Newly released based image for Azure Machine Learning contains medium- and high-level security vulnerabillities

Li Shuang 6 Reputation points
2022-08-04T01:18:26.903+00:00

Hi,

We are currently using the latest (as of 4 Aug 2022) container based image released by Microsoft for our AML workloads: mcr.microsoft.com/azureml/openmpi4.1.0-ubuntu20.04:20220729.v1 (https://github.com/Azure/AzureML-Containers/blob/master/base/cpu/openmpi4.1.0-ubuntu20.04/release-notes.md).

However, this image contains the following security vulnerabilities:
227904-screenshot-1.jpg

We would like to know if it's possible to resolve them (we are not sure how to implement the remedy provided).
In our company, vulnerable container registry images would be deleted automatically - hence it's important for us to know how to make the image secure.

Thanks!

Azure Machine Learning
{count} vote

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.