StackRadar

CVE-2019-3862

Critical

Advisory

Published 21 Mar 2019In the index since 8 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.081
95th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
8
of 17,781 indexed, latest versions
Container images
10
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libssh2 security update

Carried by container images the latest versions of 8 of 17,781 indexed charts deploy, on 10 images.

Affected packageAffected versionsFixed inImages
libssh2apk1.8.0-r41.8.1-r04
libssh2rpm1.4.3-12.el7_6.20:1.4.3-12.el7_6.35
libssh2deb1.5.0-2ubuntu0.11.5.0-2ubuntu0.1+esm11
OSV records
ALPINE-CVE-2019-3862RHSA-2019:1884UBUNTU-CVE-2019-3862
Also known as
USN-5308-1

Charts affected

8 by stars
ChartLatestAffected imagesRadar Score
atlantiscloudnativeapp3.3.11 of 1See more

atlantis cloudnativeapp 3.3.1

1 of the 1 container images this version deploys carry CVE-2019-3862.

Container imageDigestPackageFixed in
runatlantis/atlantis:v0.7.168fa470d1416
libssh2@1.8.0-r4
1.8.1-r0

Open the chart page →

1,512
k8s-spot-termination-handlercloudnativeapp1.2.11 of 1See more

k8s-spot-termination-handler cloudnativeapp 1.2.1

1 of the 1 container images this version deploys carry CVE-2019-3862.

Container imageDigestPackageFixed in
kubeaws/kube-spot-termination-notice-handler:1.13.0-1c9cd2ba4373a
libssh2@1.8.0-r4
1.8.1-r0

Open the chart page →

2,095
orientdbcloudnativeapp0.1.21 of 2See more

orientdb cloudnativeapp 0.1.2

1 of the 2 container images this version deploys carry CVE-2019-3862.

Container imageDigestPackageFixed in
library/orientdb:3.0.1318a6c004398f
libssh2@1.8.0-r4
1.8.1-r0

Open the chart page →

1,822
ser2sockgeek-cookbookVerified publisher5.4.21 of 1See more

ser2sock geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2019-3862.

Container imageDigestPackageFixed in
tenstartups/ser2sock:latest379d9338c720
libssh2@1.8.0-r4
1.8.1-r0

Open the chart page →

1,596
ibm-app-navigatoribm-charts1.0.15 of 5See more

ibm-app-navigator ibm-charts 1.0.1

5 of the 5 container images this version deploys carry CVE-2019-3862.

Container imageDigestPackageFixed in
ibmcom/app-nav-api:1.0.1ce9d2a564273
libssh2@1.4.3-12.el7_6.2
0:1.4.3-12.el7_6.3
ibmcom/app-nav-controller:1.0.1ee4624ba513d
libssh2@1.4.3-12.el7_6.2
0:1.4.3-12.el7_6.3
ibmcom/app-nav-init:1.0.1240ff499eb5b
libssh2@1.4.3-12.el7_6.2
0:1.4.3-12.el7_6.3
ibmcom/app-nav-ui:1.0.1e2a86997b36b
libssh2@1.4.3-12.el7_6.2
0:1.4.3-12.el7_6.3
ibmcom/app-nav-was-controller:1.0.1a6748792da26
libssh2@1.4.3-12.el7_6.2
0:1.4.3-12.el7_6.3

Open the chart page →

32,915
cdn-remoteopencord0.2.41 of 3See more

cdn-remote opencord 0.2.4

1 of the 3 container images this version deploys carry CVE-2019-3862.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
libssh2@1.5.0-2ubuntu0.1
1.5.0-2ubuntu0.1+esm1

Open the chart page →

63,223
mcord-cdn-remoteopencord0.1.61 of 2See more

mcord-cdn-remote opencord 0.1.6

1 of the 2 container images this version deploys carry CVE-2019-3862.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
libssh2@1.5.0-2ubuntu0.1
1.5.0-2ubuntu0.1+esm1

Open the chart page →

42,614
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2019-3862.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
libssh2@1.5.0-2ubuntu0.1
1.5.0-2ubuntu0.1+esm1

Open the chart page →

29,124

Container images carrying it

10 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
libssh2@1.5.0-2ubuntu0.1
1.5.0-2ubuntu0.1+esm1
3
ibmcom/app-nav-api:1.0.1ce9d2a564273
libssh2@1.4.3-12.el7_6.2
0:1.4.3-12.el7_6.3
1
ibmcom/app-nav-controller:1.0.1ee4624ba513d
libssh2@1.4.3-12.el7_6.2
0:1.4.3-12.el7_6.3
1
ibmcom/app-nav-init:1.0.1240ff499eb5b
libssh2@1.4.3-12.el7_6.2
0:1.4.3-12.el7_6.3
1
ibmcom/app-nav-ui:1.0.1e2a86997b36b
libssh2@1.4.3-12.el7_6.2
0:1.4.3-12.el7_6.3
1
ibmcom/app-nav-was-controller:1.0.1a6748792da26
libssh2@1.4.3-12.el7_6.2
0:1.4.3-12.el7_6.3
1
kubeaws/kube-spot-termination-notice-handler:1.13.0-1c9cd2ba4373a
libssh2@1.8.0-r4
1.8.1-r0
1
library/orientdb:3.0.1318a6c004398f
libssh2@1.8.0-r4
1.8.1-r0
1
runatlantis/atlantis:v0.7.168fa470d1416
libssh2@1.8.0-r4
1.8.1-r0
1
tenstartups/ser2sock:latest379d9338c720
libssh2@1.8.0-r4
1.8.1-r0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.