StackRadar

CVE-2019-5481

Critical

Advisory

Published 11 Sept 2019In the index since 6 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.075
94th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
55
of 17,781 indexed, latest versions
Container images
37
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 55 of 17,781 indexed charts deploy, on 37 images.

Affected packageAffected versionsFixed inImages
curlapk7.57.0-r0, 7.58.0-r0, 7.59.0-r0, 7.60.0-r1+7 more7.61.1-r3, 7.64.0-r3, 7.66.0-r029
curldeb7.58.0-2ubuntu3.3, 7.58.0-2ubuntu3.5, 7.58.0-2ubuntu3.6, 7.58.0-2ubuntu3.77.58.0-2ubuntu3.88
OSV records
ALPINE-CVE-2019-5481UBUNTU-CVE-2019-5481
Also known as
USN-4129-1

Charts affected

55 by stars
ChartLatestAffected imagesRadar Score
mattermost-team-editionmattermostVerified publisher6.6.1061 of 4See more

mattermost-team-edition mattermost 6.6.106

1 of the 4 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
appropriate/curl:latestc8bf5bbec639
curl@7.59.0-r0
7.61.1-r3

Open the chart page →

1,475
weave-scopecloudnativeapp1.0.01 of 1See more

weave-scope cloudnativeapp 1.0.0

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
weaveworks/scope:1.10.12887407cb701
curl@7.61.1-r1
7.61.1-r3

Open the chart page →

299
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
appropriate/curl:latestc8bf5bbec639
curl@7.59.0-r0
7.61.1-r3

Open the chart page →

8,722
aws-ecr-credentialarchitectminds1.4.21 of 1See more

aws-ecr-credential architectminds 1.4.2

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
architectminds/aws-kubectl:1.19735e59a1085
curl@7.65.1-r0
7.66.0-r0

Open the chart page →

1,437
weave-scopedasmeta1.0.41 of 1See more

weave-scope dasmeta 1.0.4

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
weaveworks/scope:1.10.12887407cb701
curl@7.61.1-r1
7.61.1-r3

Open the chart page →

299
cubefscubefs3.2.01 of 10See more

cubefs cubefs 3.2.0

1 of the 10 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
library/consul:1.6.194cdbd83f24e
curl@7.64.0-r2
7.64.0-r3

Open the chart page →

15,891
hbasedmwm-bigdataVerified publisher0.1.61 of 5See more

hbase dmwm-bigdata 0.1.6

1 of the 5 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
gradiant/hbase-base:2.0.1a1ee6de94c04
curl@7.61.1-r2
7.61.1-r3

Open the chart page →

13,392
opentsdbdmwm-bigdataVerified publisher0.1.71 of 6See more

opentsdb dmwm-bigdata 0.1.7

1 of the 6 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
gradiant/hbase-base:2.0.1a1ee6de94c04
curl@7.61.1-r2
7.61.1-r3

Open the chart page →

17,511
hbasegradiant-bigdataVerified publisher0.1.61 of 5See more

hbase gradiant-bigdata 0.1.6

1 of the 5 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
gradiant/hbase-base:2.0.1a1ee6de94c04
curl@7.61.1-r2
7.61.1-r3

Open the chart page →

13,392
mattermost-enterprise-editionmattermostVerified publisher2.6.1031 of 3See more

mattermost-enterprise-edition mattermost 2.6.103

1 of the 3 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
appropriate/curl:latestc8bf5bbec639
curl@7.59.0-r0
7.61.1-r3

Open the chart page →

3,600
vearchvearch3.3.41 of 4See more

vearch vearch 3.3.4

1 of the 4 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
library/consul:1.6.194cdbd83f24e
curl@7.64.0-r2
7.64.0-r3

Open the chart page →

5,008
sshdwiremindVerified publisher0.1.11 of 1See more

sshd wiremind 0.1.1

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
wiremind/sshd:latestb3d63ce7d198
curl@7.60.0-r1
7.61.1-r3

Open the chart page →

1,171
satisfyanapsixVerified publisher1.1.31 of 1See more

satisfy anapsix 1.1.3

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
anapsix/satisfydigest-pinnedfae78e3809e9
curl@7.61.1-r2
7.61.1-r3

Open the chart page →

1,572
aws-ecr-credentialaws-ecr-credentialVerified publisher1.5.21 of 1See more

aws-ecr-credential aws-ecr-credential 1.5.2

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
architectminds/aws-kubectl:1.19735e59a1085
curl@7.65.1-r0
7.66.0-r0

Open the chart page →

1,437
ombibryanalves0.4.01 of 1See more

ombi bryanalves 0.4.0

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
linuxserver/ombi:3.0.4572-ls452fbb21fb4903
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.8

Open the chart page →

10,776
dex-k8s-authenticatorchoerodon1.2.01 of 1See more

dex-k8s-authenticator choerodon 1.2.0

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
mintel/dex-k8s-authenticator:1.2.0a3789f95d734
curl@7.65.1-r0
7.66.0-r0

Open the chart page →

708
chubaofschubaofs1.5.11 of 6See more

chubaofs chubaofs 1.5.1

1 of the 6 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
library/consul:1.6.194cdbd83f24e
curl@7.64.0-r2
7.64.0-r3

Open the chart page →

3,595
atlantiscloudnativeapp3.3.11 of 1See more

atlantis cloudnativeapp 3.3.1

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
runatlantis/atlantis:v0.7.168fa470d1416
curl@7.64.0-r1
7.64.0-r3

Open the chart page →

1,512
daskcloudnativeapp2.2.11 of 2See more

dask cloudnativeapp 2.2.1

1 of the 2 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
daskdev/dask-notebook:1.1.0052630f5ca04
curl@7.58.0-2ubuntu3.5
7.58.0-2ubuntu3.8

Open the chart page →

29,901
gocdcloudnativeapp1.9.22 of 2See more

gocd cloudnativeapp 1.9.2

2 of the 2 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
gocd/gocd-agent-alpine-3.9:v19.3.053588bd3221f
curl@7.64.0-r1
7.64.0-r3
gocd/gocd-server:v19.3.02da45cb09d57
curl@7.64.0-r1
7.64.0-r3

Open the chart page →

9,144
hazelcastcloudnativeapp1.3.11 of 1See more

hazelcast cloudnativeapp 1.3.1

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
hazelcast/hazelcast:3.11.2ca7d5589744f
curl@7.61.1-r1
7.61.1-r3

Open the chart page →

4,982
hazelcast-jetcloudnativeapp1.1.01 of 1See more

hazelcast-jet cloudnativeapp 1.1.0

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
hazelcast/hazelcast-jet:3.0df495e64ea65
curl@7.64.0-r1
7.64.0-r3

Open the chart page →

5,326
k8s-spot-termination-handlercloudnativeapp1.2.11 of 1See more

k8s-spot-termination-handler cloudnativeapp 1.2.1

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
kubeaws/kube-spot-termination-notice-handler:1.13.0-1c9cd2ba4373a
curl@7.63.0-r0
7.64.0-r3

Open the chart page →

2,095
katafygiocloudnativeapp0.4.01 of 1See more

katafygio cloudnativeapp 0.4.0

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
bpineau/katafygio:v0.7.176edd9d121b8
curl@7.60.0-r1
7.61.1-r3

Open the chart page →

893
openibancloudnativeapp1.0.01 of 1See more

openiban cloudnativeapp 1.0.0

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
fourcube/openiban:1.0.15091df635f7e
curl@7.61.0-r0
7.61.1-r3

Open the chart page →

922
orientdbcloudnativeapp0.1.21 of 2See more

orientdb cloudnativeapp 0.1.2

1 of the 2 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
library/orientdb:3.0.1318a6c004398f
curl@7.63.0-r0
7.64.0-r3

Open the chart page →

1,822
prometheus-operatorcloudnativeapp6.4.01 of 7See more

prometheus-operator cloudnativeapp 6.4.0

1 of the 7 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
squareup/ghostunnel:v1.4.180674e1ec91c
curl@7.61.1-r2
7.61.1-r3

Open the chart page →

2,954
satisfycloudnativeapp1.0.01 of 1See more

satisfy cloudnativeapp 1.0.0

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
anapsix/satisfydigest-pinnedfae78e3809e9
curl@7.61.1-r2
7.61.1-r3

Open the chart page →

1,572
couchpotatocronce0.0.11 of 1See more

couchpotato cronce 0.0.1

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
linuxserver/couchpotato:75e576ee-ls389cd8d5fb1ac
curl@7.61.1-r1
7.61.1-r3

Open the chart page →

3,871
datacubedatacube-charts0.18.21 of 1See more

datacube datacube-charts 0.18.2

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
opendatacube/wms:latest1b90cdf68831
curl@7.58.0-2ubuntu3.7
7.58.0-2ubuntu3.8

Open the chart page →

27,728
datacube-processingdatacube-charts0.1.11 of 2See more

datacube-processing datacube-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
opendatacube/pipelines:wofs-1.225d810e8504b8
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.8

