GoogleCloudPlatform / GoogleCloudPlatform/esp-v2
Zlib Memory Corruption Vulnerability (CVE-2018-25032)
Open
- Dominant language
- Go
- Stars
- 307
- Forks
- 185
- Avg merge
- 14h 45m
- Merged PRs (30d)
- 6
Description
Is it possible to up the base alpine image version as the current one has old Zlib which has reported security vulnerability CVE-2018-25032?
As per alpine security tracker this got fixed in 3.15: https://security.alpinelinux.org/vuln/CVE-2018-25032
I am currently using ESP-V2 and I can see that we have this issue in current version.

Contributor guide
Assessment
This issue has not been assessed yet.