StackRadar

CVE-2020-14145

Medium

Advisory

Published 29 Jun 2020In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.021
80th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
192
of 17,781 indexed, latest versions
Container images
190
deployed by those charts
Fix available
2 of 3
affected packages

Red Hat Security Advisory: openssh security update

Carried by container images the latest versions of 192 of 17,781 indexed charts deploy, on 190 images.

Affected packageAffected versionsFixed inImages
opensshdeb1:9.2p1-2, 1:9.2p1-2+deb12u1, 1:9.2p1-2+deb12u2, 1:9.2p1-2+deb12u3+10 moreno fix listed176
opensshapk8.3_p1-r08.3_p1-r18
opensshrpm8.0p1-4.el8_1, 8.0p1-6.el8_4.2, 8.0p1-9.el80:8.0p1-10.el86
OSV records
ALPINE-CVE-2020-14145DEBIAN-CVE-2020-14145RHSA-2021:4368

Charts affected

192 by stars
ChartLatestAffected imagesRadar Score
planectlplanectlVerified publisher0.7.01 of 10See more

planectl planectl 0.7.0

1 of the 10 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/node:208f693eaa7e0a
openssh@1:9.2p1-2+deb12u9
no fix listed

Open the chart page →

25,934
pod-birdspod-birds0.1.01 of 1See more

pod-birds pod-birds 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
teknas09/bird-pod:latest12a1fa85c4aa
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

12,912
static-sitepodzone-chartsVerified publisher0.1.11 of 2See more

static-site podzone-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
openssh@1:9.2p1-2+deb12u1
no fix listed

Open the chart page →

6,565
priceapp-chartpriceapp0.1.01 of 1See more

priceapp-chart priceapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
ildarmukhametzyanov/priceapp:0.115d23720a3ee
openssh@1:9.2p1-2
no fix listed

Open the chart page →

8,169
pyredispyredis-helm0.1.01 of 2See more

pyredis pyredis-helm 0.1.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
avinash263/pyredis263:latestaa2b8727f1a6
openssh@1:9.2p1-2
no fix listed

Open the chart page →

14,537
mychartpythonweb0.1.01 of 1See more

mychart pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

12,566
mypythonpythonweb0.1.01 of 1See more

mypython pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

12,566
rada-platformrada-platform0.1.01 of 7See more

rada-platform rada-platform 0.1.0

1 of the 7 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
apache/airflow:2.10.2-python3.9ce90bdc3d2af
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

21,211
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
openssh@8.0p1-9.el8
0:8.0p1-10.el8

Open the chart page →

29,227
redminerestic-pvc-backupVerified publisher0.2.61 of 1See more

redmine restic-pvc-backup 0.2.6

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

4,240
esphomeretsamedocVerified publisher2026.2.51 of 1See more

esphome retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
esphome/esphome:2024.3.09ab8cc88b28c
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

7,431
juicepassproxyretsamedocVerified publisher2026.2.41 of 1See more

juicepassproxy retsamedoc 2026.2.4

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
openssh@1:9.2p1-2+deb12u5
no fix listed

Open the chart page →

3,938
kresusrm3lVerified publisher0.2.11 of 3See more

kresus rm3l 0.2.1

1 of the 3 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
bnjbvr/kresus:0.22.137e216b182c8
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

15,591
ai-agentromholdings0.0.11 of 1See more

ai-agent romholdings 0.0.1

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

9,607
devtron-enterpriseromholdings48.0.02 of 28See more

devtron-enterprise romholdings 48.0.0

2 of the 28 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssh@1:9.2p1-2+deb12u1
no fix listed
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
openssh@1:9.2p1-2+deb12u7
no fix listed

Open the chart page →

68,240
devtron-operatorromholdings0.23.31 of 11See more

devtron-operator romholdings 0.23.3

1 of the 11 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
openssh@1:9.2p1-2+deb12u1
no fix listed

Open the chart page →

32,902
transmissionryuunosukeds31.6.21 of 2See more

transmission ryuunosukeds3 1.6.2

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/python:3.9da5aee29682d
openssh@1:10.0p1-7
no fix listed

Open the chart page →

9,534
safe-stacksafe-global0.1.01 of 9See more

safe-stack safe-global 0.1.0

1 of the 9 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
gjeanmart/safe-ganache-node:latest926264c8f2d1
openssh@1:9.2p1-2
no fix listed

