StackRadar

CVE-2020-19131

High

Advisory

Published 7 Sept 2021In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.024
83rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
33
of 17,781 indexed, latest versions
Container images
31
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: libtiff security update

Carried by container images the latest versions of 33 of 17,781 indexed charts deploy, on 31 images.

Affected packageAffected versionsFixed inImages
tiffdeb4.0.3-7ubuntu0.9, 4.0.6-1ubuntu0.2, 4.0.6-1ubuntu0.4, 4.0.6-1ubuntu0.5+5 more4.0.3-7ubuntu0.11+esm2, 4.0.6-1ubuntu0.8+esm2, 4.0.9-5ubuntu0.726
libtiffrpm4.0.9-17.el8, 4.0.9-18.el80:4.0.9-21.el85
OSV records
RHSA-2022:1810UBUNTU-CVE-2020-19131
Also known as
USN-5523-1, USN-5619-1

Charts affected

33 by stars
ChartLatestAffected imagesRadar Score
calibregeek-cookbookVerified publisher5.4.21 of 1See more

calibre geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
linuxserver/calibre:version-v5.21.0a847b5b2d860
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7

Open the chart page →

22,773
oesopsmxVerified publisher4.0.321 of 25See more

oes opsmx 4.0.32

1 of the 25 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
tiff@4.0.6-1ubuntu0.6
4.0.6-1ubuntu0.8+esm2

Open the chart page →

107,811
huginnutkuozdemirVerified publisher2.2.11 of 4See more

huginn utkuozdemir 2.2.1

1 of the 4 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
tiff@4.0.9-5ubuntu0.3
4.0.9-5ubuntu0.7

Open the chart page →

18,137
dltbrokerassist-iot-distributed-broker0.2.02 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

2 of the 9 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
tiff@4.0.6-1ubuntu0.4
4.0.6-1ubuntu0.8+esm2
hyperledger/fabric-couchdb:0.4.15f6c724592abf
tiff@4.0.6-1ubuntu0.6
4.0.6-1ubuntu0.8+esm2

Open the chart page →

77,706
dltloggingassist-iot-logging-auditing0.2.02 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

2 of the 9 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
tiff@4.0.6-1ubuntu0.4
4.0.6-1ubuntu0.8+esm2
hyperledger/fabric-couchdb:0.4.15f6c724592abf
tiff@4.0.6-1ubuntu0.6
4.0.6-1ubuntu0.8+esm2

Open the chart page →

77,687
tensorflow-notebookcloudnativeapp0.1.21 of 1See more

tensorflow-notebook cloudnativeapp 0.1.2

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
tensorflow/tensorflow:1.6.0-devel1e3172090703
tiff@4.0.6-1ubuntu0.2
4.0.6-1ubuntu0.8+esm2

Open the chart page →

36,094
lazylibrariangeek-cookbookVerified publisher7.4.21 of 1See more

lazylibrarian geek-cookbook 7.4.2

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
linuxserver/lazylibrarian:version-1152df82f93d2560e233
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7

Open the chart page →

11,662
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7

Open the chart page →

13,541
dltkvassist-iot-data-integrity-verification0.2.02 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

2 of the 9 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
tiff@4.0.6-1ubuntu0.4
4.0.6-1ubuntu0.8+esm2
hyperledger/fabric-couchdb:0.4.15f6c724592abf
tiff@4.0.6-1ubuntu0.6
4.0.6-1ubuntu0.8+esm2

Open the chart page →

77,706
dltflassist-iot-dlt-based-fl0.2.02 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

2 of the 9 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
tiff@4.0.6-1ubuntu0.4
4.0.6-1ubuntu0.8+esm2
hyperledger/fabric-couchdb:0.4.15f6c724592abf
tiff@4.0.6-1ubuntu0.6
4.0.6-1ubuntu0.8+esm2