Open the chart page →

22,405
restcubedatacube-charts0.2.91 of 1See more

restcube datacube-charts 0.2.9

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
opendatacube/restcube:latest91870111837c
curl@7.58.0-2ubuntu3.7
7.58.0-2ubuntu3.8

Open the chart page →

24,335
amundsenduyet1.1.01 of 7See more

amundsen duyet 1.1.0

1 of the 7 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
appropriate/curl:latestc8bf5bbec639
curl@7.59.0-r0
7.61.1-r3

Open the chart page →

11,174
ser2sockgeek-cookbookVerified publisher5.4.21 of 1See more

ser2sock geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
tenstartups/ser2sock:latest379d9338c720
curl@7.64.0-r1
7.64.0-r3

Open the chart page →

1,596
teedygeek-cookbookVerified publisher6.2.01 of 1See more

teedy geek-cookbook 6.2.0

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
sismics/docs:v1.10f4b0ef019cf1
curl@7.58.0-2ubuntu3.3
7.58.0-2ubuntu3.8

Open the chart page →

26,944
opentsdbgradiant-bigdataVerified publisher0.1.71 of 6See more

opentsdb gradiant-bigdata 0.1.7

1 of the 6 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
gradiant/hbase-base:2.0.1a1ee6de94c04
curl@7.61.1-r2
7.61.1-r3

Open the chart page →

17,511
ibm-glusterfsibm-charts1.4.01 of 3See more

ibm-glusterfs ibm-charts 1.4.0

1 of the 3 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
ibmcom/icp-storage-util:3.2.0c44e1ef21075
curl@7.64.0-r1
7.64.0-r3

Open the chart page →

1,316
ibm-kerify-devibm-charts1.0.01 of 1See more

ibm-kerify-dev ibm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
ibmcom/icp-sert-bats:3.2.0b558f2b444ae
curl@7.64.0-r2
7.64.0-r3

Open the chart page →

8,221
ibm-skydive-devibm-charts1.1.21 of 1See more

ibm-skydive-dev ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
ibmcom/skydive:0.22.0395e60cc6e3d
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.8

Open the chart page →

12,611
giteajenkins-x1.3.121 of 3See more

gitea jenkins-x 1.3.12

1 of the 3 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
gitea/gitea:1.4146196cbc344
curl@7.60.0-r1
7.61.1-r3

Open the chart page →

2,407
jx-app-giteajenkins-x0.0.21 of 3See more

jx-app-gitea jenkins-x 0.0.2

1 of the 3 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
gitea/gitea:1.4146196cbc344
curl@7.60.0-r1
7.61.1-r3

Open the chart page →

2,407
metricsjenkins-x0.0.61 of 9See more

metrics jenkins-x 0.0.6

1 of the 9 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
appropriate/curl:latestc8bf5bbec639
curl@7.59.0-r0
7.61.1-r3

Open the chart page →

551
influxdblsst-sqre3.1.11 of 2See more

influxdb lsst-sqre 3.1.1

1 of the 2 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
appropriate/curl:latestc8bf5bbec639
curl@7.59.0-r0
7.61.1-r3

Open the chart page →

758
sasquatchlsst-sqre0.1.131 of 6See more

sasquatch lsst-sqre 0.1.13

1 of the 6 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
appropriate/curl:latestc8bf5bbec639
curl@7.59.0-r0
7.61.1-r3

Open the chart page →

9,332
mattermost-team-editionmattermost-team-edition6.6.831 of 4See more

mattermost-team-edition mattermost-team-edition 6.6.83

1 of the 4 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
appropriate/curl:latestc8bf5bbec639
curl@7.59.0-r0
7.61.1-r3

Open the chart page →

4,089
flaggermesosphere0.21.01 of 2See more

flagger mesosphere 0.21.0

1 of the 2 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
weaveworks/flagger-loadtester:0.9.03cdac6928a63
curl@7.61.1-r2
7.61.1-r3

Open the chart page →

6,048
cdn-remoteopencord0.2.41 of 3See more

cdn-remote opencord 0.2.4

1 of the 3 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.8

Open the chart page →

63,223
comacopencord1.0.01 of 9See more

comac opencord 1.0.0

1 of the 9 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
curl@7.64.0-r2
7.64.0-r3

Open the chart page →

88,546
comac-platformopencord0.0.171 of 11See more

comac-platform opencord 0.0.17

1 of the 11 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
curl@7.64.0-r2
7.64.0-r3

Open the chart page →

26,211
mattermost-team-editionopenshift6.6.831 of 4See more

mattermost-team-edition openshift 6.6.83

1 of the 4 container images this version deploys carry CVE-2019-5481.

