StackRadar

CVE-2020-28196

High

Advisory

Published 6 Nov 2020In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.044
91st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
428
of 17,787 indexed, latest versions
Container images
330
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: krb5 security update

Carried by container images the latest versions of 428 of 17,787 indexed charts deploy, on 330 images.

Affected packageAffected versionsFixed inImages
krb5deb1.12+dfsg-2ubuntu5, 1.12+dfsg-2ubuntu5.1, 1.12+dfsg-2ubuntu5.3, 1.12+dfsg-2ubuntu5.4+8 more1.12+dfsg-2ubuntu5.4+esm2, 1.13.2+dfsg-5ubuntu2.2, 1.15-1+deb9u2, 1.16-2ubuntu0.2+2 more228
krb5apk1.15.5-r0, 1.17-r0, 1.17.1-r0, 1.18.2-r01.15.5-r1, 1.17.2-r0, 1.18.3-r069
krb5rpm1.16.1-22.el8, 1.16.3-3.9.1, 1.16.3-3.12.2, 1.16.3-lp151.2.6.1+4 more0:1.18.2-8.el8, 1.16.3-3.15.1, 1.16.3-lp151.2.15.133
OSV records
ALPINE-CVE-2020-28196RHSA-2021:1593UBUNTU-CVE-2020-28196DLA-2437-1DSA-4795-1openSUSE-SU-2020:2037-1SUSE-SU-2020:3377-1
Also known as
USN-4635-1

Charts affected

428 by stars
ChartLatestAffected imagesRadar Score
pi-holet3n1.0.01 of 1See more

pi-hole t3n 1.0.0

1 of the 1 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
pihole/pihole:v4.48c172c4cf344
krb5@1.15-1+deb9u1
1.15-1+deb9u2

Open the chart page →

1,373
bisc-taalhuizentaalhuisen-frontend0.1.21 of 1See more

bisc-taalhuizen taalhuisen-frontend 0.1.2

1 of the 1 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/bisc-frontend:latestd8a0334cddfc
krb5@1.17-3
1.17-3+deb10u1

Open the chart page →

1,537
democharttech-challenge0.1.01 of 4See more

demochart tech-challenge 0.1.0

1 of the 4 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
grafana/grafana:5.1.0a6b37f9afdd9
krb5@1.15-1+deb9u1
1.15-1+deb9u2

Open the chart page →

3,632
temporaltemporal0.28.92 of 13See more

temporal temporal 0.28.9

2 of the 13 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
grafana/grafana:6.7.11ff3999e0fc0
krb5@1.17-r0
1.17.2-r0
library/cassandra:3.11.3ce85468c5bad
krb5@1.15-1+deb9u1
1.15-1+deb9u2

Open the chart page →

21,005
pagestest43221.0.01 of 3See more

pages test4322 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
flyway/flyway:6.4.422d97ceb0c47
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.2

Open the chart page →

20,190
shenyutest-helm2.4.212 of 2See more

shenyu test-helm 2.4.21

2 of the 2 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
apache/shenyu-admin:2.4.2e8b7c4ddd069
krb5@1.15.5-r0
1.15.5-r1
apache/shenyu-bootstrap:2.4.20bd3b25c4be4
krb5@1.15.5-r0
1.15.5-r1

Open the chart page →

12,513
standard-applicationthebitgram1.0.121 of 1See more

standard-application thebitgram 1.0.12

1 of the 1 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
krb5@1.13.2+dfsg-5ubuntu2
1.13.2+dfsg-5ubuntu2.2

Open the chart page →

11,007
pagesthiru-pages1.0.01 of 3See more

pages thiru-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
flyway/flyway:6.4.422d97ceb0c47
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.2

Open the chart page →

20,190
pagesthuy-pages1.0.01 of 3See more

pages thuy-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
flyway/flyway:6.4.422d97ceb0c47
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.2

Open the chart page →

20,190
grafanatnh5.3.01 of 1See more

grafana tnh 5.3.0

1 of the 1 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
grafana/grafana:7.0.3d72946c8e5d5
krb5@1.17.1-r0
1.17.2-r0

Open the chart page →

3,191
jenkinstnh2.7.11 of 2See more

jenkins tnh 2.7.1

1 of the 2 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.193170069ff0976
krb5@1.18.2-r0
1.18.3-r0

Open the chart page →

4,423
lightstepupdater-lightstep-satellite1.2.21 of 1See more

lightstep updater-lightstep-satellite 1.2.2

1 of the 1 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
krb5@1.13.2+dfsg-5ubuntu2.1
1.13.2+dfsg-5ubuntu2.2

Open the chart page →

15,330
openldap-havcnngrVerified publisher1.0.01 of 3See more

openldap-ha vcnngr 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
osixia/phpldapadmin:0.9.0d112b82be133
krb5@1.17-3
1.17-3+deb10u1

Open the chart page →

5,514
pagesvictor-pages1.0.01 of 3See more

pages victor-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
flyway/flyway:6.4.422d97ceb0c47
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.2

Open the chart page →

20,190
voteappvoting-app-helm-charts-repoVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo 1.0.0

1 of the 5 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_worker:v1741e3aaaa812
krb5@1.15-1+deb9u1
1.15-1+deb9u2

Open the chart page →

8,262
workerappvoting-app-helm-charts-repoVerified publisher1.0.01 of 1See more

workerapp voting-app-helm-charts-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_worker:v1741e3aaaa812
krb5@1.15-1+deb9u1
1.15-1+deb9u2

Open the chart page →

3,329
voteappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 5 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_worker:v1741e3aaaa812
krb5@1.15-1+deb9u1
1.15-1+deb9u2

Open the chart page →

8,262
workerappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 1See more

workerapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 1 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_worker:v1741e3aaaa812
krb5@1.15-1+deb9u1
1.15-1+deb9u2

Open the chart page →

3,329
pageswalter1.0.01 of 3See more

pages walter 1.0.0

1 of the 3 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
flyway/flyway:6.4.422d97ceb0c47
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.2

Open the chart page →

20,190
queryservicewbstack0.2.11 of 1See more

queryservice wbstack 0.2.1

1 of the 1 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice:0.3.6_0.6b83b5b81d4b6
krb5@1.15.5-r0
1.15.5-r1

Open the chart page →

4,649
queryservice-updaterwbstack0.3.01 of 1See more

queryservice-updater wbstack 0.3.0

1 of the 1 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-updater:0.3.84_3.97525a57ac3f1
krb5@1.15.5-r0
1.15.5-r1

Open the chart page →

3,176
sonarqubewebencryptor6.7.31 of 3See more

sonarqube webencryptor 6.7.3

1 of the 3 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
library/sonarqube:8.2-communitya246bc64207e
krb5@1.17-3
1.17-3+deb10u1

Open the chart page →

5,460
webencryptorwebencryptor1.1.01 of 1See more

webencryptor webencryptor 1.1.0

1 of the 1 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
beubi/webencryptor:latesta02c2e200920
krb5@1.15-1+deb9u1
1.15-1+deb9u2

Open the chart page →

1,968
cadencewenerme0.23.01 of 5See more

cadence wenerme 0.23.0

1 of the 5 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
library/cassandra:3.11.3ce85468c5bad
krb5@1.15-1+deb9u1
1.15-1+deb9u2

Open the chart page →

10,127
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.2

Open the chart page →

10,843
miniowenerme8.0.101 of 1See more

minio wenerme 8.0.10

1 of the 1 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
krb5@1.18.2-5.el8
0:1.18.2-8.el8

Open the chart page →

6,915
temporalwenerme0.15.12 of 13See more

temporal wenerme 0.15.1

2 of the 13 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
grafana/grafana:6.7.11ff3999e0fc0
krb5@1.17-r0
1.17.2-r0
library/cassandra:3.11.3ce85468c5bad
krb5@1.15-1+deb9u1
1.15-1+deb9u2

Open the chart page →

22,665
apicurio-registry-sqlwitcom-gmbh0.1.01 of 1See more

apicurio-registry-sql witcom-gmbh 0.1.0

1 of the 1 container images this version deploys carry CVE-2020-28196.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-jpa:1.3.2.Final44eeddd3562c
krb5@1.17.1-r0
1.17.2-r0

