You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
A golang update and an alpine update could potentially fix these issues. They may not all be relevant. If so, please let us know and we will change their priority internally.
Thanks, Frederic
The text was updated successfully, but these errors were encountered:
Hi @louis-launchdarkly, thank you for the quick update. v7.3.2 fixes most of the issue except CVE-2023-3817. I believe it is ok because CVE-2023-3817 doesn't appear to be "official" yet as it is "undergoing analysis and not all information is available"
If a fix is available any time soon, we will open another gh issue as we are tracking it internally.
You are welcome. If CVE-2023-3817 becomes a real issue, the process would be the same - we will wait for Alpine to release a newer image and bump. Just to reassure you, Relay Proxy itself does not use OpenSSL, so the risk of using the ld-relay docker image will be low.
Hello,
It appears ld-relay:7.2.5 and ld-relay:7.3.1 contains the following vulnerabilities as detected by our security scanning tool :
A golang update and an alpine update could potentially fix these issues. They may not all be relevant. If so, please let us know and we will change their priority internally.
Thanks, Frederic
The text was updated successfully, but these errors were encountered: