StackRadar

CVE-2020-1971

Medium

Advisory

Published 8 Dec 2020In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.071
94th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
954
of 17,787 indexed, latest versions
Container images
780
deployed by those charts
Fix available
5 of 5
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 954 of 17,787 indexed charts deploy, on 780 images.

Affected packageAffected versionsFixed inImages
opensslapk1.1.1a-r1, 1.1.1b-r1, 1.1.1c-r0, 1.1.1d-r0+5 more1.1.1i-r0379
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+27 more1.0.1f-1ubuntu2.27+esm2, 1.0.2g-1ubuntu4.18, 1.1.0l-1~deb9u2, 1.1.1-1ubuntu2.1~18.04.7+2 more361
openssl1.0deb1.0.2l-2, 1.0.2l-2+deb9u1, 1.0.2l-2+deb9u2, 1.0.2l-2+deb9u3+8 more1.0.2n-1ubuntu5.5, 1.0.2u-1~deb9u390
opensslrpm1:1.0.2k-16.el7_6.1, 1:1.0.2k-19.el7, 1:1.1.1-8.el8, 1:1.1.1c-2.el8_1.1+4 more1:1.0.2k-21.el7_9, 1:1.1.1c-16.el8_2, 1:1.1.1g-12.el8_330
openssl-1_1rpm1.1.0i-14.6.1, 1.1.0i-lp151.8.3.1, 1.1.1d-11.6.11.1.0i-14.12.1, 1.1.0i-lp151.8.12.2, 1.1.1d-11.12.110
OSV records
ALPINE-CVE-2020-1971RHSA-2020:5422RHSA-2020:5476RHSA-2020:5566UBUNTU-CVE-2020-1971DLA-2492-1DLA-2493-1DSA-4807-1openSUSE-SU-2020:2245-1SUSE-SU-2020:3720-1SUSE-SU-2020:3721-1
Also known as
RHSA-2020:5588, RHSA-2020:5623, RHSA-2020:5637, RHSA-2020:5642, USN-4662-1, USN-4745-1

Charts affected

954 by stars
ChartLatestAffected imagesRadar Score
rcloneymrs0.1.41 of 2See more

rclone ymrs 0.1.4

1 of the 2 container images this version deploys carry CVE-2020-1971.

Container imageDigestPackageFixed in
quay.io/simplyzee/kube-rclone:v1.52.389a0c23d5ad3
openssl@1.1.1g-r0
1.1.1i-r0

Open the chart page →

1,198
version-checkerymrs0.2.31 of 1See more

version-checker ymrs 0.2.3

1 of the 1 container images this version deploys carry CVE-2020-1971.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
openssl@1.1.1g-r0
1.1.1i-r0

Open the chart page →

3,023
helmexampleyunpeng-helmexample0.1.01 of 1See more

helmexample yunpeng-helmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-1971.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
openssl@1.1.0k-1~deb9u1
1.1.0l-1~deb9u2

Open the chart page →

702
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2020-1971.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4

