Package
filebeat-oss-7
Component
github.com/containerd/containerd
Latest update
Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.
Start for freeStatus
Justification
Impact
Source-level call-graph analysis traces every reachable containerd reference to a single path: the Docker metadata enrichment helper's initialization transitively imports the Docker Engine client library, which requires containerd/errdefs for shared error types, and the only symbol ever reached is errdefs.init, an unconditional package initializer. None of containerd's actual client-API functions are present in any call path from the binary's entry point. Since the vulnerable functionality is never invoked, GHSA-fqw6-gf59-qr4w (CVE-2026-46680) does not apply to this artifact.
Status
Impact
This package is no longer supported upstream and has reached its end of life. A version upgrade is required to fix this vulnerability.
Status