE- CVE-2024-13176" ,
1905+ " ALPINE- CVE-2024-5535" ,
1906+ " ALPINE- CVE-2024-6119" ,
1907+ " ALPINE- CVE-2024-9143"
19081908 ],
19091909 " groups" : 5
19101910 },
@@ -1920,11 +1920,11 @@ Scanning local image tarball "./testdata/test-python-full.tar"
19201920 }
19211921 },
19221922 " vulnerabilities" : [
1923- " CVE-2024-12797" ,
1924- " CVE-2024-13176" ,
1925- " CVE-2024-5535" ,
1926- " CVE-2024-6119" ,
1927- " CVE-2024-9143"
1923+ " ALPINE- CVE-2024-12797" ,
1924+ " ALPINE- CVE-2024-13176" ,
1925+ " ALPINE- CVE-2024-5535" ,
1926+ " ALPINE- CVE-2024-6119" ,
1927+ " ALPINE- CVE-2024-9143"
19281928 ],
19291929 " groups" : 5
19301930 },
@@ -1940,7 +1940,7 @@ Scanning local image tarball "./testdata/test-python-full.tar"
19401940 }
19411941 },
19421942 " vulnerabilities" : [
1943- " CVE-2025-26519"
1943+ " ALPINE- CVE-2025-26519"
19441944 ],
19451945 " groups" : 1
19461946 },
@@ -1956,7 +1956,7 @@ Scanning local image tarball "./testdata/test-python-full.tar"
19561956 }
19571957 },
19581958 " vulnerabilities" : [
1959- " CVE-2025-26519"
1959+ " ALPINE- CVE-2025-26519"
19601960 ],
19611961 " groups" : 1
19621962 },
@@ -2075,7 +2075,7 @@ Scanning local image tarball "./testdata/test-go-binary.tar"
20752075 }
20762076 },
20772077 " vulnerabilities" : [
2078- " CVE-2021-36159"
2078+ " ALPINE- CVE-2021-36159"
20792079 ],
20802080 " groups" : 1
20812081 }
@@ -2175,7 +2175,7 @@ Scanning local image tarball "./testdata/test-alpine-etcshadow.tar"
21752175 }
21762176 },
21772177 " vulnerabilities" : [
2178- " CVE-2021-36159"
2178+ " ALPINE- CVE-2021-36159"
21792179 ],
21802180 " groups" : 1
21812181 }
@@ -2275,10 +2275,10 @@ Scanning local image tarball "./testdata/test-alpine-etcshadow.tar"
22752275 }
22762276 },
22772277 " vulnerabilities" : [
2278- " CVE-2023-42363" ,
2279- " CVE-2023-42364" ,
2280- " CVE-2023-42365" ,
2281- " CVE-2023-42366"
2278+ " ALPINE- CVE-2023-42363" ,
2279+ " ALPINE- CVE-2023-42364" ,
2280+ " ALPINE- CVE-2023-42365" ,
2281+ " ALPINE- CVE-2023-42366"
22822282 ],
22832283 " groups" : 4
22842284 },
@@ -2294,10 +2294,10 @@ Scanning local image tarball "./testdata/test-alpine-etcshadow.tar"
22942294 }
22952295 },
22962296 " vulnerabilities" : [
2297- " CVE-2023-42363" ,
2298- " CVE-2023-42364" ,
2299- " CVE-2023-42365" ,
2300- " CVE-2023-42366"
2297+ " ALPINE- CVE-2023-42363" ,
2298+ " ALPINE- CVE-2023-42364" ,
2299+ " ALPINE- CVE-2023-42365" ,
2300+ " ALPINE- CVE-2023-42366"
23012301 ],
23022302 " groups" : 4
23032303 },
@@ -2313,13 +2313,13 @@ Scanning local image tarball "./testdata/test-alpine-etcshadow.tar"
23132313 }
23142314 },
23152315 " vulnerabilities" : [
2316- " CVE-2024-13176" ,
2317- " CVE-2024-2511" ,
2318- " CVE-2024-4603" ,
2319- " CVE-2024-4741" ,
2320- " CVE-2024-5535" ,
2321- " CVE-2024-6119" ,
2322- " CVE-2024-9143"
2316+ " ALPINE- CVE-2024-13176" ,
2317+ " ALPINE- CVE-2024-2511" ,
2318+ " ALPINE- CVE-2024-4603" ,
2319+ " ALPINE- CVE-2024-4741" ,
2320+ " ALPINE- CVE-2024-5535" ,
2321+ " ALPINE- CVE-2024-6119" ,
2322+ " ALPINE- CVE-2024-9143"
23232323 ],
23242324 " groups" : 7
23252325 },
@@ -2335,13 +2335,13 @@ Scanning local image tarball "./testdata/test-alpine-etcshadow.tar"
23352335 }
23362336 },
23372337 " vulnerabilities" : [
2338- " CVE-2024-13176" ,
2339- " CVE-2024-2511" ,
2340- " CVE-2024-4603" ,
2341- " CVE-2024-4741" ,
2342- " CVE-2024-5535" ,
2343- " CVE-2024-6119" ,
2344- " CVE-2024-9143"
2338+ " ALPINE- CVE-2024-13176" ,
2339+ " ALPINE- CVE-2024-2511" ,
2340+ " ALPINE- CVE-2024-4603" ,
2341+ " ALPINE- CVE-2024-4741" ,
2342+ " ALPINE- CVE-2024-5535" ,
2343+ " ALPINE- CVE-2024-6119" ,
2344+ " ALPINE- CVE-2024-9143"
23452345 ],
23462346 " groups" : 7
23472347 },
@@ -2357,10 +2357,10 @@ Scanning local image tarball "./testdata/test-alpine-etcshadow.tar"
23572357 }
23582358 },
23592359 " vulnerabilities" : [
2360- " CVE-2023-42363" ,
2361- " CVE-2023-42364" ,
2362- " CVE-2023-42365" ,
2363- " CVE-2023-42366"
2360+ " ALPINE- CVE-2023-42363" ,
2361+ " ALPINE- CVE-2023-42364" ,
2362+ " ALPINE- CVE-2023-42365" ,
2363+ " ALPINE- CVE-2023-42366"
23642364 ],
23652365 " groups" : 4
23662366 }
0 commit comments