CVE-2019-14855
MediumAdvisory
Published 20 Mar 2020In the index since 6 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.3
- base score, highest
- EPSS
- 0.011
- 63rd percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 208
- of 17,781 indexed, latest versions
- Container images
- 120
- deployed by those charts
- Fix available
- 1 of 3
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 208 of 17,781 indexed charts deploy, on 120 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| gnupgdeb | 1.4.16-1ubuntu2.1, 1.4.16-1ubuntu2.4, 1.4.16-1ubuntu2.6, 1.4.20-1ubuntu3.1+2 more | no fix listed | 76 |
| gnupg2deb | 2.1.11-6ubuntu2.1, 2.2.4-1ubuntu1, 2.2.4-1ubuntu1.1, 2.2.4-1ubuntu1.2 | 2.2.4-1ubuntu1.3 | 39 |
| gnupg1deb | 1.4.23-1.1build1 | no fix listed | 6 |
- OSV records
- UBUNTU-CVE-2019-14855
- Also known as
- USN-4516-1
Charts affected
208 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| standard-applicationthebitgram | 1.0.12 | 1 of 1See more | 11,007 |
| pagesthiru-pages | 1.0.0 | 1 of 3See more | 20,190 |
| pagesthuy-pages | 1.0.0 | 1 of 3See more | 20,190 |
| lightstepupdater-lightstep-satellite | 1.2.2 | 1 of 1See more | 15,330 |
| twenty-crmvictorlane | 0.0.1 | 1 of 3See more | 13,459 |
| pagesvictor-pages | 1.0.0 | 1 of 3See more | 20,190 |
| pageswalter | 1.0.0 | 1 of 3See more | 20,190 |
| emissary-ingresswenerme | 8.12.2 | 1 of 2See more | 10,843 |
Container images carrying it
120 by charts deploying them
A fixed version is listed for 1 of the 3 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| voltha/ | 59ab2a00f712 | gnupg | no fix listed | 1 |
| voltha/ | 37f80524c207 | gnupg | no fix listed | 1 |
| voltha/ | 9ee8c1f4428c | gnupg | no fix listed | 1 |
| voltha/ | e038acb950d3 | gnupg2 | 2.2.4-1ubuntu1.3 | 1 |
| voltha/ | 655c3048a602 | gnupg | no fix listed | 1 |
| voltha/ | ff596b62de59 | gnupg | no fix listed | 1 |
| wavefronthq/ | d1064d28f6eb | gnupg2 | 2.2.4-1ubuntu1.3 | 1 |
| woojoong/ | ec230db19652 | gnupg2 | 2.2.4-1ubuntu1.3 | 1 |
| xingse/ | 9f9d5492e4bf | gnupg | no fix listed | 1 |
| yandex/ | ab1738a64b70 | gnupg2 | 2.2.4-1ubuntu1.3 | 1 |
| yandex/ | ccf9c2b5e3f2 | gnupg2 | 2.2.4-1ubuntu1.3 | 1 |
| yandex/ | d210dc69321e | gnupg2 | 2.2.4-1ubuntu1.3 | 1 |
| gcr.io/ | 809338a69bd5 | gnupg2 | 2.2.4-1ubuntu1.3 | 1 |
| gcr.io/ | 10f4dbc8eeeb | gnupg | no fix listed | 1 |
| gcr.io/ | cb5c1bddd1b5 | gnupg | no fix listed | 1 |
| gcr.io/ | 5ea7b7f3632a | gnupg | no fix listed | 1 |
| gcr.io/ | 8f9ff98fdbef | gnupg | no fix listed | 1 |
| gcr.io/ | e8bc6cf08613 | gnupg | no fix listed | 1 |
| quay.io/ | a1c3843b03bc | gnupg | no fix listed | 1 |
| quay.io/ | c6a934439421 | gnupg | no fix listed | 1 |