<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Issue in reported vulnerability in Prisma Cloud Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/issue-in-reported-vulnerability/m-p/464869#M451</link>
    <description>&lt;P&gt;&lt;SPAN&gt;Hi Prismacloud team,&lt;/SPAN&gt;&lt;/P&gt;&lt;DIV&gt;&lt;P&gt;We are getting below three golang vulnerabilities in all images and hosts which don't have golang installed.&lt;/P&gt;&lt;P&gt;These go vulnerabilities are reported even in all the node based docker images and also in all hosts which don’t have any jar or application related to golang.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could you please explain to us why we are getting these vulnerabilities in all hosts and images. Please refer to the screenshot attached.&lt;/P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="NSrinivasan_0-1644498597803.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/39064iD905E0ED9BEF058F/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="NSrinivasan_0-1644498597803.png" alt="NSrinivasan_0-1644498597803.png" /&gt;&lt;/span&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;CVE-2021-45046&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;CVE-2020-29652&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;CVE-2021-44716&lt;/STRONG&gt;&lt;/P&gt;&lt;/DIV&gt;</description>
    <pubDate>Thu, 10 Feb 2022 13:10:19 GMT</pubDate>
    <dc:creator>NSrinivasan</dc:creator>
    <dc:date>2022-02-10T13:10:19Z</dc:date>
    <item>
      <title>Issue in reported vulnerability</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/issue-in-reported-vulnerability/m-p/464869#M451</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hi Prismacloud team,&lt;/SPAN&gt;&lt;/P&gt;&lt;DIV&gt;&lt;P&gt;We are getting below three golang vulnerabilities in all images and hosts which don't have golang installed.&lt;/P&gt;&lt;P&gt;These go vulnerabilities are reported even in all the node based docker images and also in all hosts which don’t have any jar or application related to golang.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could you please explain to us why we are getting these vulnerabilities in all hosts and images. Please refer to the screenshot attached.&lt;/P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="NSrinivasan_0-1644498597803.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/39064iD905E0ED9BEF058F/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="NSrinivasan_0-1644498597803.png" alt="NSrinivasan_0-1644498597803.png" /&gt;&lt;/span&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;CVE-2021-45046&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;CVE-2020-29652&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;CVE-2021-44716&lt;/STRONG&gt;&lt;/P&gt;&lt;/DIV&gt;</description>
      <pubDate>Thu, 10 Feb 2022 13:10:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/issue-in-reported-vulnerability/m-p/464869#M451</guid>
      <dc:creator>NSrinivasan</dc:creator>
      <dc:date>2022-02-10T13:10:19Z</dc:date>
    </item>
    <item>
      <title>Re: Issue in reported vulnerability</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/issue-in-reported-vulnerability/m-p/464993#M453</link>
      <description>&lt;P&gt;Are you able to find the vulnerable package by searching within the "Package Info" tab?&lt;/P&gt;</description>
      <pubDate>Thu, 10 Feb 2022 20:39:52 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/issue-in-reported-vulnerability/m-p/464993#M453</guid>
      <dc:creator>david_michael</dc:creator>
      <dc:date>2022-02-10T20:39:52Z</dc:date>
    </item>
    <item>
      <title>Re: Issue in reported vulnerability</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/issue-in-reported-vulnerability/m-p/465079#M454</link>
      <description>&lt;P&gt;Let me check. Thanks for the reply.&lt;/P&gt;</description>
      <pubDate>Fri, 11 Feb 2022 04:48:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/issue-in-reported-vulnerability/m-p/465079#M454</guid>
      <dc:creator>NSrinivasan</dc:creator>
      <dc:date>2022-02-11T04:48:02Z</dc:date>
    </item>
    <item>
      <title>Re: Issue in reported vulnerability</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/issue-in-reported-vulnerability/m-p/508693#M525</link>
      <description>&lt;P&gt;Sometimes a CVE can belong to a different application, we need to understand what images they are scanning if they can give us the pull URL, we can download the image from the repo and scan it individually and see what's going on.&lt;/P&gt;</description>
      <pubDate>Wed, 13 Jul 2022 21:45:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/issue-in-reported-vulnerability/m-p/508693#M525</guid>
      <dc:creator>RPrasadi</dc:creator>
      <dc:date>2022-07-13T21:45:10Z</dc:date>
    </item>
  </channel>
</rss>