Open the chart page →

77,706
daskcloudnativeapp2.2.11 of 2See more

dask cloudnativeapp 2.2.1

1 of the 2 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
daskdev/dask-notebook:1.1.0052630f5ca04
tiff@4.0.9-5ubuntu0.1
4.0.9-5ubuntu0.7

Open the chart page →

29,901
distributed-tensorflowcloudnativeapp0.1.11 of 1See more

distributed-tensorflow cloudnativeapp 0.1.1

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
cheyang/distributed-tf:1.6.046cc34755493
tiff@4.0.6-1ubuntu0.2
4.0.6-1ubuntu0.8+esm2

Open the chart page →

36,094
hlf-couchdbcloudnativeapp1.0.61 of 1See more

hlf-couchdb cloudnativeapp 1.0.6

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
hyperledger/fabric-couchdb:0.4.10c65891b6c237
tiff@4.0.6-1ubuntu0.4
4.0.6-1ubuntu0.8+esm2

Open the chart page →

33,963
webpagetest-agentcloudnativeapp0.2.01 of 1See more

webpagetest-agent cloudnativeapp 0.2.0

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
tiff@4.0.6-1ubuntu0.2
4.0.6-1ubuntu0.8+esm2

Open the chart page →

77,758
developer-dashboardcloud-native-toolkit1.4.11 of 1See more

developer-dashboard cloud-native-toolkit 1.4.1

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
libtiff@4.0.9-17.el8
0:4.0.9-21.el8

Open the chart page →

25,456
galaxy-stablecloudve2.0.01 of 5See more

galaxy-stable cloudve 2.0.0

1 of the 5 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
galaxy/galaxy-stable:v18.018e577a626dfd
tiff@4.0.3-7ubuntu0.9
4.0.3-7ubuntu0.11+esm2

Open the chart page →

70,895
datacubedatacube-charts0.18.21 of 1See more

datacube datacube-charts 0.18.2

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
opendatacube/wms:latest1b90cdf68831
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.7

Open the chart page →

27,728
datacube-datadatacube-charts0.2.61 of 1See more

datacube-data datacube-charts 0.2.6

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
tiff@4.0.9-5ubuntu0.3
4.0.9-5ubuntu0.7

Open the chart page →

18,863
datacube-processingdatacube-charts0.1.11 of 2See more

datacube-processing datacube-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
opendatacube/pipelines:wofs-1.225d810e8504b8
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.7

Open the chart page →

22,405
restcubedatacube-charts0.2.91 of 1See more

restcube datacube-charts 0.2.9

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
opendatacube/restcube:latest91870111837c
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.7

Open the chart page →

24,335
booksonic-airgeek-cookbookVerified publisher6.4.21 of 1See more

booksonic-air geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7

Open the chart page →

19,215
delugegeek-cookbookVerified publisher5.4.21 of 1See more

deluge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7

Open the chart page →

13,551
teedygeek-cookbookVerified publisher6.2.01 of 1See more

teedy geek-cookbook 6.2.0

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
sismics/docs:v1.10f4b0ef019cf1
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7

Open the chart page →

26,944
nexusjenkins-x0.1.371 of 1See more

nexus jenkins-x 0.1.37

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
libtiff@4.0.9-17.el8
0:4.0.9-21.el8

Open the chart page →

12,856
elastictranscoderluiscajl0.46.02 of 4See more

elastictranscoder luiscajl 0.46.0

2 of the 4 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
elastictranscoder/transcoder:627e21dcb4a0327029e6
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7

Open the chart page →

58,160
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
tiff@4.0.9-5ubuntu0.3
4.0.9-5ubuntu0.7

Open the chart page →

27,633
cdn-remoteopencord0.2.42 of 3See more

cdn-remote opencord 0.2.4

2 of the 3 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.7
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
tiff@4.0.6-1ubuntu0.5
4.0.6-1ubuntu0.8+esm2