Open the chart page →

19,560
safe-transaction-servicesafe-global0.1.01 of 6See more

safe-transaction-service safe-global 0.1.0

1 of the 6 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
gjeanmart/safe-ganache-node:latest926264c8f2d1
openssh@1:9.2p1-2
no fix listed

Open the chart page →

16,620
airflowsb-helm-charts0.3.01 of 1See more

airflow sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
apache/airflow:2.8.1e5560ad0b86e
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

10,209
s3-backupschichtelVerified publisher0.10.01 of 1See more

s3-backup schichtel 0.10.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
ghcr.io/pschichtel/s3-backup:0.7.017666811f6a7
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

2,343
otterwikischmitzis0.1.01 of 1See more

otterwiki schmitzis 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
redimp/otterwiki:2778bf30da3da
openssh@1:9.2p1-2+deb12u10
no fix listed

Open the chart page →

3,218
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
openssh@8.0p1-6.el8_4.2
0:8.0p1-10.el8

Open the chart page →

21,997
infisicalsinextraVerified publisher0.6.01 of 1See more

infisical sinextra 0.6.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
infisical/infisical:v0.165.602082bf13163
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

3,014
slothsloth0.16.01 of 2See more

sloth sloth 0.16.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
openssh@1:10.0p1-7
no fix listed

Open the chart page →

3,962
spacecapybara-chartspacecapy1.0.491 of 2See more

spacecapybara-chart spacecapy 1.0.49

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
sashafefler/spacecapybara_app:latestf96d7804c0ca
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

11,888
servicexssl-hep1.8.510 of 16See more

servicex ssl-hep 1.8.5

10 of the 16 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/python:3.1070c9cc675605
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_app:v1.8.51d12f943cec5
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
openssh@1:10.0p1-7+deb13u4
no fix listed
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

66,266
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
openssh@8.0p1-6.el8_4.2
0:8.0p1-10.el8

Open the chart page →

28,165
jenkinsstakaterVerified publisher0.21.01 of 1See more

jenkins stakater 0.21.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

2,476
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
thongngo3301/stakefish:latesta341af5976e3
openssh@1:9.2p1-2
no fix listed

Open the chart page →

20,223
ssv-nodestakewise2.2.01 of 2See more

ssv-node stakewise 2.2.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
openssh@1:9.2p1-2+deb12u4
no fix listed

Open the chart page →

6,779
verbasubstratusVerified publisher0.4.01 of 1See more

verba substratus 0.4.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
substratusai/verba:v0.4.0-baseURL261695be635eb
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

13,390
cronjobt3n0.1.01 of 1See more

cronjob t3n 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
library/python:3.8d41127070014
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

11,199
helm-testtest-helm-artifacthubVerified publisher1.0.01 of 2See more

helm-test test-helm-artifacthub 1.0.0

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
carlosmz87/test_helm_backend:latest8ffa63aa995d
openssh@1:9.2p1-2+deb12u3
no fix listed

Open the chart page →

11,648
codegentest-opea1.0.01 of 5See more

codegen test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
opea/codegen-ui:1.02bee4eb66f3e
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

28,814
codetranstest-opea1.0.01 of 5See more

codetrans test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
opea/codetrans-ui:1.03ef121f34610
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

28,385
docsumtest-opea1.0.01 of 5See more

docsum test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
opea/docsum-ui:1.07f854e9bffaf
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

28,858
jenkinstnh2.7.11 of 2See more

jenkins tnh 2.7.1

1 of the 2 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

4,423
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

17,323
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
openssh@1:9.2p1-2
no fix listed

Open the chart page →

14,358
jenkinswebencryptor1.9.181 of 1See more

jenkins webencryptor 1.9.18

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

2,476
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2020-14145.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

