StackRadar

CVE-2018-1000654

Medium

Advisory

Published 20 Aug 2018In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.020
80th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
319
of 17,781 indexed, latest versions
Container images
216
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 319 of 17,781 indexed charts deploy, on 216 images.

Affected packageAffected versionsFixed inImages
libtasn1-6deb3.4-3ubuntu0.1, 3.4-3ubuntu0.5, 3.4-3ubuntu0.6, 4.7-3ubuntu0.16.04.2+2 more4.7-3ubuntu0.16.04.3+esm2170
libtasn1apk4.12-r2, 4.13-r04.12-r4, 4.14-r046
OSV records
ALPINE-CVE-2018-1000654UBUNTU-CVE-2018-1000654
Also known as
USN-5352-1

Charts affected

319 by stars
ChartLatestAffected imagesRadar Score
pagesstephendillondell1.0.01 of 3See more

pages stephendillondell 1.0.0

1 of the 3 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
flyway/flyway:6.4.422d97ceb0c47
libtasn1-6@4.13-2
no fix listed

Open the chart page →

20,190
pagessunilb2590-pages1.0.01 of 3See more

pages sunilb2590-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
flyway/flyway:6.4.422d97ceb0c47
libtasn1-6@4.13-2
no fix listed

Open the chart page →

20,190
istio-discoverytemp-charts0.3.31 of 1See more

istio-discovery temp-charts 0.3.3

1 of the 1 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
istio/pilot:1.10.0294ca55bd1cc
libtasn1-6@4.13-2
no fix listed

Open the chart page →

10,568
istio-ingresstemp-charts0.3.31 of 1See more

istio-ingress temp-charts 0.3.3

1 of the 1 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.088c6c693e67a
libtasn1-6@4.13-2
no fix listed

Open the chart page →

10,514
pagestest43221.0.01 of 3See more

pages test4322 1.0.0

1 of the 3 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
flyway/flyway:6.4.422d97ceb0c47
libtasn1-6@4.13-2
no fix listed

Open the chart page →

20,190
shenyutest-helm2.4.212 of 2See more

shenyu test-helm 2.4.21

2 of the 2 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
apache/shenyu-admin:2.4.2e8b7c4ddd069
libtasn1@4.13-r0
4.14-r0
apache/shenyu-bootstrap:2.4.20bd3b25c4be4
libtasn1@4.13-r0
4.14-r0

Open the chart page →

12,513
standard-applicationthebitgram1.0.121 of 1See more

standard-application thebitgram 1.0.12

1 of the 1 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
libtasn1-6@4.7-3ubuntu0.16.04.2
4.7-3ubuntu0.16.04.3+esm2

Open the chart page →

11,007
pagesthiru-pages1.0.01 of 3See more

pages thiru-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
flyway/flyway:6.4.422d97ceb0c47
libtasn1-6@4.13-2
no fix listed

Open the chart page →

20,190
pagesthuy-pages1.0.01 of 3See more

pages thuy-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
flyway/flyway:6.4.422d97ceb0c47
libtasn1-6@4.13-2
no fix listed

Open the chart page →

20,190
todoapitodoapi-appVerified publisher0.1.01 of 2See more

todoapi todoapi-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2017-latest13221ac5f673
libtasn1-6@4.13-2
no fix listed

Open the chart page →

6,793
lightstepupdater-lightstep-satellite1.2.21 of 1See more

lightstep updater-lightstep-satellite 1.2.2

1 of the 1 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
libtasn1-6@4.7-3ubuntu0.16.04.3
4.7-3ubuntu0.16.04.3+esm2

Open the chart page →

15,330
pagesvictor-pages1.0.01 of 3See more

pages victor-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
flyway/flyway:6.4.422d97ceb0c47
libtasn1-6@4.13-2
no fix listed

Open the chart page →

20,190
kube-monitoring-telegram-botviento-repository1.0.01 of 1See more

kube-monitoring-telegram-bot viento-repository 1.0.0

1 of the 1 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
libtasn1-6@4.13-2
no fix listed

Open the chart page →

7,885
pageswalter1.0.01 of 3See more

pages walter 1.0.0

1 of the 3 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
flyway/flyway:6.4.422d97ceb0c47
libtasn1-6@4.13-2
no fix listed

Open the chart page →

20,190
queryservicewbstack0.2.11 of 1See more

queryservice wbstack 0.2.1

1 of the 1 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice:0.3.6_0.6b83b5b81d4b6
libtasn1@4.13-r0
4.14-r0

Open the chart page →

4,649
queryservice-updaterwbstack0.3.01 of 1See more

queryservice-updater wbstack 0.3.0

1 of the 1 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-updater:0.3.84_3.97525a57ac3f1
libtasn1@4.13-r0
4.14-r0

Open the chart page →

3,176
wbaas-backupwbstack0.1.01 of 1See more

wbaas-backup wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
libtasn1-6@4.13-2
no fix listed

Open the chart page →

9,743
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
libtasn1-6@4.13-2
no fix listed

Open the chart page →

10,843
clickhousezloi-space1.2.01 of 3See more

clickhouse zloi-space 1.2.0

1 of the 3 container images this version deploys carry CVE-2018-1000654.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
libtasn1-6@4.13-2
no fix listed

