CVE-2020-1971
MediumAdvisory
Published 8 Dec 2020In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.9
- base score, highest
- EPSS
- 0.071
- 94th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 954
- of 17,787 indexed, latest versions
- Container images
- 780
- deployed by those charts
- Fix available
- 5 of 5
- affected packages
Red Hat Security Advisory: openssl security update
Carried by container images the latest versions of 954 of 17,787 indexed charts deploy, on 780 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| opensslapk | 1.1.1a-r1, 1.1.1b-r1, 1.1.1c-r0, 1.1.1d-r0+5 more | 1.1.1i-r0 | 379 |
| openssldeb | 1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+27 more | 1.0.1f-1ubuntu2.27+esm2, 1.0.2g-1ubuntu4.18, 1.1.0l-1~deb9u2, 1.1.1-1ubuntu2.1~18.04.7+2 more | 361 |
| openssl1.0deb | 1.0.2l-2, 1.0.2l-2+deb9u1, 1.0.2l-2+deb9u2, 1.0.2l-2+deb9u3+8 more | 1.0.2n-1ubuntu5.5, 1.0.2u-1~deb9u3 | 90 |
| opensslrpm | 1:1.0.2k-16.el7_6.1, 1:1.0.2k-19.el7, 1:1.1.1-8.el8, 1:1.1.1c-2.el8_1.1+4 more | 1:1.0.2k-21.el7_9, 1:1.1.1c-16.el8_2, 1:1.1.1g-12.el8_3 | 30 |
| openssl-1_1rpm | 1.1.0i-14.6.1, 1.1.0i-lp151.8.3.1, 1.1.1d-11.6.1 | 1.1.0i-14.12.1, 1.1.0i-lp151.8.12.2, 1.1.1d-11.12.1 | 10 |
- OSV records
- ALPINE-CVE-2020-1971RHSA-2020:5422RHSA-2020:5476RHSA-2020:5566UBUNTU-CVE-2020-1971DLA-2492-1DLA-2493-1DSA-4807-1openSUSE-SU-2020:2245-1SUSE-SU-2020:3720-1SUSE-SU-2020:3721-1
- Also known as
- RHSA-2020:5588, RHSA-2020:5623, RHSA-2020:5637, RHSA-2020:5642, USN-4662-1, USN-4745-1
Charts affected
954 by stars
Container images carrying it
780 by charts deploying them
A fixed version is listed for 5 of the 5 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| ghcr.io/ | 451706815103 | openssl openssl1.0 | 1.1.0l-1~deb9u2 1.0.2u-1~deb9u3 | 1 |
| ghcr.io/ | 763daf9caf8e | openssl openssl1.0 | 1.1.0l-1~deb9u2 1.0.2u-1~deb9u3 | 1 |
| ghcr.io/ | b83b5b81d4b6 | openssl | 1.1.1i-r0 | 1 |
| ghcr.io/ | 7525a57ac3f1 | openssl | 1.1.1i-r0 | 1 |
| public.ecr.aws/ | 442cc3b32935 | openssl | 1.1.1i-r0 | 1 |
| quay.io/ | 70ef31840269 | openssl | 1.1.1i-r0 | 1 |
| quay.io/ | 5d25d47d6e17 | openssl | 1.1.1i-r0 | 1 |
| quay.io/ | e12bdddaa81d | openssl | 1.1.1i-r0 | 1 |
| quay.io/ | 5ac114e567ed | openssl | 1.1.1d-0+deb10u4 | 1 |
| quay.io/ | 7a4b9fedc724 | openssl | 1:1.1.1c-16.el8_2 | 1 |
| quay.io/ | 01c3b7acb301 | openssl openssl1.0 | 1.1.0l-1~deb9u2 1.0.2u-1~deb9u3 | 1 |
| quay.io/ | e045b26eb6df | openssl | 1.1.1i-r0 | 1 |
| quay.io/ | 4fbd63194674 | openssl | 1.1.1i-r0 | 1 |
| quay.io/ | 251e733bf41c | openssl | 1.1.1i-r0 | 1 |
| quay.io/ | b312c91d0de6 | openssl | 1.1.1i-r0 | 1 |
| quay.io/ | c2851757eca4 | openssl | 1:1.1.1g-12.el8_3 | 1 |
| quay.io/ | a1c3843b03bc | openssl | 1.0.2g-1ubuntu4.18 | 1 |
| quay.io/ | 107a7c73af59 | openssl | 1:1.1.1g-12.el8_3 | 1 |
| quay.io/ | 98c26e1b8f70 | openssl | 1.1.1i-r0 | 1 |
| quay.io/ | 791aef35b8d1 | openssl | 1.1.1i-r0 | 1 |
| quay.io/ | 6722d5041b47 | openssl | 1:1.1.1g-12.el8_3 | 1 |
| quay.io/ | 0bbe8b451fa3 | openssl | 1:1.1.1g-12.el8_3 | 1 |
| quay.io/ | a8b21cec412c | openssl | 1.1.1d-0+deb10u4 | 1 |
| quay.io/ | 9a8d95ca0bd9 | openssl | 1.1.1d-0+deb10u4 | 1 |
| quay.io/ | 9b052fbb046f | openssl | 1.1.1i-r0 | 1 |
| quay.io/ | c6a934439421 | openssl | 1.0.2g-1ubuntu4.18 | 1 |
| quay.io/ | 3f6d9885cfe2 | openssl | 1.1.1i-r0 | 1 |
| quay.io/ | 89a0c23d5ad3 | openssl | 1.1.1i-r0 | 1 |
| quay.io/ | c973e166a5dc | openssl | 1.1.1i-r0 | 1 |
| registry.gitlab.com/ | fda21b0a0344 | openssl | 1.1.1i-r0 | 1 |