5,542

Container images carrying it

190 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
opennode/waldur-mastermind:8.1.24c82b15d9042
openssh@1:10.0p1-7+deb13u4
no fix listed
1
openproject/hocuspocus:release-338001b288dc1359dfb5
openssh@1:9.2p1-2+deb12u7
no fix listed
1
pretix/standalone:2026.7.05df3b7aa852e
openssh@1:10.0p1-7+deb13u4
no fix listed
1
redimp/otterwiki:2778bf30da3da
openssh@1:9.2p1-2+deb12u10
no fix listed
1
runatlantis/atlantis:v0.16.145fbaf7e207c
openssh@8.3_p1-r0
8.3_p1-r1
1
sashafefler/spacecapybara_app:latestf96d7804c0ca
openssh@1:9.2p1-2+deb12u3
no fix listed
1
seldonio/seldon-request-logger:1.11.24e985d2006a8
openssh@8.0p1-6.el8_4.2
0:8.0p1-10.el8
1
sirrend/helmup-engine:0.1.13699e79e3d4e2
openssh@1:9.2p1-2+deb12u3
no fix listed
1
sirrend/helmup-github-scraper:0.1.47ca688c7abf5
openssh@1:9.2p1-2+deb12u3
no fix listed
1
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
openssh@1:9.2p1-2
no fix listed
1
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
openssh@1:9.2p1-2
no fix listed
1
socialmediamacroscope/preprocessing:0.1.3ca863306314b
openssh@1:9.2p1-2
no fix listed
1
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
openssh@1:9.2p1-2
no fix listed
1
sslhep/servicex_app:v1.8.51d12f943cec5
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
openssh@1:10.0p1-7+deb13u4
no fix listed
1
substratusai/verba:v0.4.0-baseURL261695be635eb
openssh@1:9.2p1-2+deb12u2
no fix listed
1
sysnet4admin/colosseum-cms:loge74b43c7f492
openssh@1:9.2p1-2+deb12u6
no fix listed
1
sysnet4admin/colosseum-prm:log5802bfcd7fed
openssh@1:9.2p1-2+deb12u6
no fix listed
1
t3nde/ssh-jump:latest7cc268408e1a
openssh@8.3_p1-r0
8.3_p1-r1
1
teknas09/bird-pod:latest12a1fa85c4aa
openssh@1:9.2p1-2+deb12u2
no fix listed
1
theradius/loggia:0.463ba348546ec
openssh@1:9.2p1-2+deb12u2
no fix listed
1
thongngo3301/stakefish:latesta341af5976e3
openssh@1:9.2p1-2
no fix listed
1
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
openssh@1:9.2p1-2+deb12u5
no fix listed
1
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
openssh@1:9.2p1-2+deb12u6
no fix listed
1
vlebediantsev/notes-admin-front:latest007c6670ff48
openssh@1:9.2p1-2
no fix listed
1
vlebediantsev/notes-project-front:latest945675fd2636
openssh@1:9.2p1-2
no fix listed
1
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
openssh@1:9.2p1-2
no fix listed
1
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
openssh@1:9.2p1-2+deb12u3
no fix listed
1
xom4ekp2p/infini-route-attestators-public-mainnet-avs-webapi:latest2745b5fd8785
openssh@1:9.2p1-2+deb12u3
no fix listed
1
yetiplatform/yeti:2.9.09bcbe2650a14
openssh@1:10.0p1-7+deb13u4
no fix listed
1
yetiplatform/yeti:latest9c3006cedcca
openssh@1:10.0p1-7+deb13u4
no fix listed
1
gcr.io/ml-pipeline/metadata-writer:2.3.09bcfd2abc361
openssh@1:9.2p1-2+deb12u3
no fix listed
1
ghcr.io/argonix-io/argonix-api:1.0.068e17a8aaa40
openssh@1:10.0p1-7+deb13u4
no fix listed
1
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
openssh@1:9.2p1-2+deb12u3
no fix listed
1
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
openssh@1:9.2p1-2+deb12u5
no fix listed
1
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
openssh@1:9.2p1-2+deb12u3
no fix listed
1
ghcr.io/cohdi/composable-dra-driver:v0.2.28c05f7366981
openssh@1:10.0p1-7+deb13u4
no fix listed
1
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
openssh@1:10.0p1-7
no fix listed
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
openssh@1:9.2p1-2+deb12u5
no fix listed
1
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
openssh@1:10.0p1-7
no fix listed
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
openssh@1:10.0p1-7
no fix listed
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
openssh@1:9.2p1-2+deb12u1
no fix listed
1
ghcr.io/esphome/esphome:latest000c5ee5ee96
openssh@1:10.0p1-7+deb13u4
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.