Null root in several linuxserver containers

Hello,

I read this blog from kennasecurity (https://www.kennasecurity.com/20-of-the-1000-most-popular-docker-containers-have-no-root-password/) about null root in populair docker container.

There are several linuxserver containers list whicht have this vulnerability.

linuxserver/couchpotato
linuxserver/headphones
linuxserver/nzbget
linuxserver/plex
linuxserver/plexpy
linuxserver/quassel-core
linuxserver/sabnzbd
linuxserver/smokeping
linuxserver/sonarr

I’m not an expert at docker container but could you explain is this comprimise these containers and if so are they going to be updated. I can’t find any info pn the linuxserver site about this subject.

regards

You’re looking at the wrong list.

Except for plexpy, all the others are in the “tested” list. Not the list with the vulnerability.

Plexpy has the vulnerability because it was deprecated a long time ago and no longer updated

thank you for clarifying…