StackRadar

CVE-2020-8912

Low

Advisory

Published 11 Feb 2022In the index since 5 Sept 2026
Severity
Low
worst across findings
CVSS
2.5
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
896
of 17,790 indexed, latest versions
Container images
928
deployed by those charts
Fix available
1 of 1
affected package

In-band key negotiation issue in AWS S3 Crypto SDK for golang in github.com/aws/aws-sdk-go

Carried by container images the latest versions of 896 of 17,790 indexed charts deploy, on 928 images.

Affected packageAffected versionsFixed inImages
github.com/aws/aws-sdk-gogolangv1.12.54, v1.15.24, v1.17.7, v1.17.14+289 more1.34.0928
OSV records
GHSA-7f33-f4f5-xwgwGO-2022-0635

Charts affected

896 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

928 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/prometheus/prometheus:v2.39.14748e26f9369
github.com/aws/aws-sdk-go@v1.44.102
no fix listed
1
quay.io/prometheus/prometheus:v3.13.2508729e0e2d1
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
1
quay.io/prometheus/prometheus:v2.37.056e7f18e05dd
github.com/aws/aws-sdk-go@v1.44.45
no fix listed
1
quay.io/prometheus/prometheus:v3.2.05888c188cf09
github.com/aws/aws-sdk-go@v1.55.6
no fix listed
1
quay.io/prometheus/prometheus:v3.5.063805ebb8d2b
github.com/aws/aws-sdk-go@v1.55.7
no fix listed
1
quay.io/prometheus/prometheus:v3.2.16927e0919a14
github.com/aws/aws-sdk-go@v1.55.6
no fix listed
1
quay.io/prometheus/prometheus:v2.33.591100b06e86d
github.com/aws/aws-sdk-go@v1.42.31
no fix listed
1
quay.io/prometheus/prometheus:v3.4.19abc6cf6aea7
github.com/aws/aws-sdk-go@v1.55.7
no fix listed
1
quay.io/prometheus/prometheus:v2.34.0b37103e03399
github.com/aws/aws-sdk-go@v1.43.10
no fix listed
1
quay.io/prometheus/prometheus:v2.53.1f20d3127bf28
github.com/aws/aws-sdk-go@v1.53.16
no fix listed
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
github.com/aws/aws-sdk-go@v1.34.9
no fix listed
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
github.com/aws/aws-sdk-go@v1.35.24
no fix listed
1
quay.io/solo-io/discovery:0.0.0-fork5b62aaade3c9
github.com/aws/aws-sdk-go@v1.34.9
no fix listed
1
quay.io/solo-io/gloo:0.0.0-fork9a6c84560d44
github.com/aws/aws-sdk-go@v1.34.9
no fix listed
1
quay.io/thanos/thanos:v0.36.1e542959e1b36
github.com/aws/aws-sdk-go@v1.53.16
no fix listed
1
quay.io/tigera/operator:v1.20.1379efe0c2541
github.com/aws/aws-sdk-go@v1.19.6
1.34.0
1
quay.io/tigera/operator:v1.15.1c6591da87aa8
github.com/aws/aws-sdk-go@v1.19.6
1.34.0
1
quay.io/uswitch/kiam:v4.0be3a5846922d
github.com/aws/aws-sdk-go@v1.35.10
no fix listed
1
registry.gitlab.com/av1o/go-prism:4fdcff7d3870c28e5f024b6947cb552d4b956ee27a6f84b81c4e
github.com/aws/aws-sdk-go@v1.36.20
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
github.com/aws/aws-sdk-go@v1.34.28
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-openbao:v2.5.5-gitlab25b7636dfba3f
github.com/aws/aws-sdk-go@v1.55.6
no fix listed
1
registry.gitlab.com/xrow-public/ci-tools/tools:main9b9d1ed86b6a
github.com/aws/aws-sdk-go@v1.55.5
no fix listed
1
registry.k8s.io/autoscaling/cluster-autoscaler:v1.33.06ef10d108e0e
github.com/aws/aws-sdk-go@v1.44.241
no fix listed
1
registry.k8s.io/autoscaling/cluster-autoscaler:v1.34.07b172f42533c
github.com/aws/aws-sdk-go@v1.44.241
no fix listed
1
registry.k8s.io/kube-apiserver:v1.25.0f6902791fb9a
github.com/aws/aws-sdk-go@v1.38.49
no fix listed
1
registry.k8s.io/kube-controller-manager:v1.25.066ce7d460e53
github.com/aws/aws-sdk-go@v1.38.49
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
github.com/aws/aws-sdk-go@v1.44.72
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
github.com/aws/aws-sdk-go@v1.44.72
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.