StackRadar

CVE-2020-12049

Medium

Advisory

Published 5 Jun 2020In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.006
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
60
of 17,781 indexed, latest versions
Container images
61
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: dbus security update

Carried by container images the latest versions of 60 of 17,781 indexed charts deploy, on 61 images.

Affected packageAffected versionsFixed inImages
dbusrpm1:1.10.24-13.el7_6, 1:1.12.8-9.el81:1.10.24-14.el7_8, 1:1.12.8-10.el8_213
dbusdeb1.6.18-0ubuntu4.2, 1.6.18-0ubuntu4.3, 1.6.18-0ubuntu4.5, 1.8.20-0+deb8u1+6 more1.6.18-0ubuntu4.5+esm2, 1.8.22-0+deb8u3, 1.10.6-1ubuntu3.6, 1.12.2-1ubuntu1.246
dbusapk1.10.24-r1, 1.10.28-r01.12.28-r12
OSV records
ALPINE-CVE-2020-12049RHSA-2020:2894RHSA-2020:3014UBUNTU-CVE-2020-12049DLA-2235-1
Also known as
RHSA-2020:3298, USN-4398-1, USN-4398-2

Charts affected

60 by stars
ChartLatestAffected imagesRadar Score
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry CVE-2020-12049.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6
omecproject/onos-progran:1.0.05715e5648aa0
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6

Open the chart page →

88,546
comac-platformopencord0.0.171 of 11See more

comac-platform opencord 0.0.17

1 of the 11 container images this version deploys carry CVE-2020-12049.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6

Open the chart page →

26,211
mcord-cdn-remoteopencord0.1.61 of 2See more

mcord-cdn-remote opencord 0.1.6

1 of the 2 container images this version deploys carry CVE-2020-12049.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6

Open the chart page →

42,614
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2020-12049.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6

Open the chart page →

29,124
omec-control-planeopencord0.1.311 of 8See more

omec-control-plane opencord 0.1.31

1 of the 8 container images this version deploys carry CVE-2020-12049.

Container imageDigestPackageFixed in
omecproject/mme-exporter:paging-latestbcc5f19fd676
dbus@1.12.2-1ubuntu1.1
1.12.2-1ubuntu1.2

Open the chart page →

40,715
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2020-12049.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6

Open the chart page →

38,865
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry CVE-2020-12049.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
dbus@1.10.6-1ubuntu3.4
1.10.6-1ubuntu3.6

Open the chart page →

12,609
sebaopencord1.0.01 of 17See more

seba opencord 1.0.0

1 of the 17 container images this version deploys carry CVE-2020-12049.

Container imageDigestPackageFixed in
voltha/voltha-envoy:1.6.059ab2a00f712
dbus@1.6.18-0ubuntu4.5
1.6.18-0ubuntu4.5+esm2

Open the chart page →

93,855
issuegenopsmxVerified publisher1.0.21 of 1See more

issuegen opsmx 1.0.2

1 of the 1 container images this version deploys carry CVE-2020-12049.

Container imageDigestPackageFixed in
opsmx11/issuegen:v2.1.05c50ca123d88
dbus@1.6.18-0ubuntu4.5
1.6.18-0ubuntu4.5+esm2

Open the chart page →

26,339
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2020-12049.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
dbus@1:1.12.8-9.el8
1:1.12.8-10.el8_2

