StackRadar

CVE-2020-1971

Medium

Advisory

Published 8 Dec 2020In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.071
94th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
954
of 17,787 indexed, latest versions
Container images
780
deployed by those charts
Fix available
5 of 5
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 954 of 17,787 indexed charts deploy, on 780 images.

Affected packageAffected versionsFixed inImages
opensslapk1.1.1a-r1, 1.1.1b-r1, 1.1.1c-r0, 1.1.1d-r0+5 more1.1.1i-r0379
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+27 more1.0.1f-1ubuntu2.27+esm2, 1.0.2g-1ubuntu4.18, 1.1.0l-1~deb9u2, 1.1.1-1ubuntu2.1~18.04.7+2 more361
openssl1.0deb1.0.2l-2, 1.0.2l-2+deb9u1, 1.0.2l-2+deb9u2, 1.0.2l-2+deb9u3+8 more1.0.2n-1ubuntu5.5, 1.0.2u-1~deb9u390
opensslrpm1:1.0.2k-16.el7_6.1, 1:1.0.2k-19.el7, 1:1.1.1-8.el8, 1:1.1.1c-2.el8_1.1+4 more1:1.0.2k-21.el7_9, 1:1.1.1c-16.el8_2, 1:1.1.1g-12.el8_330
openssl-1_1rpm1.1.0i-14.6.1, 1.1.0i-lp151.8.3.1, 1.1.1d-11.6.11.1.0i-14.12.1, 1.1.0i-lp151.8.12.2, 1.1.1d-11.12.110
OSV records
ALPINE-CVE-2020-1971RHSA-2020:5422RHSA-2020:5476RHSA-2020:5566UBUNTU-CVE-2020-1971DLA-2492-1DLA-2493-1DSA-4807-1openSUSE-SU-2020:2245-1SUSE-SU-2020:3720-1SUSE-SU-2020:3721-1
Also known as
RHSA-2020:5588, RHSA-2020:5623, RHSA-2020:5637, RHSA-2020:5642, USN-4662-1, USN-4745-1

Charts affected

954 by stars
ChartLatestAffected imagesRadar Score
rcloneymrs0.1.41 of 2See more

rclone ymrs 0.1.4

1 of the 2 container images this version deploys carry CVE-2020-1971.

Container imageDigestPackageFixed in
quay.io/simplyzee/kube-rclone:v1.52.389a0c23d5ad3
openssl@1.1.1g-r0
1.1.1i-r0

Open the chart page →

1,198
version-checkerymrs0.2.31 of 1See more

version-checker ymrs 0.2.3

1 of the 1 container images this version deploys carry CVE-2020-1971.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
openssl@1.1.1g-r0
1.1.1i-r0

Open the chart page →

3,023
helmexampleyunpeng-helmexample0.1.01 of 1See more

helmexample yunpeng-helmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-1971.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
openssl@1.1.0k-1~deb9u1
1.1.0l-1~deb9u2

Open the chart page →

702
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2020-1971.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4

