From 8e13eee7bc49ed351d74a672ce57daf598038664 Mon Sep 17 00:00:00 2001 From: truecharts-bot Date: Sat, 2 Apr 2022 08:08:54 +0000 Subject: [PATCH] chore: Auto-update chart README [skip ci] --- charts/core/metallb/helm-values.md | 2 +- charts/incubator/linkding/CHANGELOG.md | 1 - charts/incubator/linkding/security.md | 25 +++++++++++-------------- charts/stable/heimdall/helm-values.md | 2 +- 4 files changed, 13 insertions(+), 17 deletions(-) diff --git a/charts/core/metallb/helm-values.md b/charts/core/metallb/helm-values.md index bb536a082a1..73174ecf436 100644 --- a/charts/core/metallb/helm-values.md +++ b/charts/core/metallb/helm-values.md @@ -14,6 +14,6 @@ You will, however, be able to use all values referenced in the common chart here | image.pullPolicy | string | `"IfNotPresent"` | | | image.repository | string | `"placeholder"` | | | image.tag | string | `"upstream"` | | -| metallb.configInline | object | `{}` | | +| metallb.configInline | object | `{}` | format. When configInline is used, Helm manages MetalLB's configuration ConfigMap as part of the release, and existingConfigMap is ignored. Refer to https://metallb.universe.tf/configuration/ for available options. | All Rights Reserved - The TrueCharts Project diff --git a/charts/incubator/linkding/CHANGELOG.md b/charts/incubator/linkding/CHANGELOG.md index 91986543a35..bdb49e6086b 100644 --- a/charts/incubator/linkding/CHANGELOG.md +++ b/charts/incubator/linkding/CHANGELOG.md @@ -7,4 +7,3 @@ #### Feat * Add linkding ([#2382](https://github.com/truecharts/apps/issues/2382)) - diff --git a/charts/incubator/linkding/security.md b/charts/incubator/linkding/security.md index d7a038a376c..b585c7513c0 100644 --- a/charts/incubator/linkding/security.md +++ b/charts/incubator/linkding/security.md @@ -12,9 +12,9 @@ hide: ##### Scan Results #### Chart Object: linkding/templates/common.yaml - - + + | Type | Misconfiguration ID | Check | Severity | Explaination | Links | |:----------------|:------------------:|:-----------:|:------------------:|-----------------------------------------|-----------------------------------------| | Kubernetes Security Check | KSV001 | Process can elevate its own privileges | MEDIUM |
Expand... A program inside the container can elevate its own privileges and run as root, which might give the program control over the container and node.


Container 'hostpatch' of Deployment 'RELEASE-NAME-linkding' should set 'securityContext.allowPrivilegeEscalation' to false
|
Expand...https://kubernetes.io/docs/concepts/security/pod-security-standards/#restricted
https://avd.aquasec.com/appshield/ksv001
| @@ -52,33 +52,33 @@ hide: #### Container: tccr.io/truecharts/alpine:v3.15.2@sha256:29ed3480a0ee43f7af681fed5d4fc215516abf1c41eade6938b26d8c9c2c7583 (alpine 3.15.2) - + **alpine** - + | Package | Vulnerability | Severity | Installed Version | Fixed Version | Links | |:----------------|:------------------:|:-----------:|:------------------:|:-------------:|-----------------------------------------| | zlib | CVE-2018-25032 | HIGH | 1.2.11-r3 | 1.2.12-r0 |
Expand...http://www.openwall.com/lists/oss-security/2022/03/25/2
http://www.openwall.com/lists/oss-security/2022/03/26/1
https://access.redhat.com/security/cve/CVE-2018-25032
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-25032
https://github.com/madler/zlib/commit/5c44459c3b28a9bd3283aaceab7c615f8020c531
https://github.com/madler/zlib/compare/v1.2.11...v1.2.12
