LOW
The severity is LOW because this update does not introduce a vulnerability but provides an additional security feature. The real-world exploitability is non-existent as it's a proactive security enhancement, and the impact lies in improving security posture rather than mitigating existing vulnerabilities.

HCP Packer does not directly introduce a new vulnerability but enhances the capability to detect vulnerabilities in software bill-of-materials (SBOM). This feature allows users to scan their image components for known vulnerabilities, which can help mitigate potential risks.

Affected Systems
  • HCP Packer
Remediation
  • Enable SBOM scanning feature to monitor for known vulnerabilities in your images.
  • Regularly review scan results and address any identified issues promptly.
Source →