StackRadar

CVE-2020-1971

Medium

Advisory

Published 8 Dec 2020In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.071
94th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
954
of 17,787 indexed, latest versions
Container images
780
deployed by those charts
Fix available
5 of 5
affected packages

Red Hat Security Advisory: openssl security update

Carried by container images the latest versions of 954 of 17,787 indexed charts deploy, on 780 images.

Affected packageAffected versionsFixed inImages
opensslapk1.1.1a-r1, 1.1.1b-r1, 1.1.1c-r0, 1.1.1d-r0+5 more1.1.1i-r0379
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+27 more1.0.1f-1ubuntu2.27+esm2, 1.0.2g-1ubuntu4.18, 1.1.0l-1~deb9u2, 1.1.1-1ubuntu2.1~18.04.7+2 more361
openssl1.0deb1.0.2l-2, 1.0.2l-2+deb9u1, 1.0.2l-2+deb9u2, 1.0.2l-2+deb9u3+8 more1.0.2n-1ubuntu5.5, 1.0.2u-1~deb9u390
opensslrpm1:1.0.2k-16.el7_6.1, 1:1.0.2k-19.el7, 1:1.1.1-8.el8, 1:1.1.1c-2.el8_1.1+4 more1:1.0.2k-21.el7_9, 1:1.1.1c-16.el8_2, 1:1.1.1g-12.el8_330
openssl-1_1rpm1.1.0i-14.6.1, 1.1.0i-lp151.8.3.1, 1.1.1d-11.6.11.1.0i-14.12.1, 1.1.0i-lp151.8.12.2, 1.1.1d-11.12.110
OSV records
ALPINE-CVE-2020-1971RHSA-2020:5422RHSA-2020:5476RHSA-2020:5566UBUNTU-CVE-2020-1971DLA-2492-1DLA-2493-1DSA-4807-1openSUSE-SU-2020:2245-1SUSE-SU-2020:3720-1SUSE-SU-2020:3721-1
Also known as
RHSA-2020:5588, RHSA-2020:5623, RHSA-2020:5637, RHSA-2020:5642, USN-4662-1, USN-4745-1

Charts affected

954 by stars
ChartLatestAffected imagesRadar Score
rcloneymrs0.1.41 of 2See more

rclone ymrs 0.1.4

1 of the 2 container images this version deploys carry CVE-2020-1971.

Container imageDigestPackageFixed in
quay.io/simplyzee/kube-rclone:v1.52.389a0c23d5ad3
openssl@1.1.1g-r0
1.1.1i-r0

Open the chart page →

1,198
version-checkerymrs0.2.31 of 1See more

version-checker ymrs 0.2.3

1 of the 1 container images this version deploys carry CVE-2020-1971.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
openssl@1.1.1g-r0
1.1.1i-r0

Open the chart page →

3,023
helmexampleyunpeng-helmexample0.1.01 of 1See more

helmexample yunpeng-helmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-1971.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
openssl@1.1.0k-1~deb9u1
1.1.0l-1~deb9u2

Open the chart page →

702
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2020-1971.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4

