/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-875p-mmm9-5f44

Published

Last updated

https://images.chainguard.dev/security/CGA-875p-mmm9-5f44
Package

ztunnel-1.24

RepositoryWolfi
Latest Update
Fixed
Fixed Version

1.24.2-r1

Aliases
  • GHSA-wwq9-3cpr-mm53

Severity

Unknown

References

  • https://github.com/advisories/GHSA-wwq9-3cpr-mm53

Updates

Status

Fixed

Fixed version

1.24.2-r1

Status

Pending upstream fix

Impact

ztunnel currently depends on multiple versions of hashbrown - v12.x , v14.x and v15.x. We can't bump the earlier versions to the latest v15.x streams, as the project explicitly depends on multiple versions. Waiting for fix from upstream. Ref: https://github.com/istio/ztunnel/blob/1.24.1/Cargo.lock#L1095-L1119

Status

Under investigation


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing