StackRadar

CVE-2019-20387

High

Advisory

Published 16 Sept 2024In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.023
83rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
10
of 17,781 indexed, latest versions
Container images
11
deployed by those charts
Fix available
1 of 1
affected package

Red Hat Security Advisory: libsolv security, bug fix, and enhancement update

Carried by container images the latest versions of 10 of 17,781 indexed charts deploy, on 11 images.

Affected packageAffected versionsFixed inImages
libsolvrpm0.6.35-6.el8, 0.7.4-3.el8, 0.7.7-1.el80:0.7.11-1.el811
OSV records
RHSA-2020:4508

Charts affected

10 by stars
ChartLatestAffected imagesRadar Score
openshift-consoleav1o-chartsVerified publisher0.3.61 of 1See more

openshift-console av1o-charts 0.3.6

1 of the 1 container images this version deploys carry CVE-2019-20387.

Container imageDigestPackageFixed in
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
libsolv@0.7.7-1.el8
0:0.7.11-1.el8

Open the chart page →

9,052
developer-dashboardcloud-native-toolkit1.4.11 of 1See more

developer-dashboard cloud-native-toolkit 1.4.1

1 of the 1 container images this version deploys carry CVE-2019-20387.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
libsolv@0.7.7-1.el8
0:0.7.11-1.el8

Open the chart page →

25,456
hawkbit-operatorhelm-chartsVerified publisher0.1.41 of 1See more

hawkbit-operator helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2019-20387.

Container imageDigestPackageFixed in
ctron/hawkbit-operator:0.1.48fdea8f76499
libsolv@0.7.7-1.el8
0:0.7.11-1.el8

Open the chart page →

5,792
ibm-object-storage-pluginibm-charts1.1.52 of 2See more

ibm-object-storage-plugin ibm-charts 1.1.5

2 of the 2 container images this version deploys carry CVE-2019-20387.

Container imageDigestPackageFixed in
ibmcom/ibmcloud-object-storage-driver:1.8.16c796a4c693b4
libsolv@0.7.7-1.el8
0:0.7.11-1.el8
ibmcom/ibmcloud-object-storage-plugin:1.8.169c73804b37a3
libsolv@0.7.7-1.el8
0:0.7.11-1.el8

Open the chart page →

12,461
ibm-ucv-prodibm-helm5.2.61 of 16See more

ibm-ucv-prod ibm-helm 5.2.6

1 of the 16 container images this version deploys carry CVE-2019-20387.

Container imageDigestPackageFixed in
ibmcom/opencontent-common-utils:1.1.2cd5065df7304
libsolv@0.6.35-6.el8
0:0.7.11-1.el8

Open the chart page →

12,105
jx-app-anchorejenkins-x0.0.41 of 2See more

jx-app-anchore jenkins-x 0.0.4

1 of the 2 container images this version deploys carry CVE-2019-20387.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.7.1ed9b3badd17c
libsolv@0.7.4-3.el8
0:0.7.11-1.el8

Open the chart page →

9,854
nexusjenkins-x0.1.371 of 1See more

nexus jenkins-x 0.1.37

1 of the 1 container images this version deploys carry CVE-2019-20387.

Container imageDigestPackageFixed in
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
libsolv@0.7.7-1.el8
0:0.7.11-1.el8

Open the chart page →

12,856
cloud-native-javamcouliba0.1.01 of 1See more

cloud-native-java mcouliba 0.1.0

1 of the 1 container images this version deploys carry CVE-2019-20387.

Container imageDigestPackageFixed in
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
libsolv@0.7.4-3.el8
0:0.7.11-1.el8

Open the chart page →

4,979
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2019-20387.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
libsolv@0.7.4-3.el8
0:0.7.11-1.el8

Open the chart page →

11,151
ploigosredhat-cop0.0.91 of 2See more

ploigos redhat-cop 0.0.9

1 of the 2 container images this version deploys carry CVE-2019-20387.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.66722d5041b47
libsolv@0.7.7-1.el8
0:0.7.11-1.el8

Open the chart page →

11,437

Container images carrying it

11 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
anchore/anchore-engine:v0.7.1ed9b3badd17c
libsolv@0.7.4-3.el8
0:0.7.11-1.el8
1
ctron/hawkbit-operator:0.1.48fdea8f76499
libsolv@0.7.7-1.el8
0:0.7.11-1.el8
1
ibmcom/ibmcloud-object-storage-driver:1.8.16c796a4c693b4
libsolv@0.7.7-1.el8
0:0.7.11-1.el8
1
ibmcom/ibmcloud-object-storage-plugin:1.8.169c73804b37a3
libsolv@0.7.7-1.el8
0:0.7.11-1.el8
1
ibmcom/opencontent-common-utils:1.1.2cd5065df7304
libsolv@0.6.35-6.el8
0:0.7.11-1.el8
1
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
libsolv@0.7.4-3.el8
0:0.7.11-1.el8
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
libsolv@0.7.7-1.el8
0:0.7.11-1.el8
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
libsolv@0.7.7-1.el8
0:0.7.11-1.el8
1
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
libsolv@0.7.4-3.el8
0:0.7.11-1.el8
1
quay.io/openshift/origin-cli:4.66722d5041b47
libsolv@0.7.7-1.el8
0:0.7.11-1.el8
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
libsolv@0.7.7-1.el8
0:0.7.11-1.el8
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.