Container imageDigestPackageFixed in
appropriate/curl:latestc8bf5bbec639
curl@7.59.0-r0
7.61.1-r3

Open the chart page →

4,089

Container images carrying it

37 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
appropriate/curl:latestc8bf5bbec639
curl@7.59.0-r0
7.61.1-r3
9
gradiant/hbase-base:2.0.1a1ee6de94c04
curl@7.61.1-r2
7.61.1-r3
4
anapsix/satisfyfae78e3809e9
curl@7.61.1-r2
7.61.1-r3
3
library/consul:1.6.194cdbd83f24e
curl@7.64.0-r2
7.64.0-r3
3
architectminds/aws-kubectl:1.19735e59a1085
curl@7.65.1-r0
7.66.0-r0
2
gitea/gitea:1.4146196cbc344
curl@7.60.0-r1
7.61.1-r3
2
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
curl@7.64.0-r2
7.64.0-r3
2
pstauffer/curl:latest2663156457ab
curl@7.60.0-r1
7.61.1-r3
2
weaveworks/scope:1.10.12887407cb701
curl@7.61.1-r1
7.61.1-r3
2
bpineau/katafygio:v0.7.176edd9d121b8
curl@7.60.0-r1
7.61.1-r3
1
daskdev/dask-notebook:1.1.0052630f5ca04
curl@7.58.0-2ubuntu3.5
7.58.0-2ubuntu3.8
1
fourcube/openiban:1.0.15091df635f7e
curl@7.61.0-r0
7.61.1-r3
1
gocd/gocd-agent-alpine-3.9:v19.3.053588bd3221f
curl@7.64.0-r1
7.64.0-r3
1
gocd/gocd-server:v19.3.02da45cb09d57
curl@7.64.0-r1
7.64.0-r3
1
hazelcast/hazelcast:3.11.2ca7d5589744f
curl@7.61.1-r1
7.61.1-r3
1
hazelcast/hazelcast-jet:3.0df495e64ea65
curl@7.64.0-r1
7.64.0-r3
1
ibmcom/icp-sert-bats:3.2.0b558f2b444ae
curl@7.64.0-r2
7.64.0-r3
1
ibmcom/icp-storage-util:3.2.0c44e1ef21075
curl@7.64.0-r1
7.64.0-r3
1
ibmcom/skydive:0.22.0395e60cc6e3d
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.8
1
kubeaws/kube-spot-termination-notice-handler:1.13.0-1c9cd2ba4373a
curl@7.63.0-r0
7.64.0-r3
1
library/consul:1.0.66ffe55dcc100
curl@7.58.0-r0
7.61.1-r3
1
library/orientdb:3.0.1318a6c004398f
curl@7.63.0-r0
7.64.0-r3
1
linuxserver/couchpotato:75e576ee-ls389cd8d5fb1ac
curl@7.61.1-r1
7.61.1-r3
1
linuxserver/ombi:3.0.4572-ls452fbb21fb4903
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.8
1
mintel/dex-k8s-authenticator:1.2.0a3789f95d734
curl@7.65.1-r0
7.66.0-r0
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.8
1
oomk8s/consul:1.0.0ba60171909c7
curl@7.58.0-r0
7.61.1-r3
1
opendatacube/pipelines:wofs-1.225d810e8504b8
curl@7.58.0-2ubuntu3.6
7.58.0-2ubuntu3.8
1
opendatacube/restcube:latest91870111837c
curl@7.58.0-2ubuntu3.7
7.58.0-2ubuntu3.8
1
opendatacube/wms:latest1b90cdf68831
curl@7.58.0-2ubuntu3.7
7.58.0-2ubuntu3.8
1
runatlantis/atlantis:v0.7.168fa470d1416
curl@7.64.0-r1
7.64.0-r3
1
sismics/docs:v1.10f4b0ef019cf1
curl@7.58.0-2ubuntu3.3
7.58.0-2ubuntu3.8
1
squareup/ghostunnel:v1.4.180674e1ec91c
curl@7.61.1-r2
7.61.1-r3
1
stakater/logrotate:3.13.05c0e01c23993
curl@7.57.0-r0
7.61.1-r3
1
tenstartups/ser2sock:latest379d9338c720
curl@7.64.0-r1
7.64.0-r3
1
weaveworks/flagger-loadtester:0.9.03cdac6928a63
curl@7.61.1-r2
7.61.1-r3
1
wiremind/sshd:latestb3d63ce7d198
curl@7.60.0-r1
7.61.1-r3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.