StackRadar

CVE-2019-14889

High

Advisory

Published 10 Dec 2019In the index since 8 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.032
87th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
5
of 17,781 indexed, latest versions
Container images
5
deployed by those charts
Fix available
2 of 2
affected packages

Security update for libssh

Carried by container images the latest versions of 5 of 17,781 indexed charts deploy, on 5 images.

Affected packageAffected versionsFixed inImages
libsshdeb0.6.3-4.3, 0.6.3-4.3ubuntu0.2, 0.8.0~20170825.94fa1e38-1ubuntu0.20.6.3-4.3ubuntu0.5, 0.8.0~20170825.94fa1e38-1ubuntu0.53
libsshrpm0.8.7-lp151.2.3.10.8.7-lp151.2.6.12
OSV records
UBUNTU-CVE-2019-14889openSUSE-SU-2019:2689-1
Also known as
USN-4219-1, openSUSE-SU-2020:0102-1

Charts affected

5 by stars
ChartLatestAffected imagesRadar Score
webpagetest-agentcloudnativeapp0.2.01 of 1See more

webpagetest-agent cloudnativeapp 0.2.0

1 of the 1 container images this version deploys carry CVE-2019-14889.

Container imageDigestPackageFixed in
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
libssh@0.6.3-4.3
0.6.3-4.3ubuntu0.5

Open the chart page →

77,758
cdn-remoteopencord0.2.42 of 3See more

cdn-remote opencord 0.2.4

2 of the 3 container images this version deploys carry CVE-2019-14889.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
libssh@0.8.0~20170825.94fa1e38-1ubuntu0.2
0.8.0~20170825.94fa1e38-1ubuntu0.5
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
libssh@0.6.3-4.3ubuntu0.2
0.6.3-4.3ubuntu0.5

Open the chart page →

63,223
mcord-cdn-remoteopencord0.1.61 of 2See more

mcord-cdn-remote opencord 0.1.6

1 of the 2 container images this version deploys carry CVE-2019-14889.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
libssh@0.6.3-4.3ubuntu0.2
0.6.3-4.3ubuntu0.5

Open the chart page →

42,614
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2019-14889.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
libssh@0.6.3-4.3ubuntu0.2
0.6.3-4.3ubuntu0.5

Open the chart page →

29,124
cf-operatorquarks2.3.0+0.g27a91cdf2 of 2See more

cf-operator quarks 2.3.0+0.g27a91cdf

2 of the 2 container images this version deploys carry CVE-2019-14889.

Container imageDigestPackageFixed in
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
libssh@0.8.7-lp151.2.3.1
0.8.7-lp151.2.6.1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
libssh@0.8.7-lp151.2.3.1
0.8.7-lp151.2.6.1

Open the chart page →

11,942

Container images carrying it

5 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
libssh@0.6.3-4.3ubuntu0.2
0.6.3-4.3ubuntu0.5
3
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
libssh@0.8.7-lp151.2.3.1
0.8.7-lp151.2.6.1
1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
libssh@0.8.7-lp151.2.3.1
0.8.7-lp151.2.6.1
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
libssh@0.8.0~20170825.94fa1e38-1ubuntu0.2
0.8.0~20170825.94fa1e38-1ubuntu0.5
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
libssh@0.6.3-4.3
0.6.3-4.3ubuntu0.5
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.