CVE-2019-15604
HighAdvisory
Published 7 Feb 2020In the index since 6 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.5
- base score, highest
- EPSS
- 0.205
- 97th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 6
- of 17,781 indexed, latest versions
- Container images
- 6
- deployed by those charts
- Fix available
- 2 of 2
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 6 of 17,781 indexed charts deploy, on 6 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| nodejsdeb | 4.2.6~dfsg-1ubuntu4.1, 8.10.0~dfsg-2ubuntu0.4 | 4.2.6~dfsg-1ubuntu4.2+esm2, 8.10.0~dfsg-2ubuntu0.4+esm2 | 4 |
| nodejsapk | 10.14.2-r0, 10.16.3-r0 | 10.19.0-r0 | 2 |
- OSV records
- ALPINE-CVE-2019-15604UBUNTU-CVE-2019-15604
- Also known as
- USN-6380-1
Charts affected
6 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| swaggeruicetic | 0.3.6 | 1 of 1See more | 976 |
| otbrcharts-derwitt-devVerified publisher | 0.2.0 | 1 of 1See more | 12,779 |
| ethereumcloudnativeapp | 1.0.0 | 1 of 3See more | 27,417 |
| ibm-kerify-devibm-charts | 1.0.0 | 1 of 1See more | 8,221 |
| ibm-microclimateibm-charts | 0.1.0 | 1 of 8See more | 57,669 |
| openwhiskopenwhisk | 1.0.0 | 1 of 10See more | 36,215 |
Container images carrying it
6 by charts deploying them
A fixed version is listed for 2 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| ethereumex/ | a7603aa8df4c | nodejs | 4.2.6~dfsg-1ubuntu4.2+esm2 | 1 |
| ibmcom/ | b558f2b444ae | nodejs | 10.19.0-r0 | 1 |
| ibmcom/ | e17bdccc5030 | nodejs | 4.2.6~dfsg-1ubuntu4.2+esm2 | 1 |
| openthread/ | f307f59f6432 | nodejs | 8.10.0~dfsg-2ubuntu0.4+esm2 | 1 |
| openwhisk/ | c80dba0de3aa | nodejs | 8.10.0~dfsg-2ubuntu0.4+esm2 | 1 |
| swaggerapi/ | d434cac93813 | nodejs | 10.19.0-r0 | 1 |