Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / docker/docker-bench-security issues and pull requests

#568 - [Bug] 1.1.5 doesn't take into account a changed data-root

Issue - State: open - Opened by OdinVex 17 days ago - 2 comments

#567 - [Typo] 2.18 doesn't report ID in output

Issue - State: open - Opened by OdinVex 23 days ago

#566 - [Bug] 1.1.2 Users list empty (broken by filtration)

Issue - State: open - Opened by OdinVex 23 days ago - 1 comment

#565 - Support for Docker rootless

Issue - State: open - Opened by GHDEV00 26 days ago - 3 comments

#564 - add bash to fix bad shebang

Pull Request - State: open - Opened by konstruktoid about 1 month ago

#563 - [Bug] Bad Shebang

Issue - State: open - Opened by OdinVex about 1 month ago - 1 comment

#561 - fix: check_2_8 not working as intended

Pull Request - State: closed - Opened by tbfpartner 3 months ago - 1 comment

#560 - fix: check_2_7 not working as intended

Pull Request - State: closed - Opened by tbfpartner 3 months ago - 1 comment

#559 - dist: adjust script imports to be able to use /usr/libexec

Pull Request - State: closed - Opened by cyphar 4 months ago - 5 comments

#558 - check for user daemon configuration file

Pull Request - State: open - Opened by konstruktoid 5 months ago

#557 - dont use static mount point in remediation

Pull Request - State: open - Opened by konstruktoid 5 months ago

#556 - Execute benchmark on rootless docker

Issue - State: open - Opened by osorito 6 months ago - 32 comments

#555 - Ensure a separate partition for containers has been created (Automated)

Issue - State: closed - Opened by osorito 6 months ago - 3 comments

#554 - 1.1.9 Is checking the wrong file

Issue - State: open - Opened by Yaytay 9 months ago - 1 comment

#552 - check_2_3 doesnt appear to account for log-level default value

Issue - State: closed - Opened by spedersen-emailage 10 months ago - 11 comments

#551 - jq error

Issue - State: closed - Opened by suljov 10 months ago - 3 comments

#550 - update github action

Pull Request - State: closed - Opened by konstruktoid 10 months ago

#549 - include /run in get_service_file

Pull Request - State: closed - Opened by konstruktoid 10 months ago

#548 - get_service_file unable to find containerd.sock

Issue - State: closed - Opened by spedersen-emailage 10 months ago - 10 comments

#547 - containerd.socket > containerd.sock

Pull Request - State: closed - Opened by joshavant about 1 year ago - 1 comment

#546 - Update check ID and add check groups for CIS Controls v8 (v1.6.0 - 06-14-2023)

Pull Request - State: closed - Opened by martipoe about 1 year ago - 1 comment

#545 - Definition of the assessment status

Issue - State: open - Opened by saikumark about 1 year ago - 1 comment

#544 - Docker daemon socket security

Issue - State: closed - Opened by Nethaji-nethu about 1 year ago - 1 comment

#543 - feat: use SHA instead of tags for base image

Pull Request - State: closed - Opened by UlisesGascon over 1 year ago - 1 comment

#542 - Check 5.14 should not check for container MaximumRetryCount

Issue - State: closed - Opened by jscheytt over 1 year ago - 4 comments

#541 - fix537

Pull Request - State: closed - Opened by halfluke over 1 year ago - 2 comments

#540 - "above" -> "below"

Pull Request - State: closed - Opened by ismailarilik over 1 year ago - 1 comment

#539 - check if restart policy is 5 or less

Pull Request - State: closed - Opened by konstruktoid over 1 year ago

#538 - check 5_14 maximum attempts or maximum retry should be <= 5.

Issue - State: closed - Opened by codefrogs over 1 year ago - 3 comments

#536 - Update version v1.6.0

Pull Request - State: closed - Opened by konstruktoid over 1 year ago

#535 - Fix image sprawl miscalculation

Pull Request - State: closed - Opened by konstruktoid over 1 year ago

#534 - Docker 1.6.0 is the latest version

Issue - State: closed - Opened by anubhav1992 over 1 year ago - 2 comments

#532 - Ensure image sprawl is avoided miscalculation

Issue - State: closed - Opened by halfluke over 1 year ago - 1 comment

#531 - add label filtering config

Pull Request - State: closed - Opened by lekpamartin over 1 year ago - 10 comments

#530 - Is it possible to add containers/images filter by LABEL

Issue - State: closed - Opened by lekpamartin over 1 year ago - 3 comments

#529 - False positives for 2.5 (ensure no insecure registries)

Issue - State: closed - Opened by pgatilov over 1 year ago - 5 comments

#528 - tr is required, not truncate

Pull Request - State: closed - Opened by konstruktoid over 1 year ago

#527 - Update required programs check to use tr command instead of truncate command

Issue - State: closed - Opened by manojrkrish over 1 year ago - 3 comments

#525 - fix: allow get_docker_configuration_file_args to parse minified json

Pull Request - State: closed - Opened by brsolomon-deloitte over 1 year ago - 2 comments

#524 - Bug in get_docker_configuration_file_args() causes false positives

Issue - State: closed - Opened by brsolomon-deloitte over 1 year ago - 3 comments

#523 - 1

Issue - State: closed - Opened by Jones7778 almost 2 years ago

#522 - Issue 521 restart policy

Pull Request - State: closed - Opened by andreagalle almost 2 years ago - 8 comments

#521 - [false positive] MaximumRetryCount is not set to 5:

Issue - State: closed - Opened by andreagalle almost 2 years ago - 6 comments

#520 - update slsa gha permissions

Pull Request - State: closed - Opened by konstruktoid almost 2 years ago

#519 - fix version in readme

Pull Request - State: closed - Opened by konstruktoid almost 2 years ago

#518 - update issue assignment gha

Pull Request - State: closed - Opened by konstruktoid almost 2 years ago

#517 - update slsa gha

Pull Request - State: closed - Opened by konstruktoid almost 2 years ago

#516 - update image

Pull Request - State: closed - Opened by konstruktoid almost 2 years ago

#515 - update yell helper with correct version

Pull Request - State: closed - Opened by konstruktoid almost 2 years ago

#514 - update version and add version table

Pull Request - State: closed - Opened by konstruktoid almost 2 years ago

#513 - align tests to CIS Docker Benchmark 1.5.0

Pull Request - State: closed - Opened by konstruktoid almost 2 years ago

#512 - Docker Benchmark support v1.4.x / v1.5.x

Issue - State: closed - Opened by ktsowes almost 2 years ago - 17 comments

#511 - add support for .NanoCpus

Pull Request - State: closed - Opened by konstruktoid about 2 years ago - 1 comment

#510 - Your utility doesn't correctly recognize the CPU limit (NanoCpus)

Issue - State: closed - Opened by melroy89 about 2 years ago - 6 comments

#509 - Feature request: TAP output files

Issue - State: closed - Opened by knaapjvd about 2 years ago - 3 comments

#508 - Fix check_2_7 TLS check with json config

Pull Request - State: closed - Opened by QuentinServais about 2 years ago

#507 - 404: functions_lib.sh link is invalid

Issue - State: closed - Opened by Wenzel about 2 years ago - 1 comment

#506 - Pin Docker base image in distros/Dockerfile.debian

Pull Request - State: closed - Opened by atomist[bot] over 2 years ago

#505 - rootless

Issue - State: closed - Opened by xoroz over 2 years ago - 3 comments

#504 - Fix sed commands for BSD sed

Pull Request - State: closed - Opened by gavinmporter over 2 years ago - 1 comment