Open the chart page →

9,207

Container images carrying it

216 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
pozetroninc/keydb:v6.0.1653ae64f29da8
libtasn1-6@4.13-2
no fix listed
1
puppet/puppet-agent:7.14.00b6fd9a6b7da
libtasn1-6@4.13-2
no fix listed
1
radarbase/kafka-manager:1.3.3.181d2af7dd5a4e
libtasn1@4.12-r2
4.12-r4
1
radondb/clickhouse-server:v21.1.3.32-stable4732df471073
libtasn1-6@4.13-2
no fix listed
1
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
libtasn1-6@4.7-3ubuntu0.16.04.3
4.7-3ubuntu0.16.04.3+esm2
1
resouer/redis-slave:v2e2f198b49ba7
libtasn1-6@3.4-3ubuntu0.1
no fix listed
1
rundeck/rundeck:3.2.74d64fe56f767
libtasn1-6@4.7-3ubuntu0.16.04.3
4.7-3ubuntu0.16.04.3+esm2
1
rundeck/rundeck:3.0.16b13e8059ad72
libtasn1-6@4.7-3ubuntu0.16.04.3
4.7-3ubuntu0.16.04.3+esm2
1
scrapinghub/splash:3.4.1a5f89bc84606
libtasn1-6@4.13-2
no fix listed
1
sdandey/dandey-apps:kanban-board-kanban-appbef0f599737b
libtasn1@4.13-r0
4.14-r0
1
seataio/seata-server:1.5.1ee1ed55f4144
libtasn1@4.13-r0
4.14-r0
1
seldonio/apife:0.2.7ba81b17f00eb
libtasn1@4.13-r0
4.14-r0
1
seldonio/apife:0.3.1eea0d3f578ca
libtasn1@4.13-r0
4.14-r0
1
seldonio/cluster-manager:0.2.729e362bb1ba2
libtasn1@4.13-r0
4.14-r0
1
seldonio/locust-core:0.81d0da98a2d76
libtasn1-6@4.7-3ubuntu0.16.04.3
4.7-3ubuntu0.16.04.3+esm2
1
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
libtasn1-6@4.13-2
no fix listed
1
sismics/docs:v1.10f4b0ef019cf1
libtasn1-6@4.13-2
no fix listed
1
slagattollas/weatherservice-practica:latest68e7f56393fc
libtasn1-6@4.13-2
no fix listed
1
snappydatainc/spark-shuffle:v2.2.0-kubernetes-0.5.1fd4b2070466f
libtasn1@4.12-r2
4.12-r4
1
socialmediamacroscope/collect_reddit_comment:0.1.219d3d26d53ee
libtasn1-6@4.13-2
no fix listed
1
socialmediamacroscope/image_crawler:0.1.2f508216be63c
libtasn1-6@4.13-2
no fix listed
1
tdengine/tdengine:3.0.2.24140a4021ddb
libtasn1-6@4.13-2
no fix listed
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
libtasn1-6@4.7-3ubuntu0.16.04.3
4.7-3ubuntu0.16.04.3+esm2
1
thelastpickle/cassandra-reaper:1.3.09c53996c457d
libtasn1@4.13-r0
4.14-r0
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
libtasn1-6@4.7-3ubuntu0.16.04.2
4.7-3ubuntu0.16.04.3+esm2
1
tpdock/freeradius:2.2.93da600c95a49
libtasn1-6@4.7-3ubuntu0.16.04.2
4.7-3ubuntu0.16.04.3+esm2
1
vexorian/dizquetv:1.4.37e2b99844a5c
libtasn1-6@4.13-2
no fix listed
1
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
libtasn1-6@4.13-2
no fix listed
1
vinanrra/7dtd-server:v0.4.4f9534490bd2b
libtasn1-6@4.13-2
no fix listed
1
voltha/bbsim:1.16.7d90403d58016
libtasn1-6@4.13-2
no fix listed
1
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
libtasn1-6@4.13-2
no fix listed
1
voltha/bbsim-sadis-server:0.4.0762b272d439e
libtasn1-6@4.13-2
no fix listed
1
voltha/voltha-envoy:1.6.059ab2a00f712
libtasn1-6@3.4-3ubuntu0.5
no fix listed
1
voltha/voltha-onos:5.1.8e038acb950d3
libtasn1-6@4.13-2
no fix listed
1
voltha/voltha-tester:1.7.0655c3048a602
libtasn1-6@4.7-3ubuntu0.16.04.3
4.7-3ubuntu0.16.04.3+esm2
1
wavefronthq/proxy:9.2d1064d28f6eb
libtasn1-6@4.13-2
no fix listed
1
woojoong/wowza:latestec230db19652
libtasn1-6@4.13-2
no fix listed
1
xetusoss/archiva:v2.2.588f25242b9ee
libtasn1@4.13-r0
4.14-r0
1
yandex/clickhouse-client:21.3863f94a0f607
libtasn1-6@4.13-2
no fix listed
1
yandex/clickhouse-server:19.17ab1738a64b70
libtasn1-6@4.13-2
no fix listed
1
yandex/clickhouse-server:19.14ccf9c2b5e3f2
libtasn1-6@4.13-2
no fix listed
1
yandex/clickhouse-server:19.16d210dc69321e
libtasn1-6@4.13-2
no fix listed
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
libtasn1-6@4.13-2
no fix listed
1
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
libtasn1-6@4.7-3ubuntu0.16.04.2
4.7-3ubuntu0.16.04.3+esm2
1
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
libtasn1-6@4.7-3ubuntu0.16.04.2
4.7-3ubuntu0.16.04.3+esm2
1
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
libtasn1-6@4.7-3ubuntu0.16.04.3
4.7-3ubuntu0.16.04.3+esm2
1
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
libtasn1-6@4.7-3ubuntu0.16.04.3
4.7-3ubuntu0.16.04.3+esm2
1
gcr.io/tfx-oss-public/ml_metadata_store_server:1.5.0db8691752b4c
libtasn1-6@4.13-2
no fix listed
1
ghcr.io/98jan/smalland-server/smalland-server:deveb7be822d5b2
libtasn1-6@4.13-2
no fix listed
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
libtasn1-6@4.13-2
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.