Report ID
GO-2026-5064
Suggestion/Comment
The GitHub vulnerability lists affected versions as: >= 2.1.0, < 2.1.9, >= 2.2.0, < 2.2.5, >= 2.3.0, < 2.3.2, however in the Go vulnerability for the v1 module it lists all versions, no known fixed.
If this isn't a vulnerability in github.com/containerd/containerd (v1) it should be reflected in the Go vulnerability.
Report ID
GO-2026-5064
Suggestion/Comment
The GitHub vulnerability lists affected versions as:
>= 2.1.0, < 2.1.9, >= 2.2.0, < 2.2.5, >= 2.3.0, < 2.3.2, however in the Go vulnerability for the v1 module it listsall versions, no known fixed.If this isn't a vulnerability in github.com/containerd/containerd (v1) it should be reflected in the Go vulnerability.