How to Filter Images by Vulnerabilities or CVEs in Prisma Cloud Compute?

How to Filter Images by Vulnerabilities or CVEs in Prisma Cloud Compute?

2120
Created On 12/29/21 01:51 AM - Last Modified 01/11/22 15:46 PM


Objective


  • How to Filter Images by Vulnerabilities or CVEs in Prisma Cloud Compute?


Environment


  • Prisma Cloud Compute Edition (Self-Hosted)
  • Prisma Cloud Enterprise Edition (SaaS)


Procedure


  • The "Vulnerability Explorer" helps survey the Vulnerabilities across your environment and filter images based on a particular CVE.

​​​​If Prisma Cloud Compute Edition (Self-Hosted) Console:

  • Go to Monitor > Vulnerabilities > Vulnerability Explorer > Input the CVE of interest (Eg. CVE-2021-21687)

User-added image

  • The filtered list can be downloaded in CSV format. 
  • Click anywhere on the entry list (under tabs - Risk score, CVE risk factors, Environmental risk factors or Impacted Packages) to get the Images impacted by this CVE.
  • As seen below, 2 Images are impacted by CVE-2021-21687.
User-added image

If Prisma Cloud Enterprise Edition (SaaS) Console:

  • Go to Compute > Monitor > Vulnerabilities > Vulnerability Explorer > Input the CVE of interest (Eg. CVE-2021-41990)
User-added image
  • The filtered list can be downloaded in CSV format. 
  • Click anywhere on the entry list (under tabs - Risk score, CVE risk factors, Environmental risk factors or Impacted Packages) to get the Images impacted by this CVE.
  • As seen below, 1 Image is impacted by CVE-2021-41990.
User-added image


Additional Information


NOTE:
  • Currently, under Monitor > Vulnerabilities > Images, Images can only be filtered by certain keywords and attributes, and not by a specific CVE, as show below:
User-added image

User-added image
  • Following Feature Requests have been raised for adding a CVE Vulnerability Filter under Monitor > Vulnerabilities > Images, with no ETA at this time.
  1. Add Additional Filters to Image Details: PANW-I-3012
  2. Add CVE filter to CI Image Scan reports in the Console UI: PANW-I-2959
 


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u0000004MfoCAE&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail