Skip to content

crane: Bump Go version from 1.18 to 1.19/1.20 #1785

Closed
@Bjyothi2023

Description

@Bjyothi2023

Vulnerability scanner over Crane binary is reporting multiple vulnerabilities because of Go version 1.18.10 and the fix is available in 1.20.5, 1.19.10

List of vulnerabilities reported are :
CVE-2023-39533
CVE-2023-29405
CVE-2023-24539
CVE-2023-24536
CVE-2023-29400
CVE-2023-24538
CVE-2022-41723
CVE-2023-29404
CVE-2023-29403
CVE-2023-24540
CVE-2023-29406
CVE-2023-24532
CVE-2023-29409

Crane version used: v0.16.1

Resolution: Bump Go version to either 1.20/1.19

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions