k3s-1.31
Chainguard
Status
Impact
selinux is pinned to v1.11.1 upstream (https://github.com/k3s-io/k3s/blob/main/go.mod#L22) and trying to bump it to the fixed version for this CVE v1.13.0 causes build failures. Upstream maintainers will need to update the upstream code to the fixed version of selinux.
Status