Listing Container Image Scans
View a list of potential OS vulnerabilities that were detected on a specific image in Container Registry.
Oracle uses common vulnerabilities and exposures (CVE) numbers to identify security vulnerabilities for operating systems and other software, including critical patch updates and security alert advisories. CVE numbers are unique, common identifiers for publicly known information about security vulnerabilities. View Qualys IDs (QIDs) in the Vulnerability Scanning service user interface.
The results of a container image scan include the specific vulnerabilities in the CVE database that were detected in the image.
Each image in Container Registry is identified by the following information.
- Image tag- A string used to refer to a particular image in a repository.
Examples:
4.6.3
,version2.0.test
- Image path- The fully qualified path to the image, including the repository name and image tag.
Example:
us-phoenix-1.ocir.io/mytenancy/myrepo:version2.0.test
To view the results of container image scans:
Use the oci vulnerability-scanning container scan result list command and required parameters to retrieve a list of container scan results in a compartment:
oci vulnerability-scanning container scan result list --compartment-id <compartment_ocid>
For example:
oci vulnerability-scanning container scan result list --compartment-id ocid1.compartment.oc1..exampleuniqueID
For a complete list of flags and variable options for CLI commands, see the Command Line Reference.
Run the ListContainerScanResults operation to retrieve a list of container scan results in a compartment.