Skip to content

Security Issue: Image should be created with a non-root user #333

Open
@Rakesh2048

Description

@Rakesh2048

Image vulnerability scan tool has flagged following images

registry.k8s.io/sig-storage/csi-resizer:v1.12.0
registry.k8s.io/sig-storage/livenessprobe:v2.11.0
registry.k8s.io/sig-storage/csi-attacher:v4.7.0
registry.k8s.io/sig-storage/csi-provisioner:v5.1.0

Issue Details:

Scan Type: Image scan
Scan Result: High Severity
CIS Docker Standard: CIS_Docker_v1.5.0 - 4.1
Impact: Running containers as the root user increases the risk of privilege escalation in the event of a security breach.

What is the ETA for the fix ?

Metadata

Metadata

Assignees

No one assigned

    Labels

    lifecycle/rottenDenotes an issue or PR that has aged beyond stale and will be auto-closed.

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions