gcr.io/google.com/cloudsdktool/cloud-sdk:latest (debian 12.13)¶
Trivy Image Scan
- Image:
gcr.io/google.com/cloudsdktool/cloud-sdk:latest (debian 12.13) - Scan date: 2026-04-01
gcr.io/google.com/cloudsdktool/cloud-sdk:latest (debian 12.13) (debian)¶
Java (jar)¶
| Package | Vulnerability ID | Severity | Installed Version | Fixed Version | Links |
|---|---|---|---|---|---|
| io.netty:netty-codec-http | CVE-2026-33870 | HIGH | 4.1.130.Final | 4.1.132.Final, 4.2.10.Final | https://access.redhat.com/security/cve/CVE-2026-33870 https://github.com/netty/netty https://github.com/netty/netty/security/advisories/GHSA-pwqr-wmgm-9rr8 https://nvd.nist.gov/vuln/detail/CVE-2026-33870 https://w4ke.info/2025/06/18/funky-chunks.html https://w4ke.info/2025/10/29/funky-chunks-2.html https://www.cve.org/CVERecord?id=CVE-2026-33870 https://www.rfc-editor.org/rfc/rfc9110 |
| io.netty:netty-codec-http2 | CVE-2026-33871 | HIGH | 4.1.130.Final | 4.1.132.Final, 4.2.11.Final | https://access.redhat.com/security/cve/CVE-2026-33871 https://github.com/netty/netty https://github.com/netty/netty/security/advisories/GHSA-w9fj-cfpg-grvv https://nvd.nist.gov/vuln/detail/CVE-2026-33871 https://www.cve.org/CVERecord?id=CVE-2026-33871 |
| No Misconfigurations found | |||||
Python (python-pkg)¶
usr/lib/google-cloud-sdk/bin/anthoscli (gobinary)¶
usr/lib/google-cloud-sdk/bin/cbt (gobinary)¶
usr/lib/google-cloud-sdk/bin/cloud_spanner_emulator/gateway_main (gobinary)¶
usr/lib/google-cloud-sdk/bin/gcloud-crc32c (gobinary)¶
| No Vulnerabilities found | |||||
|---|---|---|---|---|---|
| No Misconfigurations found |