CVE-2019-11841
MediumAdvisory
Published 24 May 2022In the index since 6 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.9
- base score, highest
- EPSS
- 0.020
- 80th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 24
- of 17,781 indexed, latest versions
- Container images
- 20
- deployed by those charts
- Fix available
- 1 of 1
- affected package
Golang/x/crypto message forgery vulnerability
Carried by container images the latest versions of 24 of 17,781 indexed charts deploy, on 20 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| golang.org/ | v0.0.0-20180808211826-de0752318171, v0.0.0-20181025213731-e84da0312774, v0.0.0-20181029021203-45a5f77698d3, v0.0.0-20181203042331-505ab145d0a9+2 more | 0.0.0-20190424203555-c05e17bb3b2d | 20 |
- OSV records
- GHSA-x3jr-pf6g-c48f
- Also known as
- GO-2023-1992
Charts affected
24 by stars
Container images carrying it
20 by charts deploying them
A fixed version is listed for 1 of the 1 affected package.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| mintel/ | caf71cee7b9a | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 3 |
| jettech/ | c42098c8d855 | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 2 |
| weblate/ | 69c160d37a3c | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 2 |
| dasmeta/ | fa657960dfec | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| drone/ | 206df2280ecf | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| jfwenisch/ | 9e6c229f953c | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| metalmatze/ | 426bc2ca7586 | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| mintel/ | 0e0707b7732b | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| prom/ | e4ca62c0d62f | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| rancher/ | 42784bb38ed3 | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| reportportal/ | 2b27a2d7a87d | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| weaveworks/ | a9c2e9df4227 | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| weblate/ | 82848df56ecd | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| wener/ | cc9fd4da44c0 | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| wener/ | 5c92cc9e8597 | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| gcr.io/ | 2b1a3d08caac | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| gcr.io/ | a348db3e4d74 | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| public.ecr.aws/ | cac3ed9a9826 | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| quay.io/ | 791aef35b8d1 | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |
| registry.gitlab.com/ | e0ab1fc86761 | golang.org/ | 0.0.0-20190424203555-c05e17bb3b2d | 1 |