CVE-2019-8457 - False positive detection #5771
Closed
cgargas
started this conversation in
False Detection
Replies: 1 comment
-
Hello @cgargas
Debian 11 is "bullseye" - https://www.debian.org/News/2021/20210814.en.html If you downloaded and installed version from another version of Debian, Trivy will not be able to detect this. Regards, Dmitriy |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
IDs
CVE-2019-8457
Description
I have the results of a container image scan stating that the version of libdb5.3 that I'm running in a Debian container is vulnerable to CVE-2019-8457. The running version is 5.3.28+dfsg2-4 which has been reported as fixed per their security tracker: https://security-tracker.debian.org/tracker/CVE-2019-8457
Reproduction Steps
Target
Container Image
Scanner
Vulnerability
Target OS
Debian 11.8
Debug Output
Version
Checklist
-f json
that shows data sources and confirmed that the security advisory in data sources was correctBeta Was this translation helpful? Give feedback.
All reactions