[ldflags-version]version not in build info (reported (devel)); read from the binary's own -ldflags stamp github.com/projectcalico/calico/kube-controllers/main.VERSION=v3.32.2
[ldflags-version]version not in build info (reported (devel)); read from the binary's own -ldflags stamp github.com/projectcalico/calico/kube-controllers/main.VERSION=v3.32.2
[ldflags-version]version not in build info (reported (devel)); read from the binary's own -ldflags stamp github.com/projectcalico/calico/kube-controllers/main.VERSION=v3.32.2
[ldflags-version]version not in build info (reported (devel)); read from the binary's own -ldflags stamp github.com/projectcalico/calico/kube-controllers/main.VERSION=v3.32.2
[ldflags-version]version not in build info (reported (devel)); read from the binary's own -ldflags stamp github.com/projectcalico/calico/kube-controllers/main.VERSION=v3.32.2
[ldflags-version]version not in build info (reported (devel)); read from the binary's own -ldflags stamp github.com/projectcalico/calico/kube-controllers/main.VERSION=v3.32.2
[ldflags-version]version not in build info (reported (devel)); read from the binary's own -ldflags stamp github.com/projectcalico/calico/kube-controllers/main.VERSION=v3.32.2
[image-tag-version]version not in build info (reported (devel)); inferred from image tag "v3.32.2-build20260909" -- the image name contains the module name (calico)
[vendor-vex]Rancher Security team published not_affected for pkg:golang/github.com/projectcalico/calico (vulnerable_code_not_in_execute_path); statement names pkg:golang/go.etcd.io/etcd/client/pkg/v3@v3.5.19; component is pkg:golang/go.etcd.io%2Fetcd%2Fclient%2Fpkg%2Fv3@v3.6.5
Rancher Security team says not_affected(vulnerable_code_not_in_execute_path)
Govulncheck determined that the vulnerable code isn't called
product pkg:golang/github.com/projectcalico/calico · published 2026-08-19T02:32:47Z · from https://github.com/rancher/vexhub
matched loosely: statement names pkg:golang/go.etcd.io/etcd/client/pkg/v3@v3.5.19; component is pkg:golang/go.etcd.io%2Fetcd%2Fclient%2Fpkg%2Fv3@v3.6.5
[vendor-vex]Rancher Security team published not_affected for pkg:golang/github.com/projectcalico/calico (vulnerable_code_not_in_execute_path); statement names pkg:golang/go.etcd.io/etcd/client/pkg/v3@v3.5.19; component is pkg:golang/go.etcd.io%2Fetcd%2Fclient%2Fpkg%2Fv3@v3.6.5
Rancher Security team says not_affected(vulnerable_code_not_in_execute_path)
Govulncheck determined that the vulnerable code isn't called
product pkg:golang/github.com/projectcalico/calico · published 2026-08-19T02:32:47Z · from https://github.com/rancher/vexhub
matched loosely: statement names pkg:golang/go.etcd.io/etcd/client/pkg/v3@v3.5.19; component is pkg:golang/go.etcd.io%2Fetcd%2Fclient%2Fpkg%2Fv3@v3.6.5
[vendor-vex]Rancher Security team published not_affected for pkg:golang/github.com/projectcalico/calico (vulnerable_code_not_in_execute_path); statement names pkg:golang/go.etcd.io/etcd/client/pkg/v3@v3.5.19; component is pkg:golang/go.etcd.io%2Fetcd%2Fclient%2Fpkg%2Fv3@v3.6.5
Rancher Security team says not_affected(vulnerable_code_not_in_execute_path)
Govulncheck determined that the vulnerable code isn't called
product pkg:golang/github.com/projectcalico/calico · published 2026-08-19T02:32:47Z · from https://github.com/rancher/vexhub
matched loosely: statement names pkg:golang/go.etcd.io/etcd/client/pkg/v3@v3.5.19; component is pkg:golang/go.etcd.io%2Fetcd%2Fclient%2Fpkg%2Fv3@v3.6.5
[vendor-vex]Rancher Security team published not_affected for pkg:golang/github.com/projectcalico/calico (vulnerable_code_not_in_execute_path); statement names pkg:golang/go.etcd.io/etcd/client/pkg/v3@v3.5.19; component is pkg:golang/go.etcd.io%2Fetcd%2Fclient%2Fpkg%2Fv3@v3.6.5
Rancher Security team says not_affected(vulnerable_code_not_in_execute_path)
Govulncheck determined that the vulnerable code isn't called
product pkg:golang/github.com/projectcalico/calico · published 2026-08-19T02:32:47Z · from https://github.com/rancher/vexhub
matched loosely: statement names pkg:golang/go.etcd.io/etcd/client/pkg/v3@v3.5.19; component is pkg:golang/go.etcd.io%2Fetcd%2Fclient%2Fpkg%2Fv3@v3.6.5
[vendor-vex]Rancher Security team published not_affected for pkg:golang/github.com/projectcalico/calico (vulnerable_code_not_in_execute_path); statement names pkg:golang/go.etcd.io/etcd/client/pkg/v3@v3.5.19; component is pkg:golang/go.etcd.io%2Fetcd%2Fclient%2Fpkg%2Fv3@v3.6.5
Rancher Security team says not_affected(vulnerable_code_not_in_execute_path)
Govulncheck determined that the vulnerable code isn't called
product pkg:golang/github.com/projectcalico/calico · published 2026-08-19T02:32:47Z · from https://github.com/rancher/vexhub
matched loosely: statement names pkg:golang/go.etcd.io/etcd/client/pkg/v3@v3.5.19; component is pkg:golang/go.etcd.io%2Fetcd%2Fclient%2Fpkg%2Fv3@v3.6.5
RULED OUT(8)— the vulnerable code is not present or cannot run
[vendor-vex]Rancher Security team published not_affected for pkg:golang/github.com/projectcalico/calico (vulnerable_code_not_in_execute_path); statement names pkg:golang/go.etcd.io/etcd/client/pkg/v3@v3.5.19; component is pkg:golang/go.etcd.io%2Fetcd%2Fclient%2Fpkg%2Fv3@v3.6.5
Rancher Security team says not_affected(vulnerable_code_not_in_execute_path)
Govulncheck determined that the vulnerable code isn't called
product pkg:golang/github.com/projectcalico/calico · published 2026-08-19T02:32:47Z · from https://github.com/rancher/vexhub
matched loosely: statement names pkg:golang/go.etcd.io/etcd/client/pkg/v3@v3.5.19; component is pkg:golang/go.etcd.io%2Fetcd%2Fclient%2Fpkg%2Fv3@v3.6.5