Skip to content

Commit

Permalink
Ignore CVE-2023-3640
Browse files Browse the repository at this point in the history
This is quite an edge case CVE. Its risk is further reduced by the fact
our container runs as root (meaning no privilege escalation in the first
place). It's also a kernel-level thing, so not really relevant in a
container.
  • Loading branch information
ellsclytn committed Oct 12, 2023
1 parent 1f20381 commit caeab8f
Showing 1 changed file with 1 addition and 0 deletions.
1 change: 1 addition & 0 deletions .buildkite/pipeline.deploy.yml
Original file line number Diff line number Diff line change
Expand Up @@ -33,6 +33,7 @@ steps:
- CVE-2023-2953 # openldap 2.5.13+dfsg-5
- CVE-2023-31484 # perl 5.36.0-7
- CVE-2023-24329 # python3.11 3.11.2-6
- CVE-2023-3640 # linux 6.1.55-1

# If the current user is part of the deploy team, then wait for everything to
# finish before deploying
Expand Down

0 comments on commit caeab8f

Please sign in to comment.