DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-6ph5-frrf-2xrr

Package

crossplane-provider-aws-s3vectors

Component

x/crypto/openpgp

Latest update

Not affected

Aliases

Severity

Unknown
Eliminate CVEs with Chainguard hardened images

Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.

Start for free

References

  • https://pkg.go.dev/vuln/GO-2026-5932

Updates

Status

Not affected

Justification

Vulnerable code not present

Impact

The component location /usr/bin/provider-gcp-filestore is not shipped in the crossplane-provider-aws-s3vectors package; this manual detection was created by mistake. The package only ships /usr/bin/provider-aws-s3vectors, and govulncheck found no golang.org/x/crypto/openpgp symbols compiled into it.

Status

Under investigation


The trusted source for open source

Talk to an expert
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsChainguard OS PackagesChainguard ActionsChainguard Agent SkillsIntegrationsPricing
© 2026 Chainguard, Inc. All Rights Reserved.
Chainguard® and the Chainguard logo are registered trademarks of Chainguard, Inc. in the United States and/or other countries.
The other respective trademarks mentioned on this page are owned by the respective companies and use of them does not imply any affiliation or endorsement.