Open the chart page →

1,138

Container images carrying it

780 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
pnnlmiscscripts/k8s-node-image:1.14.10-nginx-78af4c559fff0
openssl@1.1.1g-r0
1.1.1i-r0
1
pnnlmiscscripts/k8s-node-image:1.15.12-nginx-5d710d31000ce
openssl@1.1.1g-r0
1.1.1i-r0
1
pozetroninc/keydb:v6.0.1653ae64f29da8
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.7
1
pozetroninc/liftbridge:v1.1.079fd6b9d93e6
openssl@1.1.1g-r0
1.1.1i-r0
1
prom/cloudwatch-exporter:cloudwatch_exporter-0.8.0fc4b9b9f5e15
openssl@1.1.1d-0+deb10u2
1.1.1d-0+deb10u4
1
prompve/prometheus-pve-exporter:2.0.1ff6749eb03b0
openssl@1.1.1g-r0
1.1.1i-r0
1
pypiserver/pypiserver:v1.4.2c9250d3c418d
openssl@1.1.1g-r0
1.1.1i-r0
1
rancher/hardened-calico:v3.13.36d2cd61a338b
openssl@1:1.0.2k-19.el7
1:1.0.2k-21.el7_9
1
rancher/hardened-flannel:v0.13.0-rancher142784bb38ed3
openssl@1:1.0.2k-19.el7
1:1.0.2k-21.el7_9
1
rancher/local-path-provisioner:v0.0.1440cb8c984c17
openssl@1.1.1g-r0
1.1.1i-r0
1
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.18
1
rasooll/postfix:lateste731e21c3f67
openssl@1.1.1g-r0
1.1.1i-r0
1
rasooll/stunnel:5.56-r18c8ca63cb92e
openssl@1.1.1g-r0
1.1.1i-r0
1
raykrueger/riemann:0.2.14c8baf3de57bb
openssl@1.1.0f-3
openssl1.0@1.0.2l-2
1.1.0l-1~deb9u2
1.0.2u-1~deb9u3
1
rbino/mfpb:0.2.0cb7f0603ddfe
openssl@1.1.1c-r0
1.1.1i-r0
1
refar/apm-api:v5.7.1241373fa2972
openssl@1.1.1d-r0
1.1.1i-r0
1
refar/apm-operator-server:v5.7.1e5490f050f9f
openssl@1.1.1d-r0
1.1.1i-r0
1
resouer/redis-slave:v2e2f198b49ba7
openssl@1.0.1f-1ubuntu2.8
1.0.1f-1ubuntu2.27+esm2
1
richardchesterwood/k8s-fleetman-position-simulator:release20b540a28f5a6
openssl@1.1.0f-3
openssl1.0@1.0.2l-2
1.1.0l-1~deb9u2
1.0.2u-1~deb9u3
1
richardchesterwood/k8s-fleetman-position-tracker:release336c43961214c
openssl@1.1.0f-3
openssl1.0@1.0.2l-2
1.1.0l-1~deb9u2
1.0.2u-1~deb9u3
1
rodolpheche/wiremock:2.27.22328a9fce2bf
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4
1
royalwang/sentinel-dashboard:1.8.4df99e2499f91
openssl@1.1.0k-1~deb9u1
openssl1.0@1.0.2s-1~deb9u1
1.1.0l-1~deb9u2
1.0.2u-1~deb9u3
1
rpardini/docker-registry-proxy:0.6.383d5f6a96682
openssl@1.1.1g-r0
1.1.1i-r0
1
runatlantis/atlantis:v0.16.145fbaf7e207c
openssl@1.1.1g-r0
1.1.1i-r0
1
runatlantis/atlantis:v0.7.168fa470d1416
openssl@1.1.1a-r1
1.1.1i-r0
1
rundeck/rundeck:3.2.74d64fe56f767
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.18
1
rundeck/rundeck:3.0.16b13e8059ad72
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.18
1
samueldg/snappass:latest3987195edbe6
openssl@1.1.1d-0+deb10u2
1.1.1d-0+deb10u4
1
scrapinghub/splash:3.4.1a5f89bc84606
openssl@1.1.1-1ubuntu2.1~18.04.5
openssl1.0@1.0.2n-1ubuntu5.3
1.1.1-1ubuntu2.1~18.04.7
1.0.2n-1ubuntu5.5
1
sdandey/dandey-apps:kanban-board-kanban-ui04594ada18be
openssl@1.1.1b-r1
1.1.1i-r0
1
sdandey/dandey-apps:kanban-board-kanban-appbef0f599737b
openssl@1.1.1b-r1
1.1.1i-r0
1
seataio/seata-server:1.5.1ee1ed55f4144
openssl@1.1.1b-r1
1.1.1i-r0
1
seldonio/apife:0.3.1eea0d3f578ca
openssl@1.1.1b-r1
1.1.1i-r0
1
seldonio/locust-core:0.81d0da98a2d76
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.18
1
siscc/dotstatsuite-core-auth-management:9a653e82bb1e9a45b6fa
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4
1
siscc/dotstatsuite-core-sdmxri-nsi:master00d73f06edcf
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4
1
sismics/docs:v1.10f4b0ef019cf1
openssl@1.1.0g-2ubuntu4.1
1.1.1-1ubuntu2.1~18.04.7
1
slamdev/flux-notifier:v0.0.8b173d809132d
openssl@1.1.1g-r0
1.1.1i-r0
1
slamdev/gke-preemptible-notifier:v0.0.3d5d6430108a3
openssl@1.1.1g-r0
1.1.1i-r0
1
slamdev/hetzner-irobo:0.0.13ca20c184c55
openssl@1.1.1g-r0
1.1.1i-r0
1
snebel29/kwatchman:latest27600e17b5d7
openssl@1.1.1b-r1
1.1.1i-r0
1
snowplow/scala-stream-collector-pubsub:2.2.041d318841516
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4
1
softonic/gar-exporter:0.2.1a64d6c0e0ae5
openssl@1.1.1g-r0
1.1.1i-r0
1
softonic/kube-gcp-disks-roomba:latestd9c57e76e669
openssl@1.1.0l-1~deb9u1
1.1.0l-1~deb9u2
1
softonic/mysql-backup:0.4.0d9487a8dd70f
openssl@1.1.1g-r0
1.1.1i-r0
1
sorintlab/stolon:v0.16.0-pg1236b45c0f97fc
openssl@1.1.1d-0+deb10u2
1.1.1d-0+deb10u4
1
sosedoff/pgweb:0.11.785e0132e0cce
openssl@1.1.1g-r0
1.1.1i-r0
1
sstarcher/ecr-cleaner:0.1.12d43c390cb19
openssl@1.1.1d-r3
1.1.1i-r0
1
sstarcher/helm-exporter:0.5.011769d01ba35
openssl@1.1.1d-r3
1.1.1i-r0
1
sstarcher/kube-ebs-tagger:0.1.01f8cae8cfa80
openssl@1.1.1d-r3
1.1.1i-r0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.