Open the chart page →

1,138

Container images carrying it

780 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
library/nextcloud:17.0.0-apache96104cb965fc
openssl@1.1.1d-0+deb10u2
1.1.1d-0+deb10u4
1
library/nginx:1.17.4-alpine0649f548ea26
openssl@1.1.1d-r0
1.1.1i-r0
1
library/nginx:1.19.0-alpine17ba9c1ca3db
openssl@1.1.1g-r0
1.1.1i-r0
1
library/nginx:1.16.0-alpine270bea203d2f
openssl@1.1.1b-r1
1.1.1i-r0
1
library/nginx:1.15.9-alpine55390addbb1a
openssl@1.1.1a-r1
1.1.1i-r0
1
library/nginx:1.15-alpine57a226fb6ab6
openssl@1.1.1b-r1
1.1.1i-r0
1
library/nginx:1.19.3-alpine5aa44b407756
openssl@1.1.1g-r0
1.1.1i-r0
1
library/nginx:1.17-alpine763e7f0188e3
openssl@1.1.1g-r0
1.1.1i-r0
1
library/nginx:1.17.9-alpineabe5ce652eb7
openssl@1.1.1d-r2
1.1.1i-r0
1
library/nginx:1.17.6b2d89d0a2103
openssl@1.1.1d-0+deb10u2
1.1.1d-0+deb10u4
1
library/nginx:1.16.1d20aa6d1cae5
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4
1
library/nginx:1.14.2f7988fb6c02e
openssl@1.1.0j-1~deb9u1
1.1.0l-1~deb9u2
1
library/orientdb:3.0.1318a6c004398f
openssl@1.1.1a-r1
1.1.1i-r0
1
library/postgres:9.6.182f75145ad077
openssl@1.1.0l-1~deb9u1
1.1.0l-1~deb9u2
1
library/postgres:12.3-alpine7693f2082c68
openssl@1.1.1g-r0
1.1.1i-r0
1
library/postgres:10.49625c2fb3498
openssl@1.1.0f-3+deb9u2
1.1.0l-1~deb9u2
1
library/postgres:12.2d96835c90329
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4
1
library/rabbitmq:3.6-management05bd722c6b0c
openssl@1.1.0f-3+deb9u2
openssl1.0@1.0.2l-2+deb9u3
1.1.0l-1~deb9u2
1.0.2u-1~deb9u3
1
library/rabbitmq:3.8.1-alpine7e0b62800e5e
openssl@1.1.1d-r0
1.1.1i-r0
1
library/rabbitmq:3.7-managementb6dd45cc35b3
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.7
1
library/rabbitmq:3.7-management-alpinee97f6bb68aab
openssl@1.1.1g-r0
1.1.1i-r0
1
library/redis:6.0.609c33840ec47
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4
1
library/redis:5.0.6-alpine3.1027e139dd0476
openssl@1.1.1d-r0
1.1.1i-r0
1
library/redis:6.0.7-alpine5326e0af4341
openssl@1.1.1g-r0
1.1.1i-r0
1
library/redis:4.0.12-alpine99c3c1e02e5e
openssl@1.1.1a-r1
1.1.1i-r0
1
library/redis:5.0.5-alpine3.9dca057ffa233
openssl@1.1.1b-r1
1.1.1i-r0
1
library/redis:5.0.3-alpinef8c22abc77f3
openssl@1.1.1a-r1
1.1.1i-r0
1
library/sonarqube:6.7.6-community0ae5169e3d0f
openssl@1.1.0j-1~deb9u1
openssl1.0@1.0.2r-1~deb9u1
1.1.0l-1~deb9u2
1.0.2u-1~deb9u3
1
library/sonarqube:8.2-communitya246bc64207e
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4
1
library/telegraf:1.9-alpine4239108fd464
openssl@1.1.1b-r1
1.1.1i-r0
1
library/tomcat:8.5.41-alpine04feaf74f8bb
openssl@1.1.1b-r1
1.1.1i-r0
1
library/traefik:2.2.8f5af5a5ce17f
openssl@1.1.1g-r0
1.1.1i-r0
1
library/vault:1.5.4121c1eb16a47
openssl@1.1.1g-r0
1.1.1i-r0
1
lightbend/cloudflow-operator:0.0.0-NIGHTLY011220202647f396de23
openssl@1.1.1g-r0
1.1.1i-r0
1
lightbend/curl:7.47.0b0c9894ac8dd
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.18
1
linuxserver/ombi:3.0.4572-ls452fbb21fb4903
openssl@1.1.0g-2ubuntu4.3
openssl1.0@1.0.2n-1ubuntu5.3
1.1.1-1ubuntu2.1~18.04.7
1.0.2n-1ubuntu5.5
1
litmuschaos/mongo:4.2.899961210d467
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.7
1
litmuschaos/mysql-client:latest251afd8fc039
openssl@1.1.1g-r0
1.1.1i-r0
1
lmenezes/cerebro:0.8.13e860068e403
openssl@1.1.1a-r1
1.1.1i-r0
1
lmenezes/cerebro:0.8.36684131caf5f
openssl@1.1.0j-1~deb9u1
1.1.0l-1~deb9u2
1
lmierzwa/karma:v0.503751e5eed656
openssl@1.1.0l-1~deb9u1
1.1.0l-1~deb9u2
1
lmierzwa/karma:v0.343d0a856b84bb
openssl@1.1.0j-1~deb9u1
1.1.0l-1~deb9u2
1
lmierzwa/karma:v0.70d417abe7ddb5
openssl@1.1.0l-1~deb9u1
1.1.0l-1~deb9u2
1
lncm/specter-desktop:v0.10.4bca14d04397d
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4
1
logiqai/logiqctl:2.0.4798306811f2d
openssl@1.1.1g-r0
1.1.1i-r0
1
logiqai/toolbox:2.0.155a574ec5b64
openssl@1.1.1d-r3
1.1.1i-r0
1
lsmaster/kafka-connect-wrapper:6.1.0-0.1061eb5fbfa00
openssl@1.1.1c-r0
1.1.1i-r0
1
lsstsqre/lsp-landing-page:latest4653f18b5418
openssl@1.1.1c-r0
1.1.1i-r0
1
lsstsqre/lsp-postgres:latest54283318b16b
openssl@1.1.1g-r0
1.1.1i-r0
1
ma1uta/ma1sd:2.5.0ee2a56d8b8ca
openssl@1.1.1b-r1
1.1.1i-r0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.