在 NetApp CVO Mediator 虚拟机上检测到操作系统级漏洞
适用于
- Cloud Volumes ONTAP (CVO)
- Google Cloud Platform (GCP)
- NetApp CVO Mediator VM
问题
客户可能会观察到安全警报,报告运行 Debian 11 的 NetApp CVO Mediator 虚拟机上存在多个操作系统级软件包漏洞,CVO 版本为 9.14.1
Alert: “The GCP Compute VM Instance is running an unpatched operating system - Debian 11. Orca discovered a total of 319 OS package vulnerabilities with a fix available, out of 874 vulnerabilities that were discovered. This exposes the system to vulnerability exploitation that could lead to DoS attacks, remote code execution, privilege escalation and other security risks, necessitating an immediate plan for OS update or migration to a patched version.”