#501 - grep host* in config file before testing 2.7

Pull Request - State: closed - Opened by konstruktoid almost 3 years ago

#500 - add Vagrantfile

Pull Request - State: closed - Opened by konstruktoid almost 3 years ago

#499 - add github actions

Pull Request - State: closed - Opened by konstruktoid almost 3 years ago

#498 - 2.7 false positive when log_opt set

Issue - State: open - Opened by dhrapson almost 3 years ago - 5 comments

#497 - Version

Pull Request - State: closed - Opened by konstruktoid almost 3 years ago

#496 - add 4.12 check

Pull Request - State: closed - Opened by konstruktoid almost 3 years ago

#495 - Update alpine to 3.15

Pull Request - State: closed - Opened by jammasterj89 about 3 years ago - 1 comment

#494 - add note regarding docker image

Pull Request - State: closed - Opened by konstruktoid about 3 years ago

#493 - if configured with no-new-privileges, pass check 5.25

Pull Request - State: closed - Opened by konstruktoid about 3 years ago

#492 - Docker daemon no-new-privileges: true seems to not work

Issue - State: closed - Opened by archfz about 3 years ago - 7 comments

#491 - fix style and false warning in check_5_3

Pull Request - State: closed - Opened by SericaLaw about 3 years ago - 1 comment

#490 - Incorrect JSON log for items that contains open and close bracket characters

Issue - State: open - Opened by gookey12 about 3 years ago - 1 comment

#489 - Fix description typos

Pull Request - State: closed - Opened by joaocfernandes over 3 years ago - 1 comment

#488 - Add /etc/hostname fix for macOS

Pull Request - State: closed - Opened by garettmd over 3 years ago - 1 comment

#487 - Updated log file name

Pull Request - State: closed - Opened by AErmie over 3 years ago - 1 comment

#486 - Support Number of Checks / Score By Group

Issue - State: closed - Opened by AErmie over 3 years ago - 4 comments

#485 - Added multiple check groups example

Pull Request - State: closed - Opened by AErmie over 3 years ago - 1 comment

#484 - Error at 1.1.14-1.1.18, Audit rule applied but still mentioned not applied

Issue - State: closed - Opened by Styleeeeez over 3 years ago - 6 comments

#483 - Can't seem to capture the output in a log file

Issue - State: closed - Opened by poencho over 3 years ago - 7 comments

#482 - Exit Code Control, and Output Format Options

Issue - State: open - Opened by AErmie over 3 years ago - 13 comments

#481 - Fix the bug that a container may not have ps command

Pull Request - State: open - Opened by NitroCao over 3 years ago

#480 - Docker-bench-security check 2.2 icc issue

Issue - State: open - Opened by fbinliu over 3 years ago - 15 comments

#479 - Autodetect host configuration

Issue - State: closed - Opened by thediveo over 3 years ago - 2 comments

#478 - fix socket check

Pull Request - State: closed - Opened by konstruktoid over 3 years ago

#477 - Invalid check for socket existence

Issue - State: closed - Opened by drmaciej over 3 years ago - 2 comments

#476 - Add checks for capabilities that allows container escape

Pull Request - State: closed - Opened by nikitastupin over 3 years ago - 3 comments

#475 - Implement listing of open ports

Pull Request - State: closed - Opened by nikitastupin over 3 years ago - 2 comments

#474 - fix: set docker-bench-security to sh

Pull Request - State: closed - Opened by denhamparry over 3 years ago - 3 comments

#473 - bash not available within Alpine:3.13

Issue - State: closed - Opened by denhamparry over 3 years ago

#471 - Update 2_docker_daemon_configuration.sh

Pull Request - State: closed - Opened by aagot over 3 years ago - 1 comment

#469 - Initial v1.3.1 PR

Pull Request - State: closed - Opened by konstruktoid over 3 years ago

#468 - Docker benchmark security on containers running on Fargate

Issue - State: closed - Opened by sudhir05 almost 4 years ago - 2 comments

#467 - Small improvement of user experience

Pull Request - State: closed - Opened by razvanstoica89 almost 4 years ago - 22 comments