Open the chart page →

1,138

Container images carrying it

780 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
hashicorp/vault-k8s:0.6.05697b85bc69a
openssl@1.1.1g-r0
1.1.1i-r0
1
hazelcast/hazelcast-jet:3.0df495e64ea65
openssl@1.1.1b-r1
1.1.1i-r0
1
hetznercloud/hcloud-csi-driver:1.5.141dce5b33644
openssl@1.1.1g-r0
1.1.1i-r0
1
hhaluk/crypto-watchdog:0.4.0a6555953d941
openssl@1.1.1d-r3
1.1.1i-r0
1
hjacobs/kube-web-view:20.10.0b44a9cf81a2f
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4
1
hmdmph/mongo-pod-labeler:1.0.1-alpine79e4a170f3dc
openssl@1.1.1a-r1
1.1.1i-r0
1
hmdmph/redis-pod-labeler:1.0.0-alpine7f1381fe0f3b
openssl@1.1.1g-r0
1.1.1i-r0
1
hyperledger/burrow:0.25.184c869c596bb
openssl@1.1.1b-r1
1.1.1i-r0
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.18
1
hyperledger/fabric-orderer:2.2.137294e05209b
openssl@1.1.1g-r0
1.1.1i-r0
1
hyperledger/fabric-orderer:1.3.06ee1abcfd840
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.18
1
hyperledger/fabric-peer:1.3.06756c7c48234
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.18
1
hyperledger/fabric-peer:2.2.1bf4995c86af6
openssl@1.1.1g-r0
1.1.1i-r0
1
i0nw/gcs-copy:0.0.173e987e01fae
openssl@1.1.0f-3+deb9u2
1.1.0l-1~deb9u2
1
ibarreche/cloud-indexer-ci:latestb7a08274e69f
openssl@1.1.1b-r1
1.1.1i-r0
1
ibmcom/app-nav-api:1.0.1ce9d2a564273
openssl@1:1.0.2k-16.el7_6.1
1:1.0.2k-21.el7_9
1
ibmcom/app-nav-controller:1.0.1ee4624ba513d
openssl@1:1.0.2k-16.el7_6.1
1:1.0.2k-21.el7_9
1
ibmcom/app-nav-init:1.0.1240ff499eb5b
openssl@1:1.0.2k-16.el7_6.1
1:1.0.2k-21.el7_9
1
ibmcom/app-nav-ui:1.0.1e2a86997b36b
openssl@1:1.0.2k-16.el7_6.1
1:1.0.2k-21.el7_9
1
ibmcom/app-nav-was-controller:1.0.1a6748792da26
openssl@1:1.0.2k-16.el7_6.1
1:1.0.2k-21.el7_9
1
ibmcom/bai-admin-dev:19.0.202d882f2836e
openssl@1:1.0.2k-19.el7
1:1.0.2k-21.el7_9
1
ibmcom/bai-elasticsearch-dev:19.0.25441dba2fa00
openssl@1:1.0.2k-19.el7
1:1.0.2k-21.el7_9
1
ibmcom/bai-flink-dev:19.0.2e31ff09e8aad
openssl@1:1.0.2k-19.el7
1:1.0.2k-21.el7_9
1
ibmcom/bai-flink-zookeeper-dev:19.0.258548034cf55
openssl@1:1.0.2k-19.el7
1:1.0.2k-21.el7_9
1
ibmcom/bai-init-dev:19.0.2b138f1eac0b1
openssl@1:1.0.2k-19.el7
1:1.0.2k-21.el7_9
1
ibmcom/bai-setup-dev:19.0.2b8e8df11072d
openssl@1:1.0.2k-19.el7
1:1.0.2k-21.el7_9
1
ibmcom/ibmcloud-object-storage-driver:1.8.16c796a4c693b4
openssl@1:1.1.1c-15.el8
1:1.1.1c-16.el8_2
1
ibmcom/ibmcloud-object-storage-plugin:1.8.169c73804b37a3
openssl@1:1.1.1c-15.el8
1:1.1.1c-16.el8_2
1
ibmcom/ibm-storage-enabler-for-containers-db:2.1.09a766604a73b
openssl@1.1.0j-1~deb9u1
1.1.0l-1~deb9u2
1
ibmcom/ibm-workload-scheduler-agent-dynamic-dev:9.4.0.047e4dc1e27cdf
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.18
1
ibmcom/icp-sert-bats:3.2.0b558f2b444ae
openssl@1.1.1b-r1
1.1.1i-r0
1
ibmcom/icp-storage-util:3.2.0c44e1ef21075
openssl@1.1.1b-r1
1.1.1i-r0
1
ibmcom/icp-swift-sample:latestb5d8c6714dbc
openssl@1.0.2g-1ubuntu4.12
1.0.2g-1ubuntu4.18
1
ibmcom/microclimate-theia:lateste17bdccc5030
openssl@1.0.2g-1ubuntu4.10
1.0.2g-1ubuntu4.18
1
ibmcom/opencontent-common-utils:1.1.2cd5065df7304
openssl@1:1.1.1-8.el8
1:1.1.1g-12.el8_3
1
ibmcom/skydive:0.22.0395e60cc6e3d
openssl@1.1.0g-2ubuntu4.3
1.1.1-1ubuntu2.1~18.04.7
1
ibmcom/voice-gateway-mr:1.0.5.00762ab1df6c1
openssl@1:1.0.2k-19.el7
1:1.0.2k-21.el7_9
1
ibmcom/websphere-liberty:javaee8-ubi-min28ae40e05980
openssl@1:1.0.2k-19.el7
1:1.0.2k-21.el7_9
1
igrantio/bb-consent-admin-dashboard:2023.11.6852574120a1e
openssl@1.1.1a-r1
1.1.1i-r0
1
igrantio/bb-consent-privacy-dashboard:2023.11.6c12f80997b0f
openssl@1.1.1b-r1
1.1.1i-r0
1
iofog/router:2.0.17260cf861479
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.7
1
istio/examples-bookinfo-details-v1:1.17.02b081e3c86dd
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4
1
istio/examples-bookinfo-productpage-v1:1.17.06668bcf42ef0
openssl@1.1.1d-0+deb10u3
1.1.1d-0+deb10u4
1
istio/node-agent-k8s:1.2.9268ab879ea51
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.18
1
istio/pilot:1.2.9c09319753454
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.18
1
istio/proxyv2:1.2.90c78be035e98
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.18
1
jacobalberty/unifi:5.10.19c409924e2463
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.18
1
jayfong/yapi:1.10.2163e5d621910
openssl@1.1.1g-r0
1.1.1i-r0
1
jenkinsci/jenkins:2.67a1f33f004659
openssl@1.1.0f-3
openssl1.0@1.0.2l-2
1.1.0l-1~deb9u2
1.0.2u-1~deb9u3
1
jenkinsxio/jx-app-test-lifecycle:0.0.46421ebbc8120
openssl@1.1.1a-r1
1.1.1i-r0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.