CVE-2020-11655
HighAdvisory
Published 9 Apr 2020In the index since 6 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.5
- base score, highest
- EPSS
- 0.043
- 91st percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 128
- of 17,781 indexed, latest versions
- Container images
- 105
- deployed by those charts
- Fix available
- 2 of 2
- affected packages
sqlite3 - security update
Carried by container images the latest versions of 128 of 17,781 indexed charts deploy, on 105 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| sqliteapk | 3.24.0-r0, 3.26.0-r3, 3.28.0-r0, 3.28.0-r1+2 more | 3.25.0-r4, 3.28.0-r3, 3.30.1-r2 | 73 |
| sqlite3deb | 3.8.7.1-1+deb8u2, 3.8.7.1-1+deb8u4 | 3.8.7.1-1+deb8u5 | 32 |
- OSV records
- ALPINE-CVE-2020-11655DLA-2203-1
Charts affected
128 by stars
Container images carrying it
105 by charts deploying them
A fixed version is listed for 2 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| library/ | 5284ba74a106 | sqlite3 | 3.8.7.1-1+deb8u5 | 7 |
| gradiant/ | a1ee6de94c04 | sqlite | 3.25.0-r4 | 4 |
| library/ | 6216f64ab88f | sqlite3 | 3.8.7.1-1+deb8u5 | 4 |
| apache/ | e8b7c4ddd069 | sqlite | 3.28.0-r3 | 3 |
| apache/ | 0bd3b25c4be4 | sqlite | 3.28.0-r3 | 3 |
| buddy/ | 097c897f8b54 | sqlite | 3.30.1-r2 | 3 |
| kiwigrid/ | 7b98eecdf6d1 | sqlite | 3.30.1-r2 | 3 |
| mautic/ | a954c5868d76 | sqlite3 | 3.8.7.1-1+deb8u5 | 3 |
| apachepulsar/ | b341ef76a852 | sqlite | 3.28.0-r3 | 2 |
| architectminds/ | 9735e59a1085 | sqlite | 3.28.0-r3 | 2 |
| danisla/ | 255ba2dd739b | sqlite3 | 3.8.7.1-1+deb8u5 | 2 |
| fjvela/ | 85727d4079d6 | sqlite | 3.30.1-r2 | 2 |
| gradiant/ | c33d53913869 | sqlite | 3.28.0-r3 | 2 |
| gradiant/ | 97657d56e927 | sqlite | 3.28.0-r3 | 2 |
| library/ | e12594db7297 | sqlite | 3.25.0-r4 | 2 |
| migmartri/ | 486aacfd5aa9 | sqlite3 | 3.8.7.1-1+deb8u5 | 2 |
| neuvector/ | f1b7d666eae0 | sqlite | 3.30.1-r2 | 2 |
| omecproject/ | 7c17a7b1d1ef | sqlite | 3.28.0-r3 | 2 |
| pypiserver/ | 303ac89b2aa2 | sqlite | 3.28.0-r3 | 2 |
| a5huynh/ | 0c7307d31ca8 | sqlite3 | 3.8.7.1-1+deb8u5 | 1 |
| apacheignite/ | d7deab68b8fa | sqlite | 3.25.0-r4 | 1 |
| apacherocketmq/ | 24799aff6cf8 | sqlite3 | 3.8.7.1-1+deb8u5 | 1 |
| apache/ | e2be712fc4f4 | sqlite | 3.28.0-r3 | 1 |
| apache/ | 1bd5756f6273 | sqlite | 3.28.0-r3 | 1 |
| apache/ | 641237e0299b | sqlite | 3.28.0-r3 | 1 |
| apache/ | 67d50e4deff4 | sqlite | 3.28.0-r3 | 1 |
| apicurio/ | 44eeddd3562c | sqlite | 3.30.1-r2 | 1 |
| billimek/ | 801bba1228ac | sqlite3 | 3.8.7.1-1+deb8u5 | 1 |
| billimek/ | bf8158556035 | sqlite3 | 3.8.7.1-1+deb8u5 | 1 |
| blacktop/ | fc5e68e2f5ab | sqlite | 3.28.0-r3 | 1 |
| bootc/ | f1383295e7be | sqlite | 3.28.0-r3 | 1 |
| buoyantio/ | f4048edaca6f | sqlite3 | 3.8.7.1-1+deb8u5 | 1 |
| camptocamp/ | 9dec019e4c62 | sqlite3 | 3.8.7.1-1+deb8u5 | 1 |
| camptocamp/ | 5e55370dd292 | sqlite3 | 3.8.7.1-1+deb8u5 | 1 |
| camptocamp/ | 073be594d145 | sqlite3 | 3.8.7.1-1+deb8u5 | 1 |
| chorss/ | 5c549cacb8ab | sqlite | 3.28.0-r3 | 1 |
| confluentinc/ | 1bbda887bc53 | sqlite3 | 3.8.7.1-1+deb8u5 | 1 |
| confluentinc/ | c87b1c07fb53 | sqlite3 | 3.8.7.1-1+deb8u5 | 1 |
| dpage/ | a5a656e1d5fd | sqlite | 3.28.0-r3 | 1 |
| fimperato/ | 604012b77841 | sqlite | 3.28.0-r3 | 1 |
| fiware/ | 3e3ec88d59ed | sqlite3 | 3.8.7.1-1+deb8u5 | 1 |
| folioci/ | 1b57d690d568 | sqlite | 3.28.0-r3 | 1 |
| gocd/ | 53588bd3221f | sqlite | 3.28.0-r3 | 1 |
| gocd/ | 2da45cb09d57 | sqlite | 3.28.0-r3 | 1 |
| gomods/ | d714c7ff0231 | sqlite | 3.30.1-r2 | 1 |
| gradiant/ | 45eceb1bc55c | sqlite | 3.25.0-r4 | 1 |
| graylog2/ | 8ff28c66e6c1 | sqlite3 | 3.8.7.1-1+deb8u5 | 1 |
| greenbirdit/ | e99d53bdc944 | sqlite | 3.25.0-r4 | 1 |
| hazelcast/ | ca7d5589744f | sqlite | 3.25.0-r4 | 1 |
| hazelcast/ | df495e64ea65 | sqlite | 3.28.0-r3 | 1 |