StackRadar

CVE-2020-7928

Medium

Advisory

Published 23 Nov 2020In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.014
72nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
11
of 17,781 indexed, latest versions
Container images
7
deployed by those charts
Fix available
1 of 2
affected packages

Improper neutralization of null byte leads to read overrun

Carried by container images the latest versions of 11 of 17,781 indexed charts deploy, on 7 images.

Affected packageAffected versionsFixed inImages
mongodbdeb1:3.6.3-0ubuntu1.4, 1:3.6.9+really3.6.8+90~g8e540c0b6d-0ubuntu5.3no fix listed6
mongodbbitnami4.4.1-33.6.201
OSV records
BIT-mongodb-2020-7928UBUNTU-CVE-2020-7928

Charts affected

11 by stars
ChartLatestAffected imagesRadar Score
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2020-7928.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
mongodb@1:3.6.9+really3.6.8+90~g8e540c0b6d-0ubuntu5.3
no fix listed

Open the chart page →

7,268
open5gsopen5gsVerified publisher2.3.41 of 5See more

open5gs open5gs 2.3.4

1 of the 5 container images this version deploys carry CVE-2020-7928.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:4.4.14fe2bd7b4036
mongodb@4.4.1-3
3.6.20

Open the chart page →

9,261
unifi-controllerqonstruktVerified publisher2.6.11 of 1See more

unifi-controller qonstrukt 2.6.1

1 of the 1 container images this version deploys carry CVE-2020-7928.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:8.0.240ae315a3a456
mongodb@1:3.6.9+really3.6.8+90~g8e540c0b6d-0ubuntu5.3
no fix listed

Open the chart page →

10,469
unifigeek-cookbookVerified publisher5.1.31 of 1See more

unifi geek-cookbook 5.1.3

1 of the 1 container images this version deploys carry CVE-2020-7928.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.4.162b3edc809a3ff
mongodb@1:3.6.3-0ubuntu1.4
no fix listed

Open the chart page →

11,839
omada-controllergeek-cookbookVerified publisher4.4.21 of 1See more

omada-controller geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2020-7928.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
mongodb@1:3.6.3-0ubuntu1.4
no fix listed

Open the chart page →

11,553
open5gs-webuiopen5gs-webuiVerified publisher2.3.11 of 2See more

open5gs-webui open5gs-webui 2.3.1

1 of the 2 container images this version deploys carry CVE-2020-7928.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:4.4.14fe2bd7b4036
mongodb@4.4.1-3
3.6.20

Open the chart page →

5,300
omada-controllerandrelote-k8sVerified publisher4.5.01 of 1See more

omada-controller andrelote-k8s 4.5.0

1 of the 1 container images this version deploys carry CVE-2020-7928.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
mongodb@1:3.6.3-0ubuntu1.4
no fix listed

Open the chart page →

11,553
unifiegebackVerified publisher2.1.61 of 1See more

unifi egeback 2.1.6

1 of the 1 container images this version deploys carry CVE-2020-7928.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
mongodb@1:3.6.9+really3.6.8+90~g8e540c0b6d-0ubuntu5.3
no fix listed

Open the chart page →

7,268
unifik8sonlabVerified publisher0.3.71 of 1See more

unifi k8sonlab 0.3.7

1 of the 1 container images this version deploys carry CVE-2020-7928.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
mongodb@1:3.6.9+really3.6.8+90~g8e540c0b6d-0ubuntu5.3
no fix listed

Open the chart page →

7,268
unifimidokura-communityVerified publisher0.0.61 of 1See more

unifi midokura-community 0.0.6

1 of the 1 container images this version deploys carry CVE-2020-7928.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:7.3.83ab105cc50322
mongodb@1:3.6.9+really3.6.8+90~g8e540c0b6d-0ubuntu5.3
no fix listed

Open the chart page →

11,188
unifistartechnicaVerified publisher0.1.31 of 2See more

unifi startechnica 0.1.3

1 of the 2 container images this version deploys carry CVE-2020-7928.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.1.664a3616625dda
mongodb@1:3.6.3-0ubuntu1.4
no fix listed

Open the chart page →

14,493

Container images carrying it

7 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
jacobalberty/unifi:v10.0.162896c0ab82d33
mongodb@1:3.6.9+really3.6.8+90~g8e540c0b6d-0ubuntu5.3
no fix listed
3
bitnamilegacy/mongodb:4.4.14fe2bd7b4036
mongodb@4.4.1-3
3.6.20
2
mbentley/omada-controller:4.3f4e682274bed
mongodb@1:3.6.3-0ubuntu1.4
no fix listed
2
jacobalberty/unifi:v7.1.664a3616625dda
mongodb@1:3.6.3-0ubuntu1.4
no fix listed
1
jacobalberty/unifi:v7.4.162b3edc809a3ff
mongodb@1:3.6.3-0ubuntu1.4
no fix listed
1
linuxserver/unifi-controller:8.0.240ae315a3a456
mongodb@1:3.6.9+really3.6.8+90~g8e540c0b6d-0ubuntu5.3
no fix listed
1
linuxserver/unifi-controller:7.3.83ab105cc50322
mongodb@1:3.6.9+really3.6.8+90~g8e540c0b6d-0ubuntu5.3
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.