https://github.com/madler/zlib/issues/605
https://nvd.nist.gov/vuln/detail/CVE-2018-25032
https://ubuntu.com/security/notices/USN-5355-1
https://ubuntu.com/security/notices/USN-5355-2
https://ubuntu.com/security/notices/USN-5359-1
https://www.openwall.com/lists/oss-security/2022/03/24/1
https://www.openwall.com/lists/oss-security/2022/03/28/1
https://www.openwall.com/lists/oss-security/2022/03/28/3
| #### Container: tccr.io/truecharts/alpine:v3.15.2@sha256:29ed3480a0ee43f7af681fed5d4fc215516abf1c41eade6938b26d8c9c2c7583 (alpine 3.15.2) - + **alpine** - + | Package | Vulnerability | Severity | Installed Version | Fixed Version | Links | |:----------------|:------------------:|:-----------:|:------------------:|:-------------:|-----------------------------------------| | zlib | CVE-2018-25032 | HIGH | 1.2.11-r3 | 1.2.12-r0 |
Expand...http://www.openwall.com/lists/oss-security/2022/03/25/2
http://www.openwall.com/lists/oss-security/2022/03/26/1
https://access.redhat.com/security/cve/CVE-2018-25032
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-25032
https://github.com/madler/zlib/commit/5c44459c3b28a9bd3283aaceab7c615f8020c531
https://github.com/madler/zlib/compare/v1.2.11...v1.2.12
https://github.com/madler/zlib/issues/605
https://nvd.nist.gov/vuln/detail/CVE-2018-25032
https://ubuntu.com/security/notices/USN-5355-1
https://ubuntu.com/security/notices/USN-5355-2
https://ubuntu.com/security/notices/USN-5359-1
https://www.openwall.com/lists/oss-security/2022/03/24/1
https://www.openwall.com/lists/oss-security/2022/03/28/1
https://www.openwall.com/lists/oss-security/2022/03/28/3
| #### Container: sissbruecker/linkding:1.8.8@sha256:d8d90a253cfe2bb1087492169c8e98ad20644f079c4890bdb9a7ac874488313d (debian 10.10) - + **debian** - + | Package | Vulnerability | Severity | Installed Version | Fixed Version | Links | |:----------------|:------------------:|:-----------:|:------------------:|:-------------:|-----------------------------------------| | apt | CVE-2011-3374 | LOW | 1.8.2.3 | |
Expand...https://access.redhat.com/security/cve/cve-2011-3374
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=642480
https://people.canonical.com/~ubuntu-security/cve/2011/CVE-2011-3374.html
https://seclists.org/fulldisclosure/2011/Sep/221
https://security-tracker.debian.org/tracker/CVE-2011-3374
https://snyk.io/vuln/SNYK-LINUX-APT-116518
https://ubuntu.com/security/CVE-2011-3374
| @@ -249,17 +249,14 @@ hide: **node-pkg** - + | No Vulnerabilities found | |:---------------------------------| - + **python-pkg** - + | No Vulnerabilities found | |:---------------------------------| - - - diff --git a/charts/stable/heimdall/helm-values.md b/charts/stable/heimdall/helm-values.md index fe4d561da58..28267e87cd0 100644 --- a/charts/stable/heimdall/helm-values.md +++ b/charts/stable/heimdall/helm-values.md @@ -13,7 +13,7 @@ You will, however, be able to use all values referenced in the common chart here |-----|------|---------|-------------| | image.pullPolicy | string | `"IfNotPresent"` | | | image.repository | string | `"tccr.io/truecharts/heimdall"` | | -| image.tag | string | `"version-2.2.2@sha256:eedb3180caf7388b206238120405d53baf9783692b14766ffed7bb388fadd6ce"` | | +| image.tag | string | `"v2.4.8@sha256:e83a7621b9a0c3351231ade781f6468861e2f2e8fe480476fc587ba0c144e959"` | | | persistence.config.enabled | bool | `true` | | | persistence.config.mountPath | string | `"/config"` | | | podSecurityContext.runAsGroup | int | `0` | |