Twistlock scan on Airflow 2.5.1 Docker image warns about NVD -
CVE-2021-46848 (nist.gov) <https://nvd.nist.gov/vuln/detail/CVE-2021-46848>.

However, according to the following link:

Information on source package libtasn1-6 (debian.org)
<https://security-tracker.debian.org/tracker/source-package/libtasn1-6>,

this issue has been fixed in bullseye Debian release, which is what Docker
is using (as confirmed by the /etc/os-release file in the Docker image.

So, am I correct in concluding that CVE-2021-46848 is *not* an issue with
Airflow 2.5.1?

Thanks.

Reply via email to