Open the chart page →

11,151

Container images carrying it

61 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
bde2020/hive:2.3.2-postgresql-metastore620267768985
dbus@1.8.22-0+deb8u1
1.8.22-0+deb8u3
4
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6
4
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6
3
danisla/hadoop:2.9.0255ba2dd739b
dbus@1.8.22-0+deb8u1
1.8.22-0+deb8u3
2
gradiant/hive:2.3.2-postgresql-metastoreaae4f8a21f8b
dbus@1.8.22-0+deb8u1
1.8.22-0+deb8u3
2
migmartri/prerender:latest486aacfd5aa9
dbus@1.8.22-0+deb8u1
1.8.22-0+deb8u3
2
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6
2
wurstmeister/zookeeper:latest7a7fd44a7210
dbus@1.6.18-0ubuntu4.2
1.6.18-0ubuntu4.5+esm2
2
a10networks/acos-prometheus-exporter:latest8dc58d434d71
dbus@1.12.2-1ubuntu1.1
1.12.2-1ubuntu1.2
1
anchore/anchore-engine:v0.7.1ed9b3badd17c
dbus@1:1.12.8-9.el8
1:1.12.8-10.el8_2
1
apacherocketmq/rocketmq-dashboard:1.0.024799aff6cf8
dbus@1.8.22-0+deb8u1
1.8.22-0+deb8u3
1
buoyantio/linkerd:1.1.2f4048edaca6f
dbus@1.8.22-0+deb8u1
1.8.22-0+deb8u3
1
chetangautamm/repo:Opensips_Buildb4b94155ff5a
dbus@1.6.18-0ubuntu4.5
1.6.18-0ubuntu4.5+esm2
1
cheyang/distributed-tf:1.6.046cc34755493
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6
1
cloudve/janis-terminal:latestaf56e77ca587
dbus@1.12.2-1ubuntu1.1
1.12.2-1ubuntu1.2
1
galaxy/galaxy-init:v18.010267bad550e6
dbus@1.6.18-0ubuntu4.5
1.6.18-0ubuntu4.5+esm2
1
galaxy/galaxy-stable:v18.018e577a626dfd
dbus@1.6.18-0ubuntu4.5
1.6.18-0ubuntu4.5+esm2
1
graylog2/server:2.4.3-38ff28c66e6c1
dbus@1.8.22-0+deb8u1
1.8.22-0+deb8u3
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6
1
ibmcom/app-nav-init:1.0.1240ff499eb5b
dbus@1:1.10.24-13.el7_6
1:1.10.24-14.el7_8
1
ibmcom/app-nav-ui:1.0.1e2a86997b36b
dbus@1:1.10.24-13.el7_6
1:1.10.24-14.el7_8
1
ibmcom/bai-admin-dev:19.0.202d882f2836e
dbus@1:1.10.24-13.el7_6
1:1.10.24-14.el7_8
1
ibmcom/bai-elasticsearch-dev:19.0.25441dba2fa00
dbus@1:1.10.24-13.el7_6
1:1.10.24-14.el7_8
1
ibmcom/bai-flink-dev:19.0.2e31ff09e8aad
dbus@1:1.10.24-13.el7_6
1:1.10.24-14.el7_8
1
ibmcom/bai-flink-zookeeper-dev:19.0.258548034cf55
dbus@1:1.10.24-13.el7_6
1:1.10.24-14.el7_8
1
ibmcom/bai-init-dev:19.0.2b138f1eac0b1
dbus@1:1.10.24-13.el7_6
1:1.10.24-14.el7_8
1
ibmcom/bai-setup-dev:19.0.2b8e8df11072d
dbus@1:1.10.24-13.el7_6
1:1.10.24-14.el7_8
1
ibmcom/ibmcloud-object-storage-driver:1.8.16c796a4c693b4
dbus@1:1.12.8-9.el8
1:1.12.8-10.el8_2
1
ibmcom/ibmcloud-object-storage-plugin:1.8.169c73804b37a3
dbus@1:1.12.8-9.el8
1:1.12.8-10.el8_2
1
ibmcom/icp-sert-bats:3.2.0b558f2b444ae
dbus@1.10.24-r1
1.12.28-r1
1
ibmcom/microclimate-theia:lateste17bdccc5030
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6
1
ibmcom/skydive:0.22.0395e60cc6e3d
dbus@1.12.2-1ubuntu1
1.12.2-1ubuntu1.2
1
ibmcom/voice-gateway-mr:1.0.5.00762ab1df6c1
dbus@1:1.10.24-13.el7_6
1:1.10.24-14.el7_8
1
jacobalberty/unifi:5.10.19c409924e2463
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6
1
kennethreitz/httpbin:latest599fe5e50731
dbus@1.12.2-1ubuntu1
1.12.2-1ubuntu1.2
1
muluder/prograncontrollermcord:0.1.843b597a93da7
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6
1
ncsapolyglot/converters-openjpeg:latest2ba4af461d51
dbus@1.8.22-0+deb8u1
1.8.22-0+deb8u3
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
dbus@1.12.2-1ubuntu1
1.12.2-1ubuntu1.2
1
omecproject/mme-exporter:paging-latestbcc5f19fd676
dbus@1.12.2-1ubuntu1.1
1.12.2-1ubuntu1.2
1
omecproject/onos-progran:1.0.05715e5648aa0
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6
1
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
dbus@1.10.6-1ubuntu3.3
1.10.6-1ubuntu3.6
1
opendatacube/pipelines:wofs-1.225d810e8504b8
dbus@1.12.2-1ubuntu1
1.12.2-1ubuntu1.2
1
opendatacube/restcube:latest91870111837c
dbus@1.12.2-1ubuntu1
1.12.2-1ubuntu1.2
1
opendatacube/wms:latest1b90cdf68831
dbus@1.12.2-1ubuntu1
1.12.2-1ubuntu1.2
1
opsmx11/issuegen:v2.1.05c50ca123d88
dbus@1.6.18-0ubuntu4.5
1.6.18-0ubuntu4.5+esm2
1
pe46dro/xbackbone-docker:3.3.309dfe3aa10f6
dbus@1.10.28-r0
1.12.28-r1
1
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
dbus@1:1.12.8-9.el8
1:1.12.8-10.el8_2
1
polyakov/hapi-fhir-jpaserver-example:latestdbcef69146b8
dbus@1.8.20-0+deb8u1
1.8.22-0+deb8u3
1
resouer/redis-slave:v2e2f198b49ba7
dbus@1.6.18-0ubuntu4.3
1.6.18-0ubuntu4.5+esm2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.