Open the chart page →

63,223
mcord-cdn-remoteopencord0.1.61 of 2See more

mcord-cdn-remote opencord 0.1.6

1 of the 2 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
tiff@4.0.6-1ubuntu0.5
4.0.6-1ubuntu0.8+esm2

Open the chart page →

42,614
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
tiff@4.0.6-1ubuntu0.5
4.0.6-1ubuntu0.8+esm2

Open the chart page →

29,124
issuegenopsmxVerified publisher1.0.21 of 1See more

issuegen opsmx 1.0.2

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
opsmx11/issuegen:v2.1.05c50ca123d88
tiff@4.0.3-7ubuntu0.9
4.0.3-7ubuntu0.11+esm2

Open the chart page →

26,339
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
libtiff@4.0.9-18.el8
0:4.0.9-21.el8

Open the chart page →

29,227
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
libtiff@4.0.9-18.el8
0:4.0.9-21.el8

Open the chart page →

21,997
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2020-19131.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
libtiff@4.0.9-18.el8
0:4.0.9-21.el8

Open the chart page →

28,165

Container images carrying it

31 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
tiff@4.0.6-1ubuntu0.4
4.0.6-1ubuntu0.8+esm2
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
tiff@4.0.6-1ubuntu0.6
4.0.6-1ubuntu0.8+esm2
4
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
tiff@4.0.6-1ubuntu0.5
4.0.6-1ubuntu0.8+esm2
3
cheyang/distributed-tf:1.6.046cc34755493
tiff@4.0.6-1ubuntu0.2
4.0.6-1ubuntu0.8+esm2
1
daskdev/dask-notebook:1.1.0052630f5ca04
tiff@4.0.9-5ubuntu0.1
4.0.9-5ubuntu0.7
1
elastictranscoder/transcoder:627e21dcb4a0327029e6
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7
1
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7
1
galaxy/galaxy-stable:v18.018e577a626dfd
tiff@4.0.3-7ubuntu0.9
4.0.3-7ubuntu0.11+esm2
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
tiff@4.0.9-5ubuntu0.3
4.0.9-5ubuntu0.7
1
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
tiff@4.0.9-5ubuntu0.3
4.0.9-5ubuntu0.7
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
tiff@4.0.6-1ubuntu0.4
4.0.6-1ubuntu0.8+esm2
1
linuxserver/calibre:version-v5.21.0a847b5b2d860
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7
1
linuxserver/deluge:18.04.10ac871624394
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7
1
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7
1
linuxserver/lazylibrarian:version-1152df82f93d2560e233
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.7
1
opendatacube/pipelines:wofs-1.225d810e8504b8
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.7
1
opendatacube/restcube:latest91870111837c
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.7
1
opendatacube/wms:latest1b90cdf68831
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.7
1
opsmx11/issuegen:v2.1.05c50ca123d88
tiff@4.0.3-7ubuntu0.9
4.0.3-7ubuntu0.11+esm2
1
scrapinghub/splash:3.4.1a5f89bc84606
tiff@4.0.9-5ubuntu0.3
4.0.9-5ubuntu0.7
1
seldonio/seldon-request-logger:1.11.24e985d2006a8
libtiff@4.0.9-18.el8
0:4.0.9-21.el8
1
sismics/docs:v1.10f4b0ef019cf1
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
tiff@4.0.6-1ubuntu0.2
4.0.6-1ubuntu0.8+esm2
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
tiff@4.0.6-1ubuntu0.2
4.0.6-1ubuntu0.8+esm2
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
libtiff@4.0.9-17.el8
0:4.0.9-21.el8
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.7
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
libtiff@4.0.9-18.el8
0:4.0.9-21.el8
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
libtiff@4.0.9-17.el8
0:4.0.9-21.el8
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
tiff@4.0.6-1ubuntu0.6
4.0.6-1ubuntu0.8+esm2
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
libtiff@4.0.9-18.el8
0:4.0.9-21.el8
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.