Open the chart page →

3,424

Container images carrying it

330 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
openwhisk/alarmprovider:2.2.0b695a6ceb406
krb5@1.15-1+deb9u1
1.15-1+deb9u2
1
openwhisk/kafkaprovider:2.1.063dc3d2a0904
krb5@1.17-3
1.17-3+deb10u1
1
openwhisk/ow-utils:1.0.0c80dba0de3aa
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.2
1
opsmx11/issuegen:v2.1.05c50ca123d88
krb5@1.12+dfsg-2ubuntu5.3
1.12+dfsg-2ubuntu5.4+esm2
1
osixia/phpldapadmin:0.7.058cce1b08592
krb5@1.15-1
1.15-1+deb9u2
1
pachyderm/grpc-proxy:0.4.92b27f41d4d02
krb5@1.15-1+deb9u1
1.15-1+deb9u2
1
pecan/monitor:1.7.273b2074f3fec
krb5@1.17-3
1.17-3+deb10u1
1
pedrocesarti/jmeter-docker:3.314851f144f57
krb5@1.15-1+deb9u1
1.15-1+deb9u2
1
phntom/binaryvision-static-wordpress:0.0.385a2dfb83b11
krb5@1.17-3
1.17-3+deb10u1
1
phntom/stocks-nasdaq-crawler:0.0.28d2b844700b57
krb5@1.18.2-r0
1.18.3-r0
1
pihole/pihole:v4.48c172c4cf344
krb5@1.15-1+deb9u1
1.15-1+deb9u2
1
plexinc/pms-docker:1.19.5.3112-b23ab3896b598abb134ad
krb5@1.13.2+dfsg-5ubuntu2.1
1.13.2+dfsg-5ubuntu2.2
1
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
krb5@1.17-9.el8
0:1.18.2-8.el8
1
pozetroninc/keydb:v6.0.1653ae64f29da8
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.2
1
pypiserver/pypiserver:v1.4.2c9250d3c418d
krb5@1.18.2-r0
1.18.3-r0
1
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
krb5@1.13.2+dfsg-5ubuntu2
1.13.2+dfsg-5ubuntu2.2
1
raykrueger/riemann:0.2.14c8baf3de57bb
krb5@1.15-1+deb9u1
1.15-1+deb9u2
1
resouer/redis-slave:v2e2f198b49ba7
krb5@1.12+dfsg-2ubuntu5.1
1.12+dfsg-2ubuntu5.4+esm2
1
richardchesterwood/k8s-fleetman-position-simulator:release20b540a28f5a6
krb5@1.15-1
1.15-1+deb9u2
1
richardchesterwood/k8s-fleetman-position-tracker:release336c43961214c
krb5@1.15-1
1.15-1+deb9u2
1
rodolpheche/wiremock:2.27.22328a9fce2bf
krb5@1.17-3
1.17-3+deb10u1
1
royalwang/sentinel-dashboard:1.8.4df99e2499f91
krb5@1.15-1+deb9u1
1.15-1+deb9u2
1
rundeck/rundeck:3.2.74d64fe56f767
krb5@1.13.2+dfsg-5ubuntu2.1
1.13.2+dfsg-5ubuntu2.2
1
rundeck/rundeck:3.0.16b13e8059ad72
krb5@1.13.2+dfsg-5ubuntu2.1
1.13.2+dfsg-5ubuntu2.2
1
scrapinghub/splash:3.4.1a5f89bc84606
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.2
1
sdandey/dandey-apps:kanban-board-kanban-appbef0f599737b
krb5@1.15.5-r0
1.15.5-r1
1
seataio/seata-server:1.5.1ee1ed55f4144
krb5@1.15.5-r0
1.15.5-r1
1
seldonio/apife:0.3.1eea0d3f578ca
krb5@1.15.5-r0
1.15.5-r1
1
seldonio/locust-core:0.81d0da98a2d76
krb5@1.13.2+dfsg-5ubuntu2.1
1.13.2+dfsg-5ubuntu2.2
1
siscc/dotstatsuite-core-auth-management:9a653e82bb1e9a45b6fa
krb5@1.17-3
1.17-3+deb10u1
1
siscc/dotstatsuite-core-sdmxri-nsi:master00d73f06edcf
krb5@1.17-3
1.17-3+deb10u1
1
sismics/docs:v1.10f4b0ef019cf1
krb5@1.16-2build1
1.16-2ubuntu0.2
1
softonic/gar-exporter:0.2.1a64d6c0e0ae5
krb5@1.18.2-r0
1.18.3-r0
1
sorintlab/stolon:v0.16.0-pg1236b45c0f97fc
krb5@1.17-3
1.17-3+deb10u1
1
svtechnmaa/svtech_http_thruk:v1.0.2e19aba397c1f
krb5@1.17-3
1.17-3+deb10u1
1
t3nde/gtmetrix-bq:0.2.0d2939e9a719b
krb5@1.17.1-r0
1.17.2-r0
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
krb5@1.13.2+dfsg-5ubuntu2
1.13.2+dfsg-5ubuntu2.2
1
testhubio/testhub-api:on-prem56badee134b9
krb5@1.17-3
1.17-3+deb10u1
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
krb5@1.13.2+dfsg-5ubuntu2
1.13.2+dfsg-5ubuntu2.2
1
tobiasbp/db-backup:0.0.314bee6e33a26
krb5@1.18.2-r0
1.18.3-r0
1
tpdock/freeradius:2.2.93da600c95a49
krb5@1.13.2+dfsg-5ubuntu2
1.13.2+dfsg-5ubuntu2.2
1
voltha/voltha-cli:1.6.0c4e41e92f046
krb5@1.13.2+dfsg-5ubuntu2
1.13.2+dfsg-5ubuntu2.2
1
voltha/voltha-envoy:1.6.059ab2a00f712
krb5@1.12+dfsg-2ubuntu5.3
1.12+dfsg-2ubuntu5.4+esm2
1
vromero/activemq-artemis:2.16.0408d6a46b153
krb5@1.15-1+deb9u1
1.15-1+deb9u2
1
wavefronthq/proxy:9.2d1064d28f6eb
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.2
1
weblate/weblate:3.11.3-182848df56ecd
krb5@1.17-3
1.17-3+deb10u1
1
wiremind/pghoard:12-2019-11-264dea42c8166c
krb5@1.17-3
1.17-3+deb10u1
1
xetusoss/archiva:v2.2.588f25242b9ee
krb5@1.15.5-r0
1.15.5-r1
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
krb5@1.16-2ubuntu0.1
1.16-2ubuntu0.2
1
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
krb5@1.13.2+dfsg-5ubuntu2
1.13.2+dfsg-5ubuntu2.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.