defensivedepth
11/23/2021, 1:38 PMauthconfig 6.2.8
. 3rd screencap shows that it was installed with the package authconfig-6.2.8-30.el7.src.rpm
The changelog for that package can be found here: https://centos.pkgs.org/7/centos-x86_64/authconfig-6.2.8-30.el7.x86_64.rpm.html, in which we see the referenced vuln was fixed in package 6.2.8-26
which means that this finding is a false positive.
This is a common occurrence for those 1763 vulnerabilities.Tomas Touceda
11/23/2021, 1:43 PMdefensivedepth
11/23/2021, 1:58 PMTomas Touceda
11/23/2021, 3:11 PMRyan
11/23/